Privacy Policy
Last updated: April 30, 2024
Welcome to www.jhmayor.com (hereinafter the “Website”). The Website is owned and operated by John Hy. Mayor & Sons Ltd in accordance with the laws of England and Wales with company number 00348670 (hereinafter “the Company,” “we,” “us,” or “our”).
Any reference in this Privacy Policy to the “Customer,” “user,” “you,” or “your” refers to an individual who accesses the Website, places an order, contacts us through the Website, and/or subscribes to our mailing list.
This Privacy Policy describes how we collect, use, disclose, and secure our users’ personal data and their privacy rights when they access the Website, purchase products from the Website, and/or subscribe to our mailing list. We process all personal data that we collect from our Customers in compliance with the Data Protection Act of 2018.
Please read this Privacy Policy carefully to familiarise yourself with our privacy practices regarding the collection and use of our users’ personal data. Please do not use the Website or provide us with any personal data if you do not expressly agree with our privacy practices as described hereunder.
Unless expressly defined otherwise in this Privacy Policy, the words used herein shall have the same meaning as defined in our Terms and Conditions.
Table of Contents
- Definition
- Data controller
- How do we collect and use your personal data?
3.1. Personal data you voluntarily submit through the website
3.2. Personal data we collect automatically
- Disclosure of your personal data
- Transfer of data
- Your personal data rights
- Security of personal data
- Third-party links
- Amendments
Definition
The following words, whenever used in this privacy policy, shall have the meaning defined hereunder:
“Product” | refers to any item listed/offered for sale on the Website. |
“Controller,” “Data Subject,” “Personal Data,” “Processing,” “Processor,” “Supervisory Authority” | shall have the same meaning as defined in the UK GDPR. |
“Data Subject Request” | means the exercise by a Data Subject of their rights in accordance with the UK GDPR. |
Data controller
The Data Controller of personal data collected through the Website is:
John Hy. Mayor & Sons Ltd
Saw Mills,
Southport Road, Leyland,
Lancashire, PR26 8LR
United Kingdom
Email: [INSERT EMAIL ADDRESS FOR PRIVACY REQUESTS]
How do we collect and use your personal data?
The personal data we collect from you is either voluntarily provided by you or automatically collected by us when you access our Website.
Personal data you voluntarily submit through the Website
You voluntarily submit your personal data through the Website:
- When you register an account on the Website
When you register an account on the Website, we request you provide us with your personal data including but not limited to your full name and email address.
We use the personal data we collect from you to create your user account on the Website, enable you to sign in to your account, and send you account-related notices.
Our legal basis for processing this personal data is the performance of our contract with you.
Retention Period
We will erase the personal data you provided during your account registration within 90 days of terminating your user account unless we are legally permitted to retain any portion or all of your account registration data for a longer period based on another legal basis.
- When you place an order
When you place an order through the Website, we collect personal data, including your full name, phone number, email address, shipping address, and billing address. Please note that although you provide your payment details when you place your order, all payment data is directly collected and processed by our third-party payment processor, and we do not store this data on our database.
We use this personal data to process your order, contact you regarding your order and process any cancellations, returns and refund requests.
Our legal basis for processing this personal data is the performance of our contract.
Retention Period
We may retain your order-related data for up to seven years after your account termination for our business accounting and compliance purposes. At the end of this seven-year period, we will delete all order-related data. We may continue to retain order-related data by anonymising it so it cannot be linked back to you as an individual.
- When you subscribe to our mailing list
When you subscribe to receive direct marketing communication from us, such as our newsletter, you provide us with your full name and email address. We will also receive information about your interactions with our marketing emails.
We use this personal data to send you marketing material that we think you will find interesting.
Our legal basis for processing this personal data is your consent.
Retention Period
We may process your personal data for our marketing purposes until you withdraw your consent.
- When you contact us
When you contact us through the Website or email, we collect your name, email address, and the content of your message.
We use this data to reply to you and take other related actions to service your request.
Our legal basis for processing this personal data is our legitimate interest, which does not override your rights as a data subject.
Retention Period
We will retain this data for as long as you have a user account on the Website or up to two years from the date of last communication. We may retain the content of your message by anonymising it for our internal business purposes.
Personal data we collect automatically
When you browse through our Website or interact with our emails, we may automatically collect some data about you through the use of cookies. Please note that except for strictly necessary cookies which do not require your consent, your personal data is only processed with your consent, which you grant us when you accept our cookies.
We use cookies to:
- Improve our understanding of how our users use our Website.
- Offer a more personalised experience to our users when they return to our Website.
- Improve our marketing efforts, reach new audiences and increase our sales.
You can turn off cookies or remove them from your device by changing your browser settings at any time. To learn more about how you can manage cookies on your browser, please visit the applicable browser links provided hereunder:
Please note that blocking cookies may result in a poor user experience. To learn more about how to delete cookies, please visit https://www.aboutcookies.org/how-to-delete-cookies/.
Disclosure of your personal data
We will never rent or sell your personal data. We may disclose your personal data to third parties in the following situations:
- Third-Party Service Providers
We may engage third-party service providers to perform some services on our behalf, including but not limited to web development, payment processing, emailing tools, marketing and support services. Your personal data may be disclosed to such third-party service providers only to the extent required for them to perform relevant functions on our behalf. In no event will these service providers use your personal data for any purpose other than those specified in this privacy policy.
- Commercial Transactions
In the event we enter into any commercial transaction, such as a merger, acquisition, sale, or purchase, all your personal data may be disclosed or transferred to a third-party as part of such a commercial transaction.
- Protection of Rights or Fulfilment of Legal Obligations
We will disclose your personal data to third parties in situations where we believe such disclosure is necessary to investigate or remedy any violations of our agreement or to protect our rights and the rights of others. We will also disclose your personal data in situations where we are required to do so by applicable law/regulation or legal process, such as to comply with a subpoena.
- With Your Consent
We may share your personal data with third parties with your express consent.
Transfer of data
Although we aim to process your personal data within the United Kingdom, or EEA, we may make use of some tools and services that are provided by some companies which may be domiciled outside of the UK or EEA, where data protection laws are not as stringent as those in the UK and EEA. When we use such tools/services, your personal data may be transferred and processed outside the UK. Whenever such transfer of data takes place, we will ensure that it is in compliance with the UK GDPR.
Your personal data rights
As a data subject, you have the following rights relating to your personal data:
- Right to access your personal data
You have the right to request access to your personal data or a copy of your personal data by contacting us.
- Right to rectification
If the personal data we process for you is incorrect, outdated, or incomplete, you may request us to rectify, update, or complete your missing personal data by contacting us.
- Right to withdraw consent
To the extent the legal basis of our processing of your personal data is your consent, you have the right to withdraw your consent at any time. You can opt out of receiving marketing communication from us by clicking the ‘unsubscribe’ link at the bottom of our marketing emails. You can also block the use of our cookies to which you previously consented by accessing your browser settings.
- Right to the erasure of personal data
In limited circumstances, you may exercise your right to request the erasure of your personal data, such as where your personal data is being processed unlawfully.
- Right to file a complaint
If you believe that your personal data rights are breached, we would truly appreciate it if you would contact us first to discuss the issue. If you are not satisfied with our response, you have the right to file a complaint with the Information Commissioner’s Office:
The Information Commissioner’s Office
Water Lane, Wycliffe House
Wilmslow – Cheshire SK9 5AF
Tel. +44 1625 545 745
Email: international.team@ico.org.uk
You can exercise your privacy rights by contacting us at the contact information provided in Section 2 of this Privacy Policy. Please note that we may request you to provide proof of your identity before servicing your data subject requests.
Security of personal data
The security of your personal data is important to us. We take all reasonable and financially viable steps to safeguard your personal data from any unauthorised access, use, modification, destruction, or loss. We have integrated various security measures into the design of our Website and in our day-to-day operations. Although we make our best effort to safeguard your personal data, you acknowledge that no mode of transmission over the Internet is one hundred percent secure; therefore, we cannot offer you any guarantees as to the absolute security of your personal data. By using the Website, you understand and accept that the transmission of data through the Website is carried out at your own risk.
Third-party links
Our Website may contain links that will redirect you to third-party websites. Such third-party websites are not owned or operated by us. These third-party websites are governed by their own legal terms and conditions and privacy policy. We advise our users to review all third-party legal agreements before making use of such websites. You understand that the presence of any third-party links on our Website does not constitute an endorsement of such a third party, and we cannot be held responsible for such a third party’s actions. Your decision to visit these third-party sites is entirely at your own risk.
Amendments
We reserve the right to make changes to this privacy policy by inclusion, modification, or removal of any part at any time. When we make any material changes to this privacy policy, we will notify you by email or by changing the last modified date on top of this privacy policy. You agree that it is solely your responsibility to review this privacy policy when you revisit the Website. Your continued use of the Website after we post the updated privacy policy will constitute your acceptance of such changes.