Welcome to Natural Distinction’s privacy policy. Natural Distinction respects your privacy and is committed to protecting your personal data. This privacy policy will inform you as to how we look after your personal data when you visit our website (regardless of where you visit it from) and tell you about your privacy rights and how the law protects you. Please use the Glossary to understand the meaning of some of the terms used in this privacy policy.

1. Important information and who we are

Purpose of this privacy policy

This privacy policy aims to give you information on how Natural Distinction collects and processes your personal data through your use of this website, including any data you may provide through this website when you sign up to our newsletter or purchase or are provided with a product or service.

This website is not intended for children and we do not knowingly collect data relating to children. It is important that you read this privacy policy together with any other privacy policy or fair processing policy we may provide on specific occasions when we are collecting or processing personal data about you so that you are fully aware of how and why we are using your data. This privacy policy supplements other notices and privacy policies and is not intended to override them.

Controller

Natural Distinction is the controller and responsible for your personal data (collectively referred to as Natural Distinction, “we”, “us” or “our” in this privacy policy).

Contact details

If you have any questions about this privacy policy or our privacy practices, please contact us at george@naturaldistinction.co.uk.

You have the right to make a complaint at any time to the Information Commissioner’s Office (ICO), the UK supervisory authority for data protection issues (www.ico.org.uk). We would, however, appreciate the chance to deal with your concerns before you approach the ICO, so please contact us in the first instance.

Changes to the privacy policy and your duty to inform us of changes

We keep our privacy policy under regular review. This version was last updated on the date set out at the end of this policy.

It is important that the personal data we hold about you is accurate and current. Please keep us informed if your personal data changes during your relationship with us.

Third-party links

This website may include links to third-party websites, plug-ins and applications. Clicking on those links or enabling those connections may allow third parties to collect or share data about you. We do not control these third-party websites and are not responsible for their privacy statements. When you leave our website, we encourage you to read the privacy policy of every website you visit.

2. The data we collect about you

Personal data, or personal information, means any information about an individual from which that person can be identified. It does not include data where the identity has been removed (anonymous data).

We may collect, use, store and transfer different kinds of personal data about you, grouped as follows:

  • Identity Data: first name, maiden name, last name, username or similar identifier, marital status, title, date of birth, and gender.
  • Contact Data: billing address, delivery address, email address, and telephone numbers.
  • Financial Data: bank account and payment card details.
  • Transaction Data: details about payments to and from you and other details of products and services you have purchased.
  • Technical Data: IP address, login data, browser type and version, time zone, plug-in types and versions, operating system, platform, and other technology on the devices you use to access this website.
  • Profile Data: username, password, purchases or orders, interests, preferences, feedback, and survey responses.
  • Usage Data: information about how you use our website, products, and services.
  • Marketing and Communications Data: your preferences in receiving marketing from us and our third parties and your communication preferences.

We also collect and use Aggregated Data such as statistical or demographic data for any purpose. Aggregated Data could be derived from your personal data but is not considered personal data in law as it will not directly or indirectly reveal your identity. If combined with your personal data, it will be treated as personal data.

We do not collect any Special Categories of Personal Data (race, ethnicity, religion, sex life, sexual orientation, political opinions, trade union membership, health, genetic and biometric data) or criminal convictions and offences.

If you fail to provide personal data

If we need to collect personal data by law or under a contract with you and you fail to provide that data, we may not be able to perform the contract (e.g., providing goods or services). We will notify you if this occurs.

3. How is your personal data collected?

We use different methods to collect data:

  • Direct interactions: data you provide when enquiring, purchasing, creating an account, subscribing, requesting marketing, entering competitions or surveys, giving feedback.
  • Automated technologies: Technical Data collected via cookies, server logs, and other technologies.
  • Third parties or publicly available sources:
    • Technical Data from analytics providers, advertising networks, search providers.
    • Contact, Financial, Transaction Data from providers of technical, payment, and delivery services.
    • Identity and Contact Data from data brokers, aggregators, and public sources such as Companies House and Electoral Register.

4. How we use your personal data

We will only use your personal data when the law allows us. Common circumstances include:

  • Performing a contract with you.
  • Legitimate interests (unless overridden by your rights).
  • Compliance with a legal obligation.

We generally do not rely on consent as a legal basis except for third-party marketing. You may withdraw consent at any time by contacting us.

Purposes for which we will use your personal data

Below is a summary of how we use your personal data and our legal basis:

Register you as a new customer

Type of Data: Identity, Contact

Lawful Basis: Performance of a contract

Process and deliver your order

Type of Data: Identity, Contact, Financial, Transaction, Marketing and Communications

Lawful Basis: Performance of a contract; Necessary for our legitimate interests (to recover debts)

Manage our relationship with you

Type of Data: Identity, Contact, Profile, Marketing and Communications

Lawful Basis: Performance of a contract; Necessary to comply with legal obligation; Legitimate interests (to study customer usage)

Enable participation in prize draws, competitions, surveys

Type of Data: Identity, Contact, Profile, Usage, Marketing and Communications

Lawful Basis: Performance of a contract; Legitimate interests (study usage, develop business)

Administer and protect our business and website

Type of Data: Identity, Contact, Technical

Lawful Basis: Legitimate interests (business operations, IT, security); Legal obligation

Deliver relevant website content and advertisements

Type of Data: Identity, Contact, Profile, Usage, Marketing and Communications, Technical

Lawful Basis: Legitimate interests (marketing, business growth)

Use data analytics to improve website, products, marketing, customer relationships

Type of Data: Technical, Usage

Lawful Basis: Legitimate interests (develop business, update website, marketing)

Make suggestions/recommendations

Type of Data: Identity, Contact, Technical, Usage, Profile, Marketing and Communications

Lawful Basis: Legitimate interests (develop products, grow business)

Promotional offers

We may use your data to form a view of products or services that may be relevant to you. You will receive marketing communications only if you have requested them or purchased goods/services and not opted out.

Third-party marketing

We will obtain your express opt-in before sharing data with third parties for marketing purposes.

Opting out

You may opt out of marketing messages at any time via links in messages or by contacting george@naturaldistinction.co.uk. Opting out will not affect transactional communications.

Cookies

You can set your browser to refuse cookies. Some parts of the website may not function properly. See our cookie policy for more information.

Change of purpose

We will only use your data for the purposes for which it was collected unless a compatible purpose arises, in which case we will notify you.

5. Disclosures of your personal data

We may share your data with external third parties, specific third parties, or in business transfers (sale, merger). Third parties must respect your data and comply with our instructions.

6. International transfers

We do not transfer your data outside the EEA. Some servers may be outside the EEA, and appropriate safeguards are in place, such as:

  • Transfers to countries deemed adequate by the European Commission.
  • Specific contracts approved by the European Commission.
  • US providers under Privacy Shield.

7. Data security

We implement security measures, limit access, and have procedures for data breaches. Unauthorized access will be reported where legally required.

8. Data retention

Data is retained only as long as necessary for the original purpose and legal requirements. Some data may be anonymised or retained for research/statistical purposes indefinitely.

9. Your legal rights

You have rights under data protection laws, including access, correction, erasure, objection, restriction, data portability, and withdrawal of consent. To exercise rights, contact george@naturaldistinction.co.uk.

No fee usually required

Requests are generally free but may incur a fee if clearly unfounded or excessive.

What we may need from you

We may ask for information to confirm your identity and ensure security.

Time limit to respond

We aim to respond within one month but may take longer for complex requests.

10. Glossary

Lawful basis

Legitimate Interest: Our interest in running our business while balancing your rights.

Performance of Contract: Necessary for the performance of a contract.

Comply with a legal obligation: Necessary for legal compliance.

Third parties

External Third Parties:

  • UK-based service providers providing IT and administration services.
  • Professional advisers (lawyers, bankers, auditors, insurers).
  • HMRC, regulators, and other authorities requiring reporting of processing activities.

Your legal rights

You have the right to access, correct, erase, restrict, transfer, object to processing, and withdraw consent regarding your personal data, subject to legal exceptions. Contact george@naturaldistinction.co.uk to exercise these rights.

Natural Distinction Limited Privacy Policy November 2019 v1.0