This notice sets out the basis on which any personal data we collect from you, or that you provide to us, will be processed by us. Please read the following carefully to understand our views and practices regarding your sensitive information and how we will deal with it. For the purposes of the Data Protection Act 2018 (‘the DPA’) and the EU General Data Protection Regulation (‘the GDPR’), sensitive information includes what is defined as your ‘personal data’.
By visiting https://www.funfairbooks.com (the ‘Site’) you accept and consent to the practices described in this Privacy Notice including the processing of your personal data under this lawful basis.
In this Privacy Notice, we seek to abide by the letter and spirit of the guidelines laid out by the UK Information Commissioner’s Office.
Who we are
We are Funfair Books and Designs Limited – our Site address is: https://funfairbooks.com. We are a company registered in England and Wales with Company number 03670235 and our registered office is at 25 Anthony Road, Exeter, Devon, EX1 2SS. If you have any concerns about the way we use your information or any questions about this Privacy Notice, please let us know. We can be contacted via email at email@example.com
The type of personal information we collect
Our Site is built with WordPress. In general, data that’s collected about your visit is necessary to power the site, but below are some further details:
We currently collect and process the following personal information:
- Personal identifiers, contacts and characteristics (for example, IP address, name and contact details)
How we get the personal information, why we have it and who we share it with
Most of the personal information we process is provided to us directly by you when you:
- Use our services, e.g. order a product or download resources
- Contact us through the Site, by telephone, post, email or through any other means
- When you enter a competition or promotion through this Site or social media channel
- When you elect to receive marketing communications from us by e.g. signing up to a mailing list
In other cases, information may be received from other sources:
- third parties – specifically from the social media platform Facebook, Instagram and Twitter or
- collected automatically whilst browsing the Site.
Device Information and Analytics
When you visit the Site, we automatically collect certain information about your device, including information about your web browser, IP address, time zone, and some of the cookies that are installed on your device. Additionally, as you browse the Site, we collect information about the individual web pages or products that you view, what Sites or search terms referred you to the Site, and information about how you interact with the Site. We refer to this automatically-collected information as “Device Information”.
We use the Device Information that we collect to help us screen for potential risk and fraud (in particular, your IP address), and more generally to improve and optimize our Site (for example, by generating analytics about how our customers browse and interact with the Site, and to assess the success of our marketing and advertising campaigns).
Similar to other Sites, this Site utilizes “cookies” and server logs to collect information about how the Site is used. This is done via a third party provider Google Analytics
You can read more about how Google uses your Personal Information here: https://www.google.com/intl/en/policies/privacy/. You can also opt-out of Google Analytics here: https://tools.google.com/dlpage/gaoptout.
When you make a purchase or attempt to make a purchase through the Site, we collect certain information from you, including your name, billing address, shipping address, email address, and phone number. We refer to this information as “Order Information”. Data is shared for orders and purchases with Woocommerce. Only your contact details are collected and stored securely on our Site. We do not collect or store your payment details. Card payments for orders are dealt with through a third party payment gateway stripe
We use the Order Information that we collect generally to fulfil any orders placed through the Site (including arranging for shipping, and providing you with invoices/receipts and/or order confirmations). This involves sharing contact data with 3rd party Royal Mail
If you choose to order from us, we may contact you via email with updates about the services that we offer or any changes that we have made to our Site. You can opt in or out at any time by clicking the ‘Unsubscribe’ link in our emails.
Additionally, we may use this Order Information to screen our orders for potential risk or fraud.
Newsletter and Surveys
When you choose to opt in to receive our newsletter you will be added to the mailing list held with our 3rd party supplier Mailchimp. We will use the newsletter to send you information about products and services that we feel may be of interest to you. We may contact you to request feedback on your product experience or for market research purposes. You are able to remove your consent at any time. You can do this by clicking the unsubscribe option within the email and following the instructions or by contacting firstname.lastname@example.org.
If you choose to complete a survey by clicking on the link, data is anonymised, shared and stored with Surveymonkey
Contact forms and Email
We collect your contact information entered into the contact form, in order to respond to your query. For clarity, there is an acceptance checkbox on the contact form, giving us permission to do this and the data from our contact form is delivered to an encrypted email account. It is only stored and used so we can respond to your query.
Links and embedded content from other Sites
There are links on the Site to other sites we feel you may have an interest in, or sites we recommend for services. This privacy notice does not cover those links and those sites are not governed by this Privacy Notice. If you have questions about how those sites use your data, please check their privacy notices, including links to our Social Media account’s on Facebook, YouTube and Instagram
Articles on this site may include embedded content (e.g. videos, images, articles, etc.). Embedded content from other Sites behaves in the exact same way as if the visitor has visited the other Site.
Finally, we may share your personal information to comply with applicable laws and regulations, e.g. internal record keeping and lawful requests for information we receive or to otherwise protect our rights.
Under the General Data Protection Regulation (GDPR), the lawful bases we rely on for processing this information are:
- Your consent.
- We have a contractual obligation.
- We have a legitimate interest.
How we store your personal information and how long we retain it for
Your information is securely stored on our Site.
We generally discard information about you when it’s no longer needed for the purposes for which we collect and use it — described in the section above on How we get the personal information and why we have it — and we’re not legally required to keep it. We will dispose of your information by deleting it from log files (web user data is regularly deleted by our web host) or databases, e.g. via a user data request. If you contact us by email, emails will be purged and deleted at least every 12 months, unless there is a legitimate reason to continue to store the email.
Your data protection rights
If you are a European resident, you have the right to request what personal information we hold about. If you would like to exercise this right, please contact us through the contact information below.
Additionally, if you are a European resident we note that we are processing your information in order to fulfil contracts we might have with you (for example if you make an order through the Site), to fulfil services you have requested (for example newsletter sign up or inbound email) or otherwise to pursue our legitimate business interests listed above. Please note that your information may be transferred outside of Europe, including to Canada and the United States.
Our contact details
Name: Coral Bowley (data controller)
21 The Basement Victoria Park Road, Exeter EX2 4NT
Phone Number: 07920475372
Please contact us at email@example.com if you wish to make a request. Please be aware we have one month from receipt of request to respond to you.
This privacy notice was last updated April 11th 2021.
How to complain
If you have any concerns about our use of your personal information, please contact us at firstname.lastname@example.org
You can also complain to the ICO if you are unhappy with how we have used your data.
The ICO’s address:
Information Commissioner’s Office
Helpline number: 0303 123 1113
ICO webSite: https://www.ico.org.uk