Privacy Policy

 

Last modified 8th April 2020

 

Introduction

We protect your personal data in line with the requirements of the General Data Protection Regulation (GDPR). The GDPR requires data controllers such as ourselves to document our lawful basis for processing personal data. It also gives you rights over how your data is processed. This privacy policy documents the data we collect, why and how we process it, and how to exercise your rights.

 

Lawful basis for processing

For each method by which we collect personal data, this privacy policy documents our lawful basis for processing the data. Where we rely on your consent to process your data, we explain how you can withdraw your consent and delete your data.

What type of information do we collect?

We receive, collect and store any information you enter on our website or provide us in any other way. In addition, we collect the Internet protocol (IP) address used to connect your computer to the Internet; login; e-mail address; password; computer and connection information and purchase history. We may use software tools to measure and collect session information, including page response times, length of visits to certain pages, page interaction information, and methods used to browse away from the page. We also collect personally identifiable information (including name, email, password, communications); payment details (including credit card information), comments, feedback, product reviews, recommendations, and personal profile.

 

How do we collect your information?

When you conduct a transaction on our website, as part of the process, we collect personal information you give us such as your name, billing address, shipping address, payment information (including credit card numbers Paypal address, email address, and phone number. We refer to this information as “Order Information.” Your personal information will be used for the specific reasons stated above only.

Additionally, if you subscribe to our mailing list, we collect your email address to fulfil this purpose only. 

Why do we collect such personal information?

We collect such Non-personal and Personal Information for the following purposes:

1.    To provide and operate the Services;

2.    To provide our Users with ongoing customer assistance and technical support;

3.    To be able to contact our Visitors and Users with general or personalized service-related notices and promotional messages;

4.    To create aggregated statistical data and other aggregated and/or inferred Non-personal Information, which we or our business partners may use to provide and improve our respective services; 

5.    To comply with any applicable laws and regulations.

 

Individual rights

The GDPR gives you rights over how your personal data is processed. You can exercise your rights by contacting us. In some cases you can also exercise your rights through automated systems, as described at the relevant points in this privacy policy. Your personal information will not be divulged to any other organisation without your prior consent. 

 

Security

The GDPR requires us to implement appropriate technical measures to protect data. We verify the identity of any individual who requests access to data before granting access. 

 

Our company is hosted on the shopify.com platform. shopify.com provides us with the online platform that allows us to sell our products and services to you. Your data may be stored through shopify.com’s data storage, databases and the general shopify.com's applications. They store your data on secure servers behind a firewall. 

 

All direct payment gateways offered by shopify.com and used by our company adhere to the standards set by PCI-DSS as managed by the PCI Security Standards Council, which is a joint effort of brands like Visa, MasterCard, American Express and Discover. PCI-DSS requirements help ensure the secure handling of credit card information by our store and its service providers.

 

It's important to note that third-party services, such as Google Analytics or other applications offered through the  App Market, placing cookies or utilising other tracking technologies through shopify's services, may have their own policies regarding how they collect and store information. As these are external services, such practices are not covered by the Shopify Privacy Policy.

Third Parties 

We share your Personal Information with third parties to help us use your Personal Information, as described above we use Shopify to power our online store. If you want to read more about Shopify's Privacy Policy, please click here.

We also use Google Analytics to track visitor interaction with our site in order to produce statistical reports. Google collects details of the pages you view and the time you viewed them, the features of your browser, and your IP address. We have enabled IP anonymisation so that Google will not store your complete IP address. For more information on how Google handles the data it collects, see Google’s privacy policy.

 

To opt out of Google Analytics tracking on all sites, use the Google Analytics Opt-out Browser Add-on.

Lawful basis for processing: Pursuance of our legitimate interests 

Why? To allow us to analyse how visitors interaction with our site in order to improve our site and our services

Cookies 

Shopify uses cookies for many important reasons, such as:

•    To provide a great experience for your visitors and customers.

•    To identify registered members (users who registered to this site).

•    To monitor and analyse the performance, operation and effectiveness of Shopify's platform.

•    To ensure our platform is secure and safe to use. 

About cookies

Cookies are small pieces of text that are stored by your browser. Each cookie has a name and is associated with a particular site. When your browser sends a request to a site (for example, to download a page, image, or video), the computer that responds (known as a server) may tell your browser to set one or more cookies. When your browser makes further requests to the same site it sends the cookies back to the server. This allows the server to remember you as you browse the site, and provide features such as shopping baskets or password-protected areas.

 

Managing cookies

You can block all cookies through your browser settings (see the instructions for Chrome, Firefox, Safariand Edge), but if you choose to do so some features on our site will no longer work.

 

Shopify cookies 

First-party cookies are set when you interact with our site. Your browser will only send these cookies in requests to our site. Shopify also uses third-party cookies as well. If you wish to learn more about Shopify cookies, please click here.

Google Analytics cookies

These cookies are used by Google Analytics to track visitor interaction with our site in order to produce statistical reports for us. These cookies are created when you first view our site.

 

Disclosures

In addition to any sharing of data described elsewhere in this privacy policy, we may disclose data for legal reasons. If we suspect criminal activity we may disclose data relating to those involved or affected to the appropriate authorities. We may also be obliged to disclose data if we receive a request from an appropriate authority.

Contact 

We may have to contact you in regard to any orders that you have made through The Doodle Shed. We will do so via the email address that you have provided us with during the checkout process.

 

Data Retention

When you place an order through the Site, we will maintain your Order Information for our records unless and until you ask us to delete this information.

 

Changes to this privacy policy

We reserve the right to modify this privacy policy at any time, so please review it frequently. Changes and clarifications will take effect immediately upon their posting on the website. If we make material changes to this policy, we will notify you here that it has been updated, so that you are aware of what information we collect, how we use it, and under what circumstances, if any, we use and/or disclose it. Following any changes, the date at the top of this privacy policy will be updated. If any change allows for wider access to data, such changes will only apply to data collected after the date of the updated privacy policy.

 

CCPA Opt Out Page

https://thedoodleshed.co/pages/ccpa-opt-out 

 

 

If you would like to: access, correct, amend or delete any personal information we have about you, please contact us at info@thedoodleshed.co