Privacy NoticeEffective 23rd May 2018
1. WHAT INFORMATION DO WE COLLECT?
We collect and use information about you that is picked up when you interact with Us such as through our website, if you have an account with Us, if you get in touch with Us, if you apply for a job or if you use a service that integrates with Us. We also collect and use information provided by third parties.
If you want more detail, here is the information that We may collect about you:
1.1. information you give Us when you get in touch with Us (by phone, email or otherwise) or the information you provide when you register or use our website, online shop or any marketing emails we may send to you. Examples of this information are your name, addresses, email addresses, phone numbers, credit and debit card information and personal preferences.1.2. transactional information in relation to purchasing goods and services including from Our payment provider;
1.3. We also work closely with third parties (including, for example, payment and delivery services, analytics providers, search information providers,) and may receive information about you from them.
1.4. technical information, including the Internet protocol (IP) address used to connect your computer or device to the Internet, your browser type and version, time zone setting, browser plug-in types and versions, operating system and platform;
1.6. information you provide when applying for a job or to provide us with services;
2. HOW DO WE USE YOUR INFORMATION AND WHAT IS THE LAWFUL BASIS?
In short, We use your information in order to carry out our operation as a chocolate company and provide delicious products and services, to make people happier, to sell them really great chocolate and other goods or services that We make, to further our mission in making the world a more delicious place, to make sure We don’t breach any contracts, to keep NOMNOM and you secure, to give people information about services and to comply with the law.
If you want more detail, We use your information in the following ways:
2.1. for our operation as a chocolate company and to provide goods and services including:
2.1.1. to operate customer accounts and comply with obligations to our partners.
2.1.2. to ensure our website, content and services are as effective and relevant as possible and give you the best experience they can;
2.1.3. to administer our business, including troubleshooting, data analysis, testing, research, statistical and survey purposes and to keep Our business, websites and our systems safe and secure;
2.1.4. to ensure that we comply with the law and regulations, for regulatory purposes generally as well as to help detect or prevent fraud or other crimes, and for tax, legal, reporting and auditing obligations;
2.1.5. in case we need to check We have carried out your instructions correctly or to resolve queries or issues;
2.1.6. for staff training purposes where We may monitor or record conversations;
2.1. to carry out Our obligations arising from any contracts entered into between you and us;
We process your information for the purposes set out above on the following grounds: where it is necessary for the adequate performance of contracts with you and to take steps requested by you prior to you entering into contracts with Us.
2.4. to provide information, products and services that are requested from Us, or other products and services we offer or Our business partners offer or to provide and to notify you about changes to Our services;
We process your information for the purposes set out above on the following grounds: given Our legitimate interest in undertaking activities to offer you products or services that may be of interest to you or that you have expressed an interest in hearing about, given our legitimate interest in providing goods and services, operating and improving NOMNOM and being as efficient as we can about complying with legal duties, obligations and regulations that apply to Us and keeping Our records up to date.
2.5. to measure or understand the effectiveness of any functionality or access to, or the commerciality of, any products or services We offer or to which we provide access and We use analytics and search engine providers to assist Us in the improvement and optimisation of Our website and our business generally.
We process your information for the purposes set out above on the following grounds: given our legitimate interest in operating and improving NOMNOM and providing goods and services.
3. WHO DO WE SHARE YOUR INFORMATION WITH?
Sometimes we share your information with other service providers to ensure we can do the things set out above in the section 2, “HOW DO WE USE YOUR INFORMATION AND WHAT IS THE LAWFUL BASIS?”;
3.1. We share you information with our affiliates to ensure we can do the things set out above in the section “HOW DO WE USE YOUR INFORMATION AND WHAT IS THE LAWFUL BASIS?”;
3.2. with business partners, suppliers and subcontractors, with companies, organisations or individuals outside NOMNOM for the performance of any contract We enter into with them or you or for the uses set out in the section 2, “HOW DO WE USE YOUR INFORMATION AND WHAT IS THE LAWFUL BASIS?”;
3.3. other third parties where you ask Us to.
4. WHERE DO WE PROCESS AND STORE YOUR INFORMATION?
4.1. We process your information and store it on servers managed by Our hosting providers.
4.2. Those servers are located across a number of secure data centres in the EEA and the USA.
4.3. We try to ensure that we do not send your information outside the EEA. However, this is not possible in all cases:
4.3.1. in relation to a very small number of Our suppliers, your information may be transferred to, and stored at, a destination outside the EEA as well as processed by staff operating outside the EEA who work for them. We will ensure that suitable safeguards are in place before your information is transferred outside the EEA as required by law and We will take all steps reasonably necessary to ensure that information about you is treated securely and in accordance with this notice;
4.3.2. if you are outside the EEA and make payments or send messages, or you are in the EEA and make payments or send messages outside the EEA, We may process payments through other institutions and payment systems. They may have to process and store information about you in connection with their own regulations; please note that the standards to which they adhere may not be as stringent as those in the EEA.
4.4. Unfortunately, the transmission of your information via the Internet can never be 100% secure. Although we will do Our best to protect your information, we cannot guarantee the security of information about you transmitted to us and so any transmission is at your own risk.
5. YOUR RIGHTS
You have certain rights under the law and under this notice to request access to your information, to manage it and to request us to delete or transfer information about you or restrict the way it is used. You also have a right to complain.
If you want more detail:
5.1. Accessing information about you: You may access information held about you. Your right of access can be exercised as follows:
5.1.1. please email us at email@example.com
5.2. Managing your information:
5.2.1. To provide outstanding customer service We need accurate customer information. You can help by informing Us whenever your circumstances change.
5.2.2. If you wish to update information about you which is inaccurate or incorrect please email us at firstname.lastname@example.org
5.2.3. We may need to ensure that your information is accurate and correct and this may involve a number of further steps.
5.3. Deleting your information:
5.3.1. Generally, we will store your information for 2 years.
5.3.2. You may request that we delete your information and we will do so but:
184.108.40.206. only if we do not need to retain it for any of the matters set out in the section 2, “HOW DO WE USE YOUR INFORMATION AND WHAT IS THE LAWFUL BASIS?” above;
220.127.116.11. your information may be impossible to permanently delete and where this is not possible we will put that information beyond reasonable use;
18.104.22.168. your information which you have shared with others (e.g. on our website) may remain publicly available;
22.214.171.124. please note that your information which you have transmitted to others, e.g. service providers, will be subject to the privacy policies of those others.
5.4. Objecting to or restricting use of your information:
5.4.1. You can ask us to stop using all or some of your information or to limit our use of it:
126.96.36.199. please email us at email@example.com
5.4.2. We will do so but:
188.8.131.52. only if we do not need to retain or use it for any of the matters set out in the section 2, “HOW DO WE USE THE INFORMATION AND WHAT IS THE LAWFUL BASIS?”
184.108.40.206. your information which you have shared with others (e.g. on our websites) may remain publicly available;
220.127.116.11. please note that your information which you have transmitted to others, e.g., service providers will be subject to the privacy policies of those others.
5.5. Transferring your information:
5.5.1. You can ask to have your information transferred elsewhere:
18.104.22.168. please email us at firstname.lastname@example.org
5.5.2. We will do so but:
22.214.171.124. we may also need to retain it for any of the matters set out in the section 2, “HOW DO WE USE YOUR INFORMATION AND WHAT IS THE LAWFUL BASIS?” above;
126.96.36.199. we may be restricted from doing so for the same reasons.
5.6. You have the right to lodge a complaint with the Information Commissioner’s Office (go to https://ico.org.uk/).
6. OTHER IMPORTANT MATTERS
Please check frequently for updates to this notice and, if you need to contact us, details are below.
6.1. Updates: This notice may be updated from time to time. Any updates we make to this notice will become effective immediately on posting on our websites (and We will also send them by email to customers who have provided us with an email address). So, if you are not one of those customers, you will need to check the websites to see if there have been any updates.
6.2.1. If you have any questions about this notice or suggestions on any ways it can be improved, please let us know by getting in touch with our data protection officer. Our Data Protection Officer can be contacted at email@example.com
6.2.2. For the purposes of GDPR, the data controller is NOMNOM Chocolate Limited, Llanboidy, SA34 0EX
7. WHAT THE WORDS MEAN
7.1. Unless they are defined specifically in here, words used in here have the same meaning as in our general terms and conditions, as amended from time to time.
7.2. The following terms have the meanings opposite them:
7.2.1. “EEA” means the European Economic Area;
7.2.2. “GDPR” means the General Data Protection Regulation (EU 2016/679);
7.2.3. ”we, “us”, “our” or “NOMNOM” means NOMNOM Chocolate Limited.
7.2.4. “your information” or “information about you” means personal data (as defined in GDPR) about you.