In this policy, the words “we”, “us” and “our” refer to K.D Jewellery.
What Data is Collected and Why?
Two main types of data are collected by K.D Jewellery, both of which are detailed below. The new General Data Protection Regulations requires a ‘lawful basis’ in order for data to be processed. The lawful basis for each type of data can also be found below.
Personal Data collected by K.D Jewellery will include your name and your email address. These are the only details required when subscribing to our mailing list or when making an enquiry via our contact form. The legal basis for processing the data given via our mailing list subscription is, again, consent. By opting to become a subscriber you are consenting to receive regular updates and promotions, as explained in our sign-up form. For data collected by submitting an enquiry via our contact form, you are consenting for us to use your details in order to respond to your request for information. We may also use your details to ‘follow up’ on any enquiries made. The lawful basis for this is legitimate interest.
When making a purchase from K.D Jewellery, the details of your order and your delivery address will be collected in addition to your name and email address. The lawful basis for processing this information is contractual. The information is required in order for us to complete your order and therefore complete our contractual obligations.
Any payments made to K.D Jewellery in respect of orders placed will be processed by a third-party data processor. Please see the Third-Party section below for full details of this.
Is Data Shared with Anyone?
K.D Jewellery uses several third-party services in the running of our business. These third parties are Data Processors. Each third party used by K.D Jewellery is detailed below including a summary of why they are used and what information they collect, as well as the relevant links to their individual Privacy Policies. All Data Processors used by K.D Jewellery are compliant with the new General Data Protection Regulations, 25th May 2018. Some of our Data Processors are situated in the US. The European Commission has taken the decision that data transfers to the US are adequately protected by the EU-US Privacy Shield framework. All US providers used by K.D Jewellery adhere to Privacy Shield and any data shared with them is therefore safeguarded.
The selling platforms used by K.D Jewellery are WooCommerce (here on this website) and Etsy, for our shop: www.kdjewellery1.etsy.com.
Social Media Plug Ins & Platforms:
Our Mailing List:
How Long is Data Kept?
Personal Data processed by K.D Jewellery will not be kept for longer than is necessary for its purpose. Personal Data will be kept for a minimum of 1 year, from the date of which it was collected, and a maximum of 7 years. Personal Data will not be used or shared in any way other than what is described in this policy unless we first obtain your consent, or if we are required to do so by law.
Is my Data Secure?
We are committed to ensuring that your information is secure, in accordance with the GDPR security principle.
In order to prevent unauthorised access or disclosure, we have put in place suitable procedures to safeguard the information we collect. Unfortunately, the internet can never be 100% secure, but rest assured that should any data ever be compromised, you will be contacted immediately, and steps will be taken to rectify the situation. All devices used by K.D Jewellery are secured using multi-factor authentication as well as fingerprint technology measures.
Please also note that emails are not encrypted; and email correspondence is not a secure means of submitting any sensitive information. K.D Jewellery will never ask for sensitive information via email.
External Links: Our website may contain links to other websites. However, once you have used these links to leave our site you should note that we do not have any control over that website. Always exercise caution and see the privacy statement applicable to the website in question.
Your Legal Rights
As a Data Subject, you have several rights under the new General Data Protection Regulations (the GDPR) which come into force on 25th May 2018. These rights are as follows:
- The right of access. You have the right to request confirmation that data is being held and a copy of the data that is being held, along with any supplementary information.
- The right to rectification of incorrect data or the completion of incomplete data.
- The right to erasure, or the right to be forgotten, including the withdrawal of previously given consent.
- The right to restrict the way in which your data is processed.
- The right to data portability.
- The right to object to the processing of your data.
- Rights related to automatic decision making, if applicable. D Jewellery does not use any automated systems of this nature.
This is a summary of your basic rights under the GDPR. Not all of the rights are absolute; some apply under certain conditions. It is advised that you familiarise yourself with the full explanation of your legal rights from the appropriate legislation.
Requests to K.D Jewellery, in relation to the exercise of any of these rights, can be made either verbally or in writing. Contact: email@example.com. All requests will be dealt with promptly, within one month of their receipt, in accordance with the GDPR.
Under the GDPR, you also have the right to lodge a complaint with a supervisory authority, should you think it necessary.
We may, from time to time, update this policy by publishing a new version on our website and social media pages. We recommend that you check these pages every so often to ensure that you are still happy with our policies. If we hold your contact information, and we feel it absolutely necessary, we may contact you to advise of any particularly important changes to our policies.
K.D Jewellery is owned and operated by Kirsty Dimond, a sole trader. The registered address for this business is: 14 Coronation Road, Newton Abbot, Devon TQ12 1TX, however this is a private address and all business is conducted online. K.D Jewellery can be contacted via the contact form on our website, by post at the above address, by telephone on 07793557235 and by direct email to: firstname.lastname@example.org.