GDPR
Information I Collect:
To Fulfil your order, you must provide me with certain information
(which you have authorised eBay to provide me with if your order is from those sites), this will include your name, delivery address, payment information (PayPal ), and the details of the product your are ordering. You may also need to provide with personal information (for custom orders), if you contact me directly.
Why I Need Your Information and How I Use It:
I rely on a number of legal bases to collect, use, and share your information, including:
1. As needed to my services, such as when I use your details to fulfil your order, to settle disputes or to provide customer support.
2. When you have provided your affirmative consent, which you can of course revoke at any time, such as signing up for a news letter.
3. If necessary to comply with a legal obligation, court order or in connection with a legal claim, such as retaining information about your purchase for tax purposes.
4. As necessary for the purpose of my legitimate interests, if those legitimate interests are not overridden by your rights or interests, such as 1) providing and improving my services and in my legitimate interest to improve my services. 2) Compliance with the eBay Seller Policy and Terms Of Use. I use your information as necessary to comply with my obligations under the eBay Seller Policy and Terms Of Use.
Information and Sharing:
Information about my customers is very important to my business, I share your personal information for very LIMITED reasons and in limited circumstances, as follows:
1. eBay. I share information with eBay as necessary to provide you my services and comply with my obligations under both the eBay Seller Policy and eBay Terms Of Use.
2. Service Providers: I engage certain trusted third parties to preform functions and provide services to my shop, such as Royal Mail for delivery purposes.
3. Compliance with laws. I may collect, use, retain and share your information if have a good faith belief that it is reasonably necessary to: (a) respond to a legal process or to government requests (b) encore my agreements, terms and policies (c) prevent, investigate, and address fraud and other illegal activity, security, or technical issues; or (d) protect the rights, property, and safety of my customers, or others.
Data Retention:
I retain your personal information only for as long as necessary to provide you with my services and as described in my Privacy Policy. However, I may also be required to retain this information to comply with my legal and regulatory obligations, to resolve disputes, and to enforce my agreements. I generally keep your data for the following time periods: 7 years.
Your Rights:
If you reside in certain territories, including the EU, you have a number of rights in relation to your personal information. While some of these rights apply generally, certain rights apply only in certain limited cases. I describe these rights below:
* Access. You may have the right to access and receive a copy of the personal information I hold about you by contacting me using the contact information below.
* Change, restrict, delete. You may also have rights to change, restrict my use of, or delete your personal information. Absent exceptional circumstances (like where I am required to store data for legal reasons) I will generally delete your personal information upon request.
* Object. You can object to (i) my processing of some of your information based on my legitimate interests and (ii) receiving marketing messages from me after providing your express consent to receive them. In such cases, I will delete your personal information unless I have compelling and legitimate grounds to continue using that information or if it is needed for legal reasons.
* Complain. If you reside in the EU and wish to raise a concern about my use of your information (and without prejudice to any other rights you may have), you have the right to do so with your local data protection authority.
Below is a list of 3rd Parties policy links, I have given these as these are the companies for either website, online shops (eBay), payment processing, social media & delivery companies. At the time of publishing I believe that all companies / platforms I am using are GDPR compliant.
Royal Mail: https://www.royalmail.com/business/system/files/royal-mail-the-gdpr-opportunity-with-mail.pdf
eBay: https://www.ebayinc.com/our-company/privacy-center/gdpr/
Paypal: https://www.paypal.com/uk/webapps/mpp/ua/privacy-prev
Facebook: https://www.facebook.com/about/privacyshield
Instagram: https://help.instagram.com/519522125107875?helpref=page_content
How To Contact Me:
For the purposes of EU data protection law, I, Kerry Draisey am the date controller for your personal information. If you have any questions or concerns, you can contact me at sales@daisykaycreations.co.uk
Alternately, you may write to me at:
K Draisey
12 Capel Lane
Gossops Green
Crawley
RH118HL