This privacy was last updated on 20th May 2018.
- THIS WEBSITE
- LAWFUL BASIS FOR PROCESSING YOUR DATA
- DATA COLLECTION, USAGE, STORAGE
- PERSONAL INFORMATION PASSED ON TO THIRD PARTIES
- EMAIL NEWSLETTER
- CONTACT & COMMUNICATION
- DATA RETENTION
- REQUESTING A COPY THE DATA WE HOLD ABOUT YOU
- UPDATING OR REMOVING YOUR DATA
- EXTERNAL LINKS
- ADVERTS & SPONSORED LINKS
- SOCIAL MEDIA PLATFORMS
- SHORTENED LINKS IN SOCIAL MEDIA
This website and its owners take a proactive approach to user privacy and ensure the necessary steps are taken to protect the privacy of its users throughout their visiting experience. This website fully complies with all UK national laws and the General Data Protection Regulation (GDPR) (EU) 2016/679 OF THE EUROPEAN PARLIAMENT AND OF THE COUNCIL of 27 April 2016 . In general this law relates to the processing of personal data and its privacy and protection.
LAWFUL BASIS FOR PROCESSING YOUR DATA
When purchasing from our store it is necessary to obtain, process and retain your that data so that we can fulfil our obligation for the performance of our contract to your as our customer. This means using your details to deliver the product to your delivery address, verify your billing or delivery address for the purposes of preventing fraudulent transactions, meeting obligations for tax purposes.
This is in compliance with Article 6 of the GDPR relating to Lawfulness of Processing including but not limited to section (1)(b)“Processing shall be lawful only if… processing is necessary for the performance of a contract to which the data subject is party or in order to take steps at the request of the data subject prior to entering into a contract”.
At The Chain Hut this means when you make a purchase through our website, or over the telephone and provide us personal details as mentioned in “DATA COLLECTED BY US AND HOW WE USE IT”.
Under section (1) (a) of the GDPR we may also contact you through our e-newsletter to send information about our latest offers and new products, even you are not a customer who has purchased when you decide to sign up to our newsletter mailing list. This adheres to section (1) (a) of the GDPR which acknowledges a legal basis occurs when an “..individual has given clear consent for you to process their personal data for a specific purpose.”
However, we will not distribute any e-newsletters to your e-mail address if you have not actively opted in. Further information regarding our e-newsletters can be found below under “EMAIL NEWSLETTER”
DATA COLLECTION, USAGE, STORAGE:
Such data is requested and obtained on the following pages of our website when filling out certain form fields and clicking either the ‘Save’ ‘Submit’ or ‘Next Step buttons’:
- Checkout Page
- Contact Us Page
You may however, decide to create an account voluntarily with us and provide your data to make future checkout quicker.
- Customer Registration page
- Customer Dashboard if creating an account
Some of this information is what’s known as personal identifiable information, in other words any information which can be used to identify an individual. This is important because the GDPR regulation ensures that all companies respect the rights of EU Citizens in respect of personal identifiable information.
Below is a summary of each of the personal identifiable information requested on our website, and when collected how this is used (though it may be requested when placing an order over the telephone):
A name of a person/persons and/or company, an address including post code, post town, city and country.
Printed upon an order invoice packed with your order, printed upon a shipping label to deliver your goods to this address. Passed onto Sagepay to verify, authorise and legitimise payment by match details to that of the card used to purchase and to prevent fraudulent purchases through a fraud scan.
A name of a person/persons and/or company for whom is registered as the cardholder, an address including post code, post town, city and country. Printed upon an order invoice packed with your order and passed onto Sagepay to verify, authorise and legitimise payment by match details to that of the card used for a purchase and to prevent fraudulent purchases through a fraud scan.
Used to contact you in case of any issues in delivery or payment, or provided to the Royal Mail to provide updates on the status of your package. Passed onto Sagepay to verify, authorise and legitimise payment by match details to that of the card used to purchase and to prevent fraudulent purchases through a fraud scan.
E-mail Address When provided to us used to contact you in case of any issues in delivery or payment, reply to any queries or passed onto the Royal Mail to provide you with updates on the status of your package. Passed onto Sagepay to verify, authorise and legitimise payment by match details to that of the card used to purchase and to prevent fraudulent purchases through a fraud scan.
Other Data we collect that are not directly entered by yourself:
– An IP address is collected to prevent or identify fraudulent, harmful or illegal activities against this website. In case of fraud an IP Address may be passed onto our merchant bank, Elavon or Sagepay who have a legal right to such data explicitly in respect of fraudulent payments if requested. We may also provide such data in rare circumstances if required by governmental agencies such as Action Fraud upon their request.
In the event that you abandon your checkout page and have not fully completed payment, but have still entered personal information in any form fields on the checkout page or customer account page, we will still hold this data in case you return to shop with us. However, in such a scenario we will never contact you using these details or pass any of this information on to third parties. When you enter any data into our checkout page but do not complete the checkout process your IP Address is still collected as explained for purposes above.
The data collected above may also be used in order for us to carry out certain services, such as: responding to general enquiries, a past purchase, a pending purchase, or for the making of a purchase.
Unless you’ve given us express consent, we’ll never use your personal information for marketing activities or newsletters.
In the unlikely event that a breach has occurred V C Ltd will also inform the Information Commissioners Officers (ICO) within 72 hours who are responsible for Data Protection in the UK.
More information about the ICO is available here: https://ico.org.uk/
PERSONAL INFORMATION PASSED ON TO THIRD PARTIES
Personal information as identified under “DATA HELD BY US ABOUT YOU” will be securely passed on to Sagepay only in the event that visitor clicks on Continue to Sagepay, to complete a purchase for the order that is placed on this site. Whether that purchase from Sagepay’s website is then completed fully or abandoned on the Sagepay site does not prevent data from being passed on. Any information that is passed on to Sagepay is strictly for the purposes for the payment of that order and this process which transfers the data from our website to Sagepay’s is done so securely with an encrypted method.
The following information is passed on from this website site to Sagepay only when clicking on “Continue to Sagepay” on the checkout page and not before:
Full Name, Delivery Address, Billing Address, Telephone Number, E-mail Address, Order Items, Order Quantity, Order Item Value, Type of Postage Service Chosen, Postage Value.
In the event that the address provided may appear to be unclear, misspelled, grammatically incorrect or improperly formatted in a way that is preferred by the Royal Mail we may choose to verify your address. Verification is carried out by a simple procedure: entering your postcode into the Royal Mail form database and browsing through the list of addresses provided to verify its existence. No names. Telephone numbers or other data are entered into this form and this form is available for use to all members of the public here: https://www.royalmail.com/find-a-postcode .
If you have already placed an order with us, the Royal Mail will be provided with your delivery address details as labelled on the package in order for them to deliver your order to you. Any telephone number and or e-mail address provided to us on the checkout page, over the telephone, or through your customer account page, may also be passed onto the Royal Mail specifically for the purpose that you may be informed about delivery status update of your order via SMS or e-mail and NOT marketing purposes. However, these are only for specific delivery services: Royal Mail Special Delivery, Royal Mail Tracked 24, Royal Mail Tracked 48, Royal Mail Tracked 24 with Signature, Royal Mail Tracked 48 with Signature – usually provided for purchases included in our free delivery option. If you are unsure regarding whether this is included in your opted service or do not wish this information to be passed on please contact us here: https://thechainhut.co.uk/contact-us-page before placing an order with us or immediately after (within 20minutes).
We may use Mailchimp when sending out our e-newsletters. Mailchimp is a subscription software that processes an e-mail address to enable us to send our e-newsletters safely and securely, and also makes it more efficient for us to handle any requests to unsubscribe faster and more efficiently than we would otherwise be able to do so. Mailchimp operate from outside the EU in the United States, and hold a certified level of compliance to a strict level as required by the EU – namely the Privacy Shield which ensures personal data received by Mail chimp is always in accordance with the Privacy Shield framework’s applicable principles. Mail Chimp is a registered Trademark and is owned and operated by The Rocket Science Group. Details about their Privacy Sheild Certification can be found here: https://www.privacyshield.gov/participant?id=a2zt0000000TO6hAAG&status=Active
Personal data that we use when sending out e-newsletters only include the e-mail address that you provide us and nothing else.
Mailchimp provide an option to include data obtained from e-newsletters sent to our subscribers for Data Science Projects, however we have expressly opted out and any data we provide them is not included for such uses as we respect with utmost importance your privacy. More can be read here: https://mailchimp.com/legal/privacy/
This website operates an email newsletter program (also referred to as e-newsletter), used to inform subscribers about the latest news, products, services or offers supplied by this website. The online process to subscribe and be a part of our e-newsletter program is activated by providing an e-mail address by the following methods: (1) in the footer link on this website and clicking ‘Submit’ (2) in a pop-up that appears upon any of our webpages and clicking ‘Submit’ (3) if a customer account has been created, navigating to the Newsletter section in the customer dashboard and marking the check box to opt in (4) at the checkout page when making a purchase marking the check box to opt in.
By submitting your e-mail address in any of the above methods, you may be required to check your e-mail provider inbox and click on a confirmation link.
At the point of submitting an e-mail address to this site, visitors who subscribe to our e-newsletter program agree that they are the owners of that e-mail address or have the express permission of the owner of that e-mail address and therefore also provide their consent to be a part of our e-newsletter.
How we will use your e-mail address
All personal information relating to our e-newsletter subscriptions are held securely and V C Ltd agree to take all necessary steps to ensure the security and safety of such data to prevent unauthorised access or use. In respect e-newsletters personal information means the e-mail address that you have provided to us since no other information is required or requested upon sign up to this service. Your e-mail address will not be passed on to third parties nor shared with companies / people outside of the company that operates this website. In the unlikely event that a breach occurs and the e-mail address provided has been compromised V C Ltd agree to inform you within 48 hours of such a breach and its nature. In the unlikely event that a breach has occurred V C Ltd will also inform the Information Commissioners Officers (ICO) who are responsible for Data Protection in the UK more information about the ICO is available here: https://ico.org.uk/
Amendments or updates to e-mail your email address
If you require to update your e-mail address you can contact us directly using our contact form here https://thechainhut.co.uk/contact-us-page .
Requesting a copy of information we hold about you
Under General Data Protection Regulation (GDPR) (EU) 2016/679 you may request a copy of personal information held about you by this website's email newsletter program. No fee is payable and any information will be provided within 30 days. If you would like a copy of the information held on you please write to us, e-mail us or send a message using our contact form on this website here https://thechainhut.co.uk/contact-us-page.
How to unsubscribe from our newsletter:
If you wish to unsubscribe from our e-newsletter you can do so at any time in the following manner: (1) If you have created a customer account navigate to the Newsletter Subscription, unmark the Checkbox, and click Save (2) If you do not have an account simply enter the words unsubscribe along with the provided e-mail address in our contact form here https://thechainhut.co.uk/contact-us-page (3) If you’ve already received an e-newsletter, there will be an option at the top of this e-newsletter to unsubscribe. Simply click this and we won’t send you anymore e-newsletters.
We agree to remove your e-mail address from our e-newsletter subscription list upon receiving notice of your preference within 24 hours of receiving contact from you by the above methods.
Subscriptions are taken in compliance with UK Spam Laws detailed in the Privacy and Electronic Communications Regulations 2003.
Email marketing campaigns published by this website or its owners may contain tracking facilities within the actual email. Subscriber activity is tracked and stored in a database for future analysis and evaluation. Such tracked activity may include; the opening of emails, forwarding of emails, the clicking of links within the email content, times, dates and frequency of activity [this is by no far a comprehensive list].
This information is used to refine future email campaigns and supply the user with more relevant content based around their activity.
In compliance with UK Spam Laws and the Privacy and Electronic Communications Regulations 2003 subscribers are given the opportunity to un-subscribe at any time through an automated system. This process is detailed at the footer of each email campaign. If an automated un-subscription system is unavailable clear instructions on how to un-subscribe will be detailed instead.
Should your e-mail address provided to us for our e-newsletter purposes remain unconfirmed after 24 hours we'll remove your e-mail address from our e-newsletter list.
CONTACT & COMMUNICATION
Users contacting this website and/or its owners do so at their own discretion and provide any such personal details requested at their own risk. Your personal information is kept private and stored securely until a time it is no longer required or has no use, as detailed in the Data Protection Act 1998. Every effort has been made to ensure a safe and secure form to email submission process but advises users using such form to email processes that they do so at their own risk. This website and its owners use any information submitted to provide you with further information about the products / services they offer or to assist you in answering any questions or queries you may have submitted. This includes using your details to subscribe you to any email newsletter program the website operates but only if this was made clear to you and your express permission was granted when submitting any form to email process. Or whereby you the consumer have previously purchased from or enquired about purchasing from the company a product or service that the email newsletter relates to. This is by no means an entire list of your user rights in regard to receiving email marketing material. Your details are not passed on to any third parties.
We’ll always ensure that we don’t keep your data anymore than we need to. For tax obligations we may , keep a record of the data specifically those mentioned in “DATA COLLECTED BY US AND HOW WE USE IT” as well as information about the transaction itself which includes items purchased and order values for a minimum period of 3 years.
REQUESTING A COPY THE DATA WE HOLD ABOUT YOU
You are entitled to request and obtain a copy of information we hold about you. If you wish to do so please contact us here either in by writing, by e-mail or through our online form here: https://thechainhut.co.uk/contact-us-page and we will honour such a request within one month of receiving such a request free of charge. Please note we may request proof of identification of such a request to protect your information and prevent misuse of such a request by unauthorised or unknown parties. Should a request be excessive or manifestly unfounded we have the right to refuse or charge for such a request. If we refuse a request that we consider to be excessive or manifestly unfounded we will provide a reason why. If refused we will aim to provide a refusal reason will be provided within one month and without any undue delay.
UPDATING OR REMOVING YOUR DATA
Should you wish to remove any personal data, please state which data you would like to be removed and we’ll remove your data securely. You can request or enquire about the removal of your data by contacting us directly either in by writing, by e-mail or through our online form all available to access here: https://thechainhut.co.uk/contact-us-page
If you wish to update any of the data you’ve previously provided please also contact as above.
Although this website only looks to include quality, safe and relevant external links, users are advised adopt a policy of caution before clicking any external web links mentioned throughout this website. (External links are clickable text / banner / image links to other websites) The owners of this website cannot guarantee or verify the contents of any externally linked website despite their best efforts. Users should therefore note they click on external links at their own risk and this website and its owners cannot be held liable for any damages or implications caused by visiting any external links mentioned.
ADVERTS & SPONSORED LINKS
SOCIAL MEDIA PLATFORMS
Communication, engagement and actions taken through external social media platforms that this website and its owners participate on are custom to the terms and conditions as well as the privacy policies held with each social media platform respectively. Users are advised to use social media platforms wisely and communicate / engage upon them with due care and caution in regard to their own privacy and personal details. This website nor its owners will ever ask for personal or sensitive information through social media platforms and encourage users wishing to discuss sensitive details to contact them through primary communication channels such as by telephone or email. This website may use social sharing buttons which help share web content directly from web pages to the social media platform in question. Users are advised before using such social sharing buttons that they do so at their own discretion and note that the social media platform may track and save your request to share a web page respectively through your social media platform account.
SHORTENED LINKS IN SOCIAL MEDIA
This website and its owners through their social media platform accounts may share web links to relevant web pages. By default some social media platforms shorten lengthy urls [web addresses] (this is an example: http://bit.ly/zyVUBo). Users are advised to take caution and good judgement before clicking any shortened urls published on social media platforms by this website and its owners. Despite the best efforts to ensure only genuine urls are published many social media platforms are prone to spam and hacking and therefore this website and its owners cannot be held liable for any damages or implications caused by visiting any shortened links.