Why is Eco Stoves updating its privacy statement?
We now meet the high standards required by the European Union’s General Data Protection Regulation (GDPR) and have updated our privacy statement to reflect that. We also strive to simplify language and remove jargon, to make our privacy statement easier to read and understand.
What is the GDPR?
The GDPR is a regulation intended to strengthen and unify data protection for everyone within the European Union (EU). The GDPR requires greater openness and transparency from companies on how they collect, store and use personal data, while also imposing tighter limits on the use of personal data.
This statement describes what types of information we collect from you, how it is used by us, how we share it with others, how you can manage the information we hold and how you can contact us.
We will always give you the option not to receive marketing communications from us. We will never send you unsolicited ‘junk’ email or communications, or share your data with anyone else who might. We do not sell your information to third parties.
The contents of this statement may change from time to time so you may wish to check this page occasionally to ensure you are still happy to share your information with us.
What information do we collect about you?
We collect information about you when you engage with our website, or staff in our showrooms. We only collect information which is necessary, relevant and adequate for the purpose you are providing it for.
Some of this information does not identify you personally, but provides us with information about how you use our services and engage with us (we use this information to improve our services and make them more useful to you). The information we collect includes some or all of the following:
We use this information to manage your account, support and process your order, authentication, processing of payments and marketing (unless you have opted out).
How do we use your information?
Eco Stoves will only process information that is necessary for the purpose for which it has been collected. You will always have the option not to receive marketing communications from us (and you can withdraw your consent or object at any time). We will never send you unsolicited ‘junk’ email or communications, or share your personal information with anyone else who might.
There are various ways in which we may use or process your personal information:
Where you have provided your consent, we may use and process your information to contact you from time to time about promotions, events, products, services or information which we think may be of interest to you (don’t worry, we won’t bombard you);
You can withdraw your consent at any time by contacting us at email@example.com or, in relation to any marketing messages you receive, by using the unsubscribe option included in those messages.
We may use and process your personal information where this is necessary to perform a contract with you and to fulfil and complete your orders, purchases and other transactions entered into with us. This may include the use of third party services who provide part of the services required on our behalf, for example a courier service.
How long do we keep it for?
The periods for which we keep your information depends on the purpose for which your information was collected and used. We will not keep your personal information for longer than is necessary for our business purposes or for legal requirements.
In all cases, our need to use your personal information will be reassessed on a regular basis, and information which is no longer required for any purposes will be disposed of.
Who do we share it with?
We share your information will the following business partners. They will only collect, use and disclose your information to the extent necessary to allow them to perform the services they provide to us.
We take steps to ensure that any third party partners who handle your information comply with data protection legislation and protect your information just as we do. We only disclose personal information that is necessary for them to provide the service that they are undertaking on our behalf. We will aim to anonymise your information or use aggregated non specific data sets where ever possible
Whilst we will take all reasonable steps to protect and secure your personal data, we cannot guarantee the confidentiality of any messages transmitted between you and us via email as these are potentially accessible by others. We will not be liable to you or anyone else for any loss relating to any email message sent by you to us or by us to you.
We know how much trust you place in us when you share your personal data. Because of that we place great importance on the security of your personal information and will always take appropriate precautions to protect it.
Whilst we strive to protect your personal information, we cannot guarantee the security of any information which you disclose to us online and you must understand that you do so at your own risk. We never hold your credit card details on our website or in our own records.
We take care to protect your personal information. We take steps to ensure that access to personal information is restricted to employees who need it and that all employees who handle personal information are fully trained and kept up-to-date on our data management, security and privacy practices. Our employees are notified and reminded about the importance we place on privacy, and what they can do to ensure your information is protected
How do we protect your Information across borders?
The internet works as a global environment. This means that using it to collect and process personal data often involves the international transmission of data including outside of the European Economic Area (EEA)
Our third-party service providers, such as payment gateways and other payment transaction processors, are located in or have facilities that are located in a different country or territory to the UK. If you elect to proceed with a transaction that involves the services of one of our third-party service providers, then your information may become subject to the laws of the jurisdiction(s) in which that service provider or its facilities are located.
Your personal data is protected under applicable laws such as the European Commission Data Adequacy or they are certified with the international Privacy Shield Framework.
Your Rights under applicable Data Protection Law
You have the right as an individual to access your personal information we hold about you and make corrections if necessary. You also have the right to withdraw any consent you have previously given us and ask us to erase information we hold about you.
You have a number of rights in relation to your personal information under data protection law. In relation to most rights, we will ask you for information to confirm your identity and, where applicable, to help us search for your personal information. Except in rare cases, we will respond to you within 30 days after we have received any request (including any identification documents requested).
You have the right to:
Subject Access Request
If you would like a copy of some or all of your personal information, please email firstname.lastname@example.org or write to us at the following address
Webbs Garden Centre
Kidderminster Road South
Cookies are small text files that may be automatically stored on your computer or mobile device by the websites you visit.
We use the following types cookies:
You can find more information about the individual cookies we use and the purposes for which we use them in the table below, which will be updated periodically as we start using new cookies and stop using old ones. Please check back here to see which cookies are in use at any given time.
|_ga||We use Google Analytics and Google Tag Manager to gain a better understanding of how users browse and interact with our website in order to improve our website and offer a better user experience for everyone.
· _ga: Used in combination with the _gid to distinguish users and generate statistical data.
· _gid: Registers a unique ID that is used to generate statistical data on how the visitor uses the website.
· _gat_UA-###: Used by Google Analytics to throttle request rate
· _dc_gtm_UA-###: Your unique Analytics ID used by Google Tag Manager to generate visitor and statistical data.
If you are logged into your Google account while visiting our site, Google is able to track your use of certain websites (such as ours) which use Google plug-ins. You will have agreed to this arrangement as part of signing up for a Google account, and Google will already have placed cookies on your device for this purpose.
More Information can be found here.
|2. Analytical||2 Years|
Any information regarding the data retention or privacy policies of third parties services is supplied in good faith and is subject to change by the relevant provider.
Analytics cookies on our website:
This website uses Google Analytics, a web analytics service provided by Google, Inc. (“Google”). The information generated by the cookie about your use of this website (including your IP address) will be transmitted to a Google server in the USA and stored there. Google will use this information for the purpose of evaluating your use of the website, compiling reports on website activities for website operators and providing other services relating to website activity and internet usage. Google may also transfer this information to third parties where this is required by law or insofar as third parties process this data on behalf of Google. Google will never associate your IP address with any other data held by Google.
For more information about Google Analytic cookies please Click Here.
Managing / Blocking Cookies:
Please see the links below for instructions on limiting cookies for your browser:
To opt out of being tracked by Google Analytics across all websites, you can install a small plugin proposed by Google for all major browsers. For more information you can visit: http://tools.google.com/dlpage/gaoptout