Privacy Policy
Overview
This privacy notice tells you what to expect us to do with your personal information:
​
• Contact details Â
• What information we collect, use, and why Â
• Lawful bases and data protection rights Â
• Where we get personal information from Â
• How long we keep information Â
• Who we share information with Â
• Sharing information outside the UK Â
• How to complain Â
Please email hello@teapotandtumble.couk if you have any questions.
What Information We Collect, Use and Why
We collect or use the following information to provide services and goods, including delivery:
​
• Names and contact details Â
• Purchase or account history Â
• Payment details (including card or bank information for transfers and direct debits) Â
• Health and safety information Â
• Website user information (including user journeys and cookie tracking) Â
• Information relating to compliments or complaints Â
​
We collect or use the following information to comply with legal requirements:
​
• Name Â
• Contact information Â
• Financial transaction information Â
• Health and safety information Â
• Safeguarding information Â
​
We collect or use the following personal information for dealing with queries, complaints or claims:
​
• Names and contact details Â
• Purchase or service history Â
• Financial transaction information Â
• Information relating to health and safety Â
• Correspondence Â
Lawful Bases and Data Protection Rights
Under UK data protection law, we must have a lawful basis for collecting and using your personal information.
​
You have the following rights:
​
• The right to access your personal data Â
• The right to rectification Â
• The right to erasure Â
• The right to restrict processing Â
• The right to object to processing Â
• The right to data portability Â
• The right to withdraw consent Â
​
If you make a request, we must respond within one month.
​
To make a request, please contact us using the details above.
Our Lawful Bases for Processing
To provide services and goods:
​
• Contract Â
• Legal obligation Â
• Legitimate interests Â
​
Our legitimate interests are to operate and improve our business, manage bookings and enquiries, and ensure the efficient running of our services.
To comply with legal requirements:
​
• Legal obligation Â
To deal with queries, complaints or claims:
​
• Contract Â
• Legal obligation Â
• Legitimate interests Â
​
Our legitimate interests are to respond to enquiries, resolve complaints, and maintain good customer service.
Where We Will Get Personal Information From
• Directly from you Â
• CCTV footage or other recordings Â
• Suppliers and service providers Â
How Long We Keep Information
We only keep personal information for as long as necessary to fulfil the purposes we collected it for, including to meet any legal, accounting, or reporting requirements.
​
For example:
​
• Booking and customer records are typically kept for up to 24 months Â
• Financial and transaction records are kept for at least 6 years Â
• Accident and incident records are kept as required for health and safety and legal purposes Â
​
We regularly review and securely delete information when it is no longer needed.
Â
Who We Share Information WIth
Data processors -Â we use service providers to help run our business, including:
​
• Online booking system providers (UK / EU) Â
• Payment processing providers (UK / EU) Â
• Website hosting and website platform providers (UK / EU) Â
• Email and communication service providers (UK / EU) Â
​
These providers:
​
• Process and store booking and contact information Â
• Handle online payments Â
• Support our website and communications Â
Others we share personal information with:
​
• Organisations we need to share information with for safeguarding reasons Â
• Relevant regulatory authorities Â
• Organisations we’re legally obliged to share personal information with Â
• Emergency services Â
Sharing information outside of the UK:
​
Where necessary, we transfer personal information outside the UK in accordance with UK GDPR, ensuring appropriate safeguards are in place.
​
We use the following providers:
​
Organisation: Wix Â
Category: Website hosting and booking platform provider Â
Location: Global (including EU and United States) Â
Safeguard: Covered by adequacy regulations or appropriate safeguards such as Standard Contractual Clauses Â
​
Organisation: SumUp Â
Category: Payment processing provider Â
Location: European Union Â
Safeguard: Covered by adequacy regulations or appropriate safeguards such as Standard Contractual Clauses Â
​
Our data processors may also transfer data outside the UK where necessary and comply with UK GDPR.
Â
How to Complain
If you have concerns about how we use your personal data, please contact us using the details above.
If you remain unhappy, you can complain to the Information Commissioner’s Office (ICO):
​
Information Commissioner’s Office Â
Wycliffe House Â
Water Lane Â
Wilmslow Â
Cheshire Â
SK9 5AF Â
​
Helpline: 0303 123 1113 Â
Website: https://www.ico.org.uk/make-a-complaint Â
Â