GDPR Compliance Statement
At canna-power.co.uk, we take your privacy seriously. As part of our commitment to protecting your personal data, we comply with the General Data Protection Regulation (GDPR), which governs how personal data is collected, used, stored, and shared. This page outlines how we handle your personal data in accordance with the GDPR.
1. What Personal Data We Collect
We may collect the following types of personal data when you use our website or make a purchase:
- Identification Data: Name, address, email address, phone number.
- Payment Data: Credit card details or payment method information.
- Transaction Data: Purchase history, shipping details.
- Technical Data: IP address, browser type, device information, website usage data (collected via cookies).
- Communication Data: Emails or any other contact form submissions for support or inquiries.
2. How We Use Your Data
We use your personal data for the following purposes:
- Processing Orders:To fulfill your orders and deliver the products you have purchased.
- Customer Service:To provide customer support, respond to inquiries, and resolve issues.
- Marketing and Communications:To send you marketing communications, newsletters, or special offers (only if you have opted-in).
- Legal Compliance:To comply with legal requirements and enforce our terms of service.
- Improvement of Services:To enhance the functionality of our website and provide a better customer experience.
3. Legal Basis for Processing Your Data
Under GDPR, we process your personal data on the following legal bases:
- Contractual Necessity: Processing is required to fulfill your order and provide the products you’ve purchased.
- Legitimate Interests: We may process your data for our legitimate business interests, such as improving our website, preventing fraud, and sending marketing communications (where you have opted-in).
- Consent: We may process your data based on your consent, for example, when you sign up for newsletters or agree to receive marketing materials.
4. How We Protect Your Data
We implement appropriate technical and organizational measures to protect your personal data from unauthorized access, alteration, or disclosure. These include:
Secure socket layer (SSL) encryption for data transmitted through our website.
Regular updates and maintenance of our systems to ensure data security.
5. How Long We Keep Your Data
We retain your personal data for as long as necessary to fulfill the purposes outlined in this policy or as required by law. For example, we may keep transaction records for financial reporting purposes or to comply with tax regulations.
6. Your Rights Under GDPR
You have the following rights regarding your personal data:
- Right to Access: You can request access to the personal data we hold about you.
- Right to Rectification: You can request correction of any inaccurate or incomplete data we hold.
- Right to Erasure: You can request the deletion of your personal data (also known as the “right to be forgotten”), subject to certain legal conditions.
- Right to Restrict Processing: You can request that we restrict the processing of your personal data under certain conditions.
- Right to Object: You have the right to object to the processing of your personal data, especially in cases of direct marketing.
- Right to Data Portability: You can request a copy of your personal data in a structured, commonly used format for transfer to another service.
If you wish to exercise any of these rights, please contact us using the contact information below.
7. Third-Party Service Providers
We may share your personal data with trusted third-party service providers who help us operate our website and fulfill your orders, such as payment processors, delivery services, and marketing platforms. These third parties are only permitted to use your data as necessary to provide their services to us and must comply with applicable data protection laws.
8. Cookies
Our website uses cookies to improve your browsing experience, analyze website traffic, and personalize content. By using our website, you consent to the use of cookies as described in our [Cookie Policy]. You can adjust your cookie settings at any time through your browser preferences.
9. International Transfers
If you are located outside the European Union (EU), your personal data may be transferred to and processed in a country outside the EU. We ensure that any such transfer is in compliance with GDPR by implementing appropriate safeguards.
10. Changes to This Policy
We may update this GDPR Compliance Policy from time to time to reflect changes in our practices or legal obligations. Any updates will be posted on this page, and the “Last Updated” date will be revised accordingly.
11. Contact Us
If you have any questions or concerns regarding our GDPR compliance or your personal data, please contact us at:
canna-power.co.uk
Email: [Your email address]
Phone: [Your phone number]
Address: [Your business address]
We will respond to your inquiry as quickly as possible.