Organisation name: Graham Hill Cosmetics Ltd Reference: ZB124149
Categories of Personal Data and Processing Purposes
You may use the Website without providing any personal data about you. In this case, we will collect only the following metadata that result from your usage of the Website: browser type and version, operating system and interface, website from which you are visiting us (referrer URL), webpage(s) you are visiting on our Website, date and time of accessing our Website, and internet protocol (IP) address.
Your IP address will be used to enable your access to our Website. The metadata, including the shortened IP address, will be used to improve the quality and services of our Website and services by analysing the usage behaviour of our users.
If you create an account on our Website you will be asked to provide the following personal data about you: name, gender (salutation), date of birth, postal address, email address, telephone number, selected password for your account, payment details, invoicing and delivery address and your preferences in receiving marketing from us (voluntary). We process such personal data for purposes of account administration, answering your queries or information requests, providing your desired products, providing you with marketing materials where you have provided consent for us to do so, to the extent permitted by applicable law, analysing your interests for marketing purposes, improving our Website according to usage patterns, and for technical administration or other purposes to which you have agreed.
If you order a product via our Website we collect and process the following personal data about you: name, gender (salutation), postal address, email address, telephone number, payment details, invoicing and delivery address, type and amount of product, purchase price, order date, order status, product returns, customer care requests, and your preferences in receiving marketing from us (voluntary). We process such personal data for purposes of carrying out the contractual relationship and the product order, providing customer care services, compliance with legal obligations, defending, establishing and exercising legal claims, providing you with marketing materials where you have provided consent for us to do so, to the extent permitted by applicable law, and analysing your interests for marketing purposes.
If you participate in a competition, we collect and process the following personal data about you: name, gender (salutation), postal address, email address, telephone number and selection as winner. We process such personal data for purposes of carrying out the competition, informing the winner, delivering the prize to the winner, carrying out the event, and providing you with marketing materials where you have provided us consent to do so, to the extent permitted by applicable law, and analysing your interests for marketing purposes.
If you request to receive our newsletter, we collect and process the following personal data about you: name, email address, date of birth (optional), gender (optional) and, your preferences in receiving marketing communications (voluntary). We process such personal data for purposes of providing the newsletter and other marketing materials to the extent permitted by applicable law and where you have provided us consent to do so and analysing your interests for marketing purposes.
On our website, we offer you the opportunity to contact us via a contact form. For this we need the following personal data from you: Salon Name, First name, Surname, email name, telephone number, address. The personal data that you provide us in the context of this contact request will only be used to answer your inquiry to become a ‘Salon Stockist’ and for the technical administration thereof. The transfer to third parties does not take place. Your personal data will be deleted as soon as we have processed your request or you revoke the consent you have given.
The legal justification for processing your personal data and what happens if you choose not to provide it.
Processing Basis and Consequences
We rely on the following legal grounds for the collection, processing, and use of your personal data:
The provision of your personal data is not required by a statutory or contractual obligation. The provision of your personal data is not necessary to enter into a contract with us or to receive our services/products as requested by you. The provision of your personal data is voluntary for you.
Not providing your personal data may result in disadvantages for you, for example, you may not be able to receive our products. However, unless otherwise specified, not providing your personal data will not result in legal consequences for you.
Categories of Recipients
We may transfer your personal data to third parties for the processing purposes described above as follows:
Any access to your personal data is restricted to those individuals that have a need-to-know in order to fulfill their job responsibilities.
Your personal data will be retained as long as necessary to provide you with the services and products requested. Once you have terminated the contractual relationship with us or the competition has been completed or otherwise ended your relationship with us, we will remove your personal data from our systems and records and/or take steps to properly anonymize it so that you can no longer be identified from it (unless we need to keep your information to comply with legal or regulatory obligations.
We may retain your contact details and interests in our products or services for a longer period of time if Graham Hill UK Ltd is allowed to send you marketing materials. Also, we may be required by applicable law to retain certain of your personal data for a period of 7 years after the relevant taxation year. We may also retain your personal data after the termination of the contractual relationship if your personal data are necessary to comply with other applicable laws or if we need your personal data to establish, exercise or defend a legal claim, on a ‘need to know’ basis only. To the extent possible, we will restrict the processing of your personal data for such limited purposes after the termination of the contractual relationship
Right to withdraw your consent: If you have declared your consent regarding certain collecting, processing and use of your personal data (in particular, regarding the receipt of direct marketing communication via email, telephone/SMS and postal), you can withdraw this consent at any time with immediate effect. Such a withdrawal will not affect the lawfulness of the processing prior to the consent withdrawal. Please contact us as stated in Section 7 below to withdraw your consent. Further, you can object to the use of your personal data for the purposes of marketing without incurring any costs other than the transmission costs in accordance with the basic tariffs.
Additional data privacy rights: Pursuant to applicable data protection law, you may have the right to: (i) request access to your personal data; (ii) request rectification of your personal data; (iii) request erasure of your personal data; (iv) request restriction of processing of your personal data; (v) request data portability; and/or (vi) object to the processing of your personal data (including objection to profiling).
Please note that these aforementioned rights might be limited under the applicable local data protection law. Below please find further information on your rights to the extent that the GDPR applies:
To exercise your rights, please contact us as stated under Section 7 below. You also have the right to lodge a complaint with the competent data protection supervisory authority.
What are cookies?
Cookies are small pieces of text sent by your web browser by a website you visit. A cookie file is stored in your web browser and allows the Service or a third-party to recognise you and make your next visit easier and more efficient. You can find out more information about cookies at www.allaboutcookies.org
The law states that we can store cookies on your machine if they are essential to the operation of this site but that we need your permission before using any other type of cookie.
Cookies can be “persistent” or “session” cookies.
When you use and access the Service, we may place a number of cookies files in your web Browser.
We use both session and persistent cookies on the Service, and we use different types of cookies to run the Service:
Essential cookies. We may use essential cookies to authenticate users and prevent fraudulent use of user accounts.
In addition to our own cookies, we may also use various third-parties’ cookies to report usage statistics of the Service, deliver advertisements on and through the Service, and so on.
The cookies we use
We use the following types of cookies on our website:
Google Analytics cookies: These cookies collect information about how visitors use a website e.g., which pages visitors go to most often. These cookies do not collect information that identifies a visitor but provide a free web analytics service to website owners.
_ga Used to distinguish users Default expiration time: 2 years
_gid Used to distinguish users Default expiration time: 24 hours
_gat Used to throttle request rate Default expiration time: 1 minute
AMP_TOKEN Contains a token that can be used to retrieve a Client ID from AMP Client ID service. Other possible values indicate opt-out, inflight request or an error retrieving a Client ID from AMP Client ID service Default expiration time: 30 seconds to 1 year
_gac Contains campaign related information for the user. If you have linked your Google Analytics and AdWords accounts, AdWords website conversion tags will read this cookie unless you opt-out. Default expiration time: 90 days
What are your choices regarding cookies?
When accessing the Service, the cookies noted above are automatically added to your computer. You may choose to block cookies by activating the setting on your browser that allows you to refuse the setting of all or some cookies.
Please note, however, that if you delete cookies or refuse to accept them, you might not be able to use all of the features we offer, you may not be able to store your preferences, and some of our pages might not display properly.
By clicking on the “Accept Cookies” tab on the cookie pop-up on our site or my continuing to use the Service, we deem that you have provided your consent to the use of the above-named cookies.
If you have any queries about your personal information or any questions on our use of the information, please contact email@example.com
Questions and Contact Information
For further information and to exercise your statutory rights (Data-Subject-Request) email firstname.lastname@example.org