Privacy Policy
How Blimey Box protects and handles your personal information
Introduction
At Blimey Box, we are committed to protecting your privacy and ensuring the security of your personal information. This Privacy Policy explains how we collect, use, store, and protect your data when you visit our website or purchase our luxury British gift hampers.
We comply with the UK General Data Protection Regulation (UK GDPR), the Data Protection Act 2018, and other applicable data protection laws.
Data Controller
Company: Blimey Box Ltd
Address: 123 Luxury Lane, London, SW1A 1AA, United Kingdom
Email: privacy@blimeybox.com
Information We Collect
Personal Information You Provide
- Contact Details: Name, email address, phone number, postal address
- Payment Information: Processed securely through Stripe (we don't store card details)
- Delivery Information: Recipient names and addresses for gift deliveries
- Communication: Messages you send us, reviews, feedback
- Account Information: Preferences, order history, saved addresses
Information Collected Automatically
- Technical Data: IP address, browser type, device information, operating system
- Usage Data: Pages visited, time spent, links clicked, search terms
- Cookies: Essential cookies for functionality, analytics cookies for improvement
- Location Data: General location for delivery estimates and regional offers
How We Use Your Information
Essential Services
- • Process and fulfill your orders
- • Arrange delivery of your hampers
- • Handle payments securely
- • Provide customer support
- • Send order confirmations and updates
Service Improvement
- • Improve website functionality
- • Analyze customer preferences
- • Develop new products
- • Personalize your experience
- • Prevent fraud and abuse
Marketing (With Your Consent)
- • Send promotional emails about new hampers and special offers
- • Share seasonal gift recommendations
- • Invite you to participate in customer surveys
- • Send birthday and anniversary reminders for gift occasions
You can opt out of marketing communications at any time by clicking "unsubscribe" in emails or contacting us.
Legal Basis for Processing
How We Share Your Information
We only share your information when necessary and with trusted partners:
Stripe processes payments securely. We never see or store your full card details.
Courier services receive delivery addresses and contact details to ensure successful delivery.
Web hosting, email services, customer support tools - all bound by strict data processing agreements.
When required by law, court order, or to protect our rights and safety.
We never sell your personal information to third parties for marketing purposes.
Data Retention
- Order Information: 7 years (UK tax and accounting requirements)
- Customer Account Data: Until you delete your account or request deletion
- Marketing Consent: Until you unsubscribe or withdraw consent
- Website Analytics: 26 months maximum
- Customer Support: 3 years from last interaction
Your Data Rights
Under UK GDPR, you have the following rights:
Request a copy of your personal data
Correct inaccurate information
Delete your personal data ("right to be forgotten")
Limit how we use your data
Transfer your data to another service
Object to processing for marketing
Withdraw consent at any time
Contact the Information Commissioner's Office (ICO)
How to Exercise Your Rights
We'll respond within 30 days of receiving your request. Some rights may not apply in all circumstances.
Data Security
We implement industry-standard security measures to protect your information:
- • SSL encryption for all data transmission
- • Secure hosting with regular security updates
- • Access controls and staff training
- • Regular security monitoring and audits
- • Secure payment processing via Stripe
- • Data backup and disaster recovery
- • Incident response procedures
- • Regular vulnerability assessments
Cookies
We use cookies to improve your experience on our website:
Required for website functionality, shopping cart, and security
Help us understand how you use our site to improve performance
Used to show relevant advertisements and measure campaign effectiveness
You can manage cookie preferences in your browser settings. Disabling certain cookies may affect website functionality.
International Transfers
Some of our service providers may process data outside the UK/EU. When this happens, we ensure adequate protection through:
- Adequacy decisions by the UK/EU authorities
- Standard Contractual Clauses (SCCs)
- Binding Corporate Rules or certification schemes
- Additional safeguards as required by law
Changes to This Policy
We may update this Privacy Policy from time to time. When we make significant changes, we will:
- Update the "Last updated" date at the top of this page
- Notify you by email if you have an account with us
- Display a prominent notice on our website
- For material changes, we may seek your consent where required by law
Contact Us
If you have any questions about this Privacy Policy or our data practices, please contact us:
Data Protection Officer
Postal Address
Blimey Box Ltd
123 Luxury Lane
London, SW1A 1AA
United Kingdom
You also have the right to lodge a complaint with the Information Commissioner's Office (ICO) atico.org.uk