1. Introduction
This Privacy Policy describes how Urban Harvests Co (referred to as "we," "us," or "our") collects, uses, and shares personal data of individuals who visit our website (the "Website") or use our services. We are committed to protecting your privacy and ensuring the security of your personal data.
For the purposes of the General Data Protection Regulation (GDPR),Urban Harvests Co trading as OMNIEX LTD, located at [Your Company Address], is the data controller.
2. Personal Data We Collect
We may collect the following types of personal data from you:
* Information you provide directly:
* Account Information: When you create an account, you may provide your name, email address, password, and other contact details.
* Order Information: When you place an order, you provide your billing and shipping address, payment information (although this is often processed directly by payment processors like PayPal, we may receive confirmation of the transaction), and order details.
* Communication Data: When you contact us via email, phone, or other means, we may collect your name, contact information, and the content of your communication.
* Marketing Preferences: If you subscribe to our newsletter or marketing communications, we will collect your email address and preferences.
* User Content: If you post reviews or other content on our Website, this information will be collected.
* Google Login Information: If you choose to log in using your Google account, we may collect your name and email address as permitted by your Google account settings.
* Information we collect automatically:
* Usage Data: We may collect information about how you use our Website, such as the pages you visit, the products you view, the time and date of your visit, and the duration of your session.
* Device Information: We may collect information about your device, including your IP address, browser type, operating system, and device identifiers.
* Cookies and Similar Technologies: We use cookies and similar tracking technologies to collect information about your browsing activities. You can manage your cookie preferences through your browser settings. Cookie Policy.
3. How We Use Your Personal Data
We may use your personal data for the following purposes:
* To provide and manage our services:
* Processing and fulfilling your orders.
* Managing your account.
* Providing customer support.
* Personalizing your experience on our Website.
* To communicate with you:
* Responding to your inquiries and requests.
* Sending you order confirmations and shipping updates.
* Sending you marketing communications (if you have opted in).
* Providing important notices and updates about our services or policies.
* To improve our Website and services:
* Analyzing website usage and trends.
* Developing new products and features.
* Conducting research and surveys.
* For security and fraud prevention:
* Protecting our Website and users from fraud and unauthorized access.
* Monitoring and investigating suspicious activity.
* To comply with legal obligations:
* Responding to legal requests and court orders.
* Complying with applicable laws and regulations.
4. Legal Basis for Processing Personal Data (GDPR)
Under GDPR, we will only process your personal data when we have a lawful basis for doing so. These bases include:
* Consent: You have given us explicit consent to process your personal data for a specific purpose (e.g., marketing communications). You have the right to withdraw your consent at any time.
* Contract: The processing is necessary for the performance of a contract with you (e.g., processing your order and delivering products).
* Legal Obligation: The processing is necessary for us to comply with a legal obligation.
* Legitimate Interests: The processing is necessary for our legitimate interests or the legitimate interests of a third party, provided that your rights and freedoms do not override those interests (e.g., improving our services, website analytics, fraud prevention).
5. Sharing Your Personal Data
We may share your personal data with the following categories of recipients:
* Service Providers: We may share your data with third-party service providers who assist us in operating our Website, processing payments (e.g., PayPal), fulfilling orders, delivering products, sending emails, conducting marketing activities, and analyzing data. These providers are contractually obligated to protect your data and only use it for the purposes we specify.
* Payment Processors: When you make a payment, your payment information is processed by secure payment processors like PayPal. We do not directly store your full payment card details. Their use of your personal data is governed by their own privacy policies.
* Google (for Login): If you use Google Login, Google may receive information about your login activity on our Website. Their use of your personal data is governed by Google's privacy policy.
* Business Transfers: In the event of a merger, acquisition, or sale of all or a portion of our assets, your personal data may be transferred to the acquiring entity.
* Legal Requirements: We may disclose your personal data if required to do so by law or in response to a valid legal request (e.g., a court order or government inquiry).
* Affiliates: We may share your data with our affiliates for internal business purposes, subject to the terms of this Privacy Policy.
6. International Data Transfers (If applicable)
If we transfer your personal data to countries outside the European Economic Area (EEA) that do not have equivalent data protection laws, we will ensure that appropriate safeguards are in place to protect your data, such as using Standard Contractual Clauses approved by the European Commission.
7. Data Security
We have implemented reasonable technical and organizational measures to protect your personal data from unauthorized access, use, disclosure, alteration, or destruction. These measures include [mention specific security measures you take, e.g., encryption, firewalls, secure servers]. However, please remember that no method of transmission over the internet or method of electronic storage is completely secure.
8. Data Retention
We will retain your personal data for as long as necessary to fulfill the purposes for which it was collected, including for the purposes of satisfying any legal, accounting, or reporting requirements.
To determine the appropriate retention period for personal data, we consider the amount, nature, and sensitivity of the personal data, the potential risk of harm from unauthorized use or disclosure of your personal data, the purposes for which we process your personal data, and whether we can achieve those purposes through other means, and the applicable legal requirements.
9. Your Rights Under GDPR
If you are a resident of the EEA, you have the following rights regarding your personal data:
* The right to access: You have the right to request access to the personal data we hold about you.
* The right to rectification: You have the right to request that we correct any inaccurate or incomplete personal data we hold about you.
* The right to erasure ("right to be forgotten"): You have the right to request that we delete your personal data under certain circumstances.
* The right to restriction of processing: You have the right to request that we restrict the processing of your personal data under certain circumstances.
* The right to data portability: You have the right to receive your personal data in a structured, commonly used, and machine-readable format and to transmit that data to another controller.
* The right to object: You have the right to object to the processing of your personal data for certain purposes, including direct marketing.
* Rights in relation to automated decision-making and profiling: You have the right not to be subject to a decision based solely on automated processing, including profiling, which produces legal effects concerning you or similarly significantly affects you, unless there is a legal basis for such processing.
* The right to withdraw consent: If we are processing your personal data based on your consent, you have the right to withdraw your consent at any time.
To exercise any of these rights, please contact us using the contact details provided below. We may need to verify your identity before responding to your request.
10. Cookies and Similar Technologies
Our Website uses cookies and similar technologies to enhance your browsing experience and collect information about your usage. Cookie Policy, where you provide detailed information about the cookies we use, their purpose, and how users can manage their preferences.
11. Links to Third-Party Websites
Our Website may contain links to third-party websites. We are not responsible for the privacy practices of these websites and encourage you to review their privacy policies before providing any personal data.
12. Children's Privacy
Our Website and services are not intended for children under the age of 13 with parental guidance. We do not knowingly collect personal data from children. If you believe that we have inadvertently collected personal data from a child, please contact us immediately, and we will take steps to delete the information.
13. Changes to This Privacy Policy
We may update this Privacy Policy from time to time to reflect changes in our data processing practices or legal requirements. We will post any changes on this page and, if the changes are significant, we will provide a more prominent notice. The "Last Updated" date at the top of this policy indicates when it was last revised.
14. Contact Us
If you have any questions or concerns about this Privacy Policy or our data processing practices, or if you wish to exercise your rights under GDPR, please contact us at:
UrbanHarvests Co
privacy@urbanharvests.co.uk