- Introduction Ebritshop Ltd (“we”, “us”, “our”) operates thebritshop (thebritshop.uk) (“Site”) and is committed to protecting your privacy and handling your personal data in a fair, transparent and lawful way. This Privacy Policy explains what personal data we collect, why we collect it, how we use and share it, your rights, and how to contact us. This policy applies to visitors and customers of our online book store.
- Data Controller Ebritshop Ltd Suite 4 Northampton Business Centre Lower Harding Street Northampton, NN1 2JL England Email: info@thebritshopo.uk Phone: +44 844 986 5552
We are the data controller for the personal data described in this policy.
- Personal data we collect We collect personal data you provide directly and data collected automatically when you use the Site:
a. Data you provide:
- Account and registration: name, email address, password, phone number, postal address.
- Order and purchase information: billing and delivery address, payment card details (note: see “Payment processing” below), order history.
- Communications: messages to customer service, support tickets, feedback, reviews.
- Marketing preferences and consent choices.
- Business-to-business contacts (where applicable): company name, job title, business contact details.
b. Data collected automatically:
- Usage and technical data: IP address, device and browser information, pages visited, referrer URL, operating system, timestamps, and cookie identifiers.
- Analytics and aggregated data used to improve the Site.
- Legal bases for processing We process your personal data under the following legal bases (as applicable under UK GDPR):
- Contract performance: to fulfil orders, provide goods and services, manage your account and process payments.
- Legitimate interests: to operate and improve our Site and services, prevent fraud, maintain security, and carry out direct marketing (where balanced with your rights).
- Consent: where we ask for your explicit consent (e.g., marketing communications, cookies where required).
- Legal obligations: to comply with legal or regulatory obligations (e.g., tax, record keeping).
- Purposes of processing and categories of recipients We use personal data for the following purposes:
- To provide and manage orders: process orders, deliveries, returns, refunds and customer support. Recipients: couriers, fulfilment partners.
- Payment processing: to accept and process payments. Recipients: payment processors and acquiring banks (we do not store full card details; card data is processed securely by our payment providers).
- Account management: create and maintain your account, authenticate access.
- Communications: send transactional emails (order confirmations, shipping updates), respond to enquiries.
- Marketing: send promotional offers, newsletters and tailored recommendations where you have consented or where we rely on legitimate interest (you may opt out at any time). Recipients: email marketing platforms.
- Fraud prevention and security: monitor and prevent fraud and abuse. Recipients: fraud prevention services and analytics providers.
- Legal compliance and safety: comply with laws, respond to lawful requests, protect rights and safety.
- Cookies and similar technologies We use cookies and similar technologies to operate the Site, remember preferences, and deliver analytics and marketing. When required by law or by your browser settings, we obtain consent before setting non-essential cookies. You can manage cookie preferences via your browser or our cookie consent tool.
- Third-party services and links We use third-party services (e.g., analytics, hosting, payment gateways, email providers) that may process personal data on our behalf. We vet and contractually require such parties to protect your data. The Site may contain links to third-party sites; we are not responsible for their privacy practices.
- International transfers Some service providers may process personal data outside the UK. When we transfer data internationally, we ensure appropriate protections such as UK adequacy decisions, standard contractual clauses, or other lawful transfer mechanisms.
- Data retention We retain personal data only as long as necessary for the purposes set out in this policy, to comply with legal obligations (for example, tax and accounting requirements), resolve disputes, enforce agreements, and as otherwise permitted by law. Typical retention periods:
- Order and transaction records: as required for accounting and tax (usually 6 years).
- Account information: while your account exists and for a reasonable period after.
- Marketing data: until you withdraw consent or opt out.
- Your rights Subject to applicable law, you may have the following rights:
- Access: request a copy of personal data we hold about you.
- Rectification: ask us to correct inaccurate or incomplete data.
- Erasure: request deletion of personal data (subject to legal obligations and legitimate interests).
- Restrict processing: ask us to limit processing in certain circumstances.
- Data portability: request a machine-readable copy of data you provided.
- Object: object to processing based on legitimate interests or direct marketing.
- Withdraw consent: where processing is based on consent, withdraw it at any time.
To exercise these rights, contact us at info@thebritshopo.uk or by post at our address above. We may ask for proof of identity. We will respond within statutory timeframes.
- Complaints If you are not satisfied with our response, you have the right to lodge a complaint with the UK Information Commissioner’s Office (ICO): https://ico.org.uk/.
- Security We implement technical and organisational measures designed to protect personal data against unauthorised access, loss, misuse, alteration or destruction. These measures are reviewed regularly. However, no transmission or storage system is completely secure; please take care when sharing sensitive information.
- Children Our services are not directed to children under 13. We do not knowingly collect personal data from children under 13. If you believe we have collected such data, contact us to request deletion.
- Changes to this policy We may update this Privacy Policy from time to time. When significant changes are made we will notify you by posting the updated policy on the Site with a revised “Last updated” date and, where appropriate, via email.
- Contact us For questions, requests or concerns about this Privacy Policy or our data practices: Email: info@thebritshopo.uk Phone: +44 844 986 5552 Post: Ebritshop Ltd, Suite 4 Northampton Business Centre, Lower Harding Street, Northampton, NN1 2JL, England
