This privacy notice was last updated on 17 May 2018.
Introduction
Retail IT Limited respects your privacy and is committed to protecting your personal data. This privacy notice will inform you as to how we look after your personal data and tell you about your privacy rights and how the law protects you.
It is important that you read this privacy notice together with any other privacy notice or fair processing notice we may provide on specific occasions when we are collecting or processing personal data about you.
1. Important Information and Who We Are
Retail IT Limited is the controller and responsible for your personal data (“we”, “us” or “our”).
It is important that the personal data we hold about you is accurate and current. Please keep us informed if your personal data changes during your relationship with us.
Our website may include links to third-party websites. We are not responsible for their privacy statements and encourage you to read the privacy notice of every website you visit.
2. The Data We Collect About You
- Identity Data — first name, last name, username, title, date of birth and gender
- Contact Data — billing address, delivery address, email address and telephone numbers
- Financial Data — bank account, payment card details and credit history
- Transaction Data — details about payments and products/services purchased
- Technical Data — IP address, browser type and version, time zone, operating system and platform
- Profile Data — username, password, purchases, interests, preferences and survey responses
- Usage Data — information about how you use our website, products and services
- Preference Data — your preferences in receiving marketing and communication preferences
We do not collect any Special Categories of Personal Data about you (race, ethnicity, religious beliefs, sex life, sexual orientation).
Where we need to collect personal data by law or under a contract and you fail to provide that data when requested, we may not be able to perform the contract. We will notify you if this is the case.
3. How Is Your Personal Data Collected?
- Direct interactions — when you apply for products or services, create an account, subscribe to publications, request information, enter a competition or give us feedback
- Automated technologies — as you interact with our website we may collect Technical Data using cookies and server logs
- Third parties — analytics providers, advertising networks, search information providers, vendor and reseller partners, credit reference and fraud prevention agencies
4. How We Use Your Personal Data
We will only use your personal data when the law allows us to. We rely on the following legal bases: Contract, Legitimate Interests, Legal Obligation and Consent.
| Processing Purpose | Type of Data | Legal Basis |
|---|---|---|
| To register you as a new customer | (a) Identity (b) Contact |
Performance of a contract with you |
| To process and deliver your order; manage payments, fees and charges; collect money owed to us | (a) Identity (b) Contact (c) Financial (d) Transaction (e) Preference |
(a) Performance of a contract with you (b) Legitimate interests (to recover debts) |
| To manage our relationship with you; notify you of changes; ask for reviews; respond to complaints | (a) Identity (b) Contact (c) Profile (d) Preference |
(a) Performance of a contract (b) Legal obligation (c) Legitimate interests (to keep records updated) |
| To enable you to partake in a prize draw, competition or complete a survey | (a) Identity (b) Contact (c) Profile (d) Usage (e) Preference |
(a) Performance of a contract (b) Legitimate interests (to study how customers use our services) |
| To administer and protect our business and website (troubleshooting, data analysis, testing, maintenance) | (a) Identity (b) Contact (c) Technical |
(a) Legitimate interests (running our business, IT services, network security, fraud prevention) (b) Legal obligation |
| To deliver relevant website content and measure the effectiveness of advertising | (a) Identity (b) Contact (c) Profile (d) Usage (e) Preference (f) Technical |
Legitimate interests (to study how customers use our services and grow our business) |
| To use data analytics to improve our website, products, services, marketing and customer relationships | (a) Technical (b) Usage |
Legitimate interests (to keep our website updated and relevant) |
| To make suggestions and recommendations about goods or services that may be of interest to you | (a) Identity (b) Contact (c) Technical (d) Usage (e) Profile |
Legitimate interests (to develop our products/services and grow our business) |
| To send you communications required by law or necessary to inform you about changes to our services | (a) Identity (b) Contact (c) Preference (d) Usage (e) Profile |
(a) Legitimate interests (b) Legal obligation |
| To comply with obligations to share data with credit reference, fraud prevention and law enforcement agencies | (a) Identity (b) Contact (c) Technical (d) Financial |
(a) Legal obligation (b) Legitimate interests (to prevent financial crime) |
Marketing
You will receive marketing communications from us only if you have requested information or purchased goods/services from us and have not opted out. You can ask us to stop sending marketing messages at any time by following opt-out links or by contacting us.
We will get your express opt-in consent before we share your personal data with any company outside our group for marketing purposes.
5. Disclosures of Your Personal Data
We may share your personal data with:
- Internal appointed third parties providing IT and system administration services
- Service providers acting as processors (IT, delivery, marketing, credit reference, fraud management)
- Professional advisers including lawyers, bankers, auditors and insurers
- HM Revenue & Customs, regulators, authorities and law enforcement bodies
- Vendor partners and reseller partners
We require all third parties to respect the security of your personal data and treat it in accordance with the law.
6. International Transfers
We share some personal data with the Cegid Group SA (France) within the European Economic Area (EEA), ensuring a similar degree of protection is in place.
7. Data Security
We have put in place appropriate security measures to prevent your personal data from being accidentally lost, used or accessed in an unauthorised way, altered or disclosed. We limit access to those who have a business need to know. We have procedures to deal with any suspected personal data breach and will notify you and any applicable regulator where legally required.
8. Data Retention
We will only retain your personal data for as long as necessary to fulfil the purposes we collected it for, including satisfying any legal, accounting or reporting requirements.
9. Your Legal Rights
- Request access to your personal data
- Request correction of inaccurate or incomplete data
- Request erasure of your personal data where there is no good reason to continue processing
- Object to processing where we rely on legitimate interests or for direct marketing
- Request restriction of processing in certain scenarios
- Request transfer of your data in a structured, machine-readable format
- Withdraw consent at any time where processing is based on consent
You will not be charged a fee to access your personal data. We aim to respond to all legitimate requests within one month.
To exercise any of these rights please contact us:
- Email: info@retailit.com
- Post: Retail IT Limited, The Grange, 1 Central Road, Morden, Surrey, SM4 5PQ
You also have the right to complain to the Information Commissioner’s Office (ICO) at any time. We would appreciate the chance to deal with your concerns first.
10. Cookie Policy
Our website uses cookies to distinguish you from other users, provide a better experience and allow us to improve our site. By continuing to browse the site you are agreeing to our use of cookies.
- Strictly necessary cookies — required for the operation of our website
- Analytical/performance cookies — allow us to recognise and count visitors and see how they move around the site
- Functionality cookies — recognise you when you return and personalise content for you
- Targeting cookies — record your visit and pages viewed to make advertising more relevant
You can block cookies by activating the relevant setting on your browser, though this may prevent you from accessing all parts of our site.