Privacy policy

At Blossoms of Eden, we care deeply about your privacy. We treat your personal information with the same care and attention that goes into every candle we create.

This Privacy Policy explains how we collect, use, share and protect your personal information when you visit our website, place an order, create an account, or otherwise interact with us (the “Services”).

1. Data Controller

For the purposes of applicable data protection legislation, including the UK General Data Protection Regulation (UK GDPR) and the Data Protection Act 2018, the Data Controller is:

Business Name: Blossoms of Eden
Address:
Email: info@blossomsofeden.co.uk

2. Our Relationship with Shopify

Our online store is powered by Shopify, which provides the e-commerce platform that enables us to offer our products and services to you.

Shopify may collect and process personal information about your access to and use of our store in order to provide and improve its services. Information you submit through our store may be transmitted to Shopify and its service providers, which may be located in countries outside the United Kingdom or European Economic Area.

To learn more about how Shopify processes your personal information, please review Shopify’s Privacy Policy at:

https://privacy.shopify.com

By using our Services, you acknowledge that you have read and understood this Privacy Policy.

If there is any conflict between our Terms of Service and this Privacy Policy, this Privacy Policy will apply in relation to personal information.

3. What We Mean by “Personal Information”

“Personal information” means any information that identifies you or could reasonably be linked to you as an individual.

This does not include information that has been anonymised or de-identified so that it can no longer be associated with you.

4. Personal Information We Collect

We collect personal information to provide our Services, fulfil orders, improve your customer experience, comply with legal obligations, and support our legitimate business interests.

4.1 Information You Provide Directly

This includes information you submit when placing an order, creating an account, or contacting us:

  • Contact Details: Your name, billing and delivery addresses, email address, and telephone number.
  • Account Details: Login credentials including username and password. You are responsible for keeping your login credentials confidential and secure.
  • Order Information: Details of products purchased, returned, exchanged, or cancelled.
  • Engagement Information: Product preferences, reviews, wishlist items, survey participation, and records of correspondence if you contact us for support.
  • Surveys and Feedback: We may invite you to participate in surveys or feedback requests to help improve our products and Services. Participation is voluntary.

4.2 Financial Information

When you make a purchase, payment card and transaction details are processed securely by trusted third-party payment providers, including Shopify Payments, PayPal, or Wise.

These providers are responsible for processing and securing your payment information in accordance with their own privacy policies and regulatory obligations.

We do not store full payment card numbers or sensitive financial information on our systems.

4.3 Information Collected Automatically

When you visit the Blossoms of Eden website, we may automatically collect:

  • Technical Data: IP address, device type, operating system, browser type, and network connection information. We may also collect approximate location information based on your IP address.
  • Usage Data: Pages visited, time spent on pages, products viewed, items added to your cart, abandoned cart activity, and purchase or return history.
  • Interaction and Insights: General navigation behaviour, shopping preferences, and engagement patterns used to personalise recommendations and improve our Services.

5. Cookies and Tracking Technologies

We use cookies and similar technologies (set by us or trusted third-party providers) to ensure our website functions correctly. We use these to:

  • Enable Essential Functionality: To maintain your shopping cart and remember account settings.
  • Improve Performance: To analyse visitor behaviour and website traffic to improve usability and performance.
  • Performance and Analytics: We use Google Analytics to help us understand how our customers use the Site. You can read more about how Google uses your Personal Information here: Google Privacy Policy. You can also opt out of Google Analytics here: Google Analytics Opt-out.
  • Support Marketing: To show you relevant products, promotions, and advertising based on your browsing activity.

You can manage or disable cookies through your browser settings. Please note that disabling essential cookies may affect the functionality of our website.

6. Security and Fraud Prevention

We use administrative, technical, and organisational safeguards to protect personal information from unauthorised access, misuse, loss, or disclosure.

We may use and share personal information with payment verification and fraud prevention providers to help protect our business, our customers, and our Services from fraudulent or unlawful activity.

Please note that no method of internet transmission or electronic storage is completely secure. While we take reasonable steps to protect your information, we cannot guarantee absolute security of information transmitted online.

7. How We Use Your Personal Information

We use your personal information only where we have a lawful basis to do so under applicable data protection law, including:

  • To perform our contract with you
  • To comply with legal obligations
  • For our legitimate business interests, provided those interests do not override your rights and freedoms
  • Where required, based on your consent

We use personal information for the following purposes:

7.1 Order Fulfilment: To process and fulfil orders, manage payments, administer accounts, arrange shipping, and handle returns or exchanges.

7.2 Customer Support: To provide assistance, respond to enquiries, manage your account, and maintain our relationship with you.

7.3 Service Improvement: To analyse website usage, customer behaviour, and engagement patterns (including through analytics tools such as Google Analytics) in order to improve our products, website functionality, and personalise your shopping experience. This processing is generally based on our legitimate interests in improving our Services.

7.4 Communications: To send order confirmations, shipping updates, account notifications, and other essential service-related communications.

7.5 Marketing: To send promotional updates and marketing communications where required by law and where you have provided your consent. You may withdraw your consent or opt out of marketing communications at any time.

7.6 Security and Fraud Prevention: To verify transactions, detect and prevent fraudulent or unlawful activity, maintain website security, and protect our customers and business.

7.7 Legal Compliance: To meet our tax, accounting, and regulatory obligations, respond to lawful requests from authorities, and protect or enforce our legal rights.

8. How We Share Personal Information

We do not sell your personal data. We work only with carefully selected and trusted third-party service providers who help us run our business and deliver our Services. We require them to protect your personal information, treat it with care, and handle it in accordance with data protection laws. They are only permitted to use your information for agreed purposes and must follow our instructions when processing your data.

8.1 Core Service Providers

We share personal information with service providers acting on our behalf, including:

  • Shopify (our e-commerce platform provider)
  • Payment processors such as Shopify Payments, PayPal, and Wise
  • Delivery partners (such as Royal Mail and couriers)
  • IT, hosting, and cloud service providers

These providers process personal information under contractual obligations and are required to protect your data.

8.2 Analytics and Marketing Providers

We use third-party analytics tools, including Google Analytics, to help us understand how customers use our website and improve our Services. Google may collect information through cookies and similar technologies about your use of our website.

You can read more about how Google uses your information here:
https://www.google.com/intl/en/policies/privacy/

You can opt out of Google Analytics here:
https://tools.google.com/dlpage/gaoptout

8.3 Professional Advisers

We may share personal information with legal, accounting, or business advisers where necessary to manage our operations and comply with legal and regulatory obligations.

8.4 Legal Compliance and Protection

We may share personal information where required to:

  • Comply with applicable laws or regulations
  • Respond to lawful requests such as subpoenas, court orders, or search warrants
  • Enforce our Terms and policies
  • Protect our rights, property, safety, or that of our customers or others

9. International Transfers

Some of the third-party service providers we work with (such as Shopify or payment providers) may process personal information outside the United Kingdom.

Where personal information is transferred outside the UK or European Economic Area, we ensure that appropriate safeguards are in place to protect your information. These safeguards may include:

  • Transfers to countries that have been recognised as providing an adequate level of data protection; or
  • The use of approved contractual safeguards, such as Standard Contractual Clauses.

We take reasonable steps to ensure your personal information remains protected wherever it is processed.

10. Data Retention

We take reasonable steps to protect your personal information, however no method of online transmission or electronic storage can ever be completely secure. For this reason, we encourage you not to share sensitive or confidential information with us through unsecured channels.

We retain personal information only for as long as it is necessary, depending on the nature of the information and the purposes for which it was collected. This may include retaining information to:

  • Fulfil and manage orders
  • Provide and support our Services
  • Maintain accurate business and accounting records
  • Meet legal, tax, or regulatory obligations
  • Resolve disputes or enforce our policies and agreements

When personal information is no longer required, we take reasonable steps to securely delete or anonymise it.

11. Your Rights

Under the UK General Data Protection Regulation (UK GDPR), you have certain rights in relation to your personal information. These include the right to:

  • Access the personal information we hold about you
  • Request correction of inaccurate or incomplete information
  • Request deletion of your personal data in certain circumstances
  • Restrict or object to how we process your personal information
  • Request a copy of your data in a portable format
  • Withdraw your consent for marketing communications at any time. You can opt out at any time.

To exercise any of your rights, please contact us at info@blossomsofeden.co.uk

We may need to verify your identity before responding to a request, and we aim to respond within one month, as required by law. Please note that some rights are not absolute and may be subject to certain legal limitations.

Automated decision-making:
We do not use your personal information for automated decision-making or profiling that produces legal or similarly significant effects.

You also have the right to lodge a complaint with the UK Information Commissioner’s Office (ICO) if you have concerns about how we handle your personal information.

12. Children’s Privacy

Our Services are not intended for individuals under the age of 18, and we do not knowingly collect or process personal information relating to children.

If you are a parent or guardian and believe that a child has provided us with personal information, please contact us at info@blossomsofeden.co.uk. If we become aware that personal information has been collected from a child without appropriate consent, we will take prompt steps to remove that information from our systems.

13. Changes to This Privacy Policy

We may update this Privacy Policy from time to time to reflect changes in our practices, Services, or legal requirements. Any updates will be posted on this page with a revised “Last updated” date at the top.

If we make significant changes to how we handle your personal information, we will provide more prominent notice where appropriate (for example, by email or by posting a notice on our website) before the changes take effect. We encourage you to review this page occasionally to stay informed about our privacy practices.

14. Contact Us

If you have any questions about this Privacy Policy or our data practices, or if you would like to exercise any of your data protection rights (such as requesting access to or deletion of your data), please contact us at:

Blossoms of Eden
Unit 9, Old Water Yard
Curtis Road
DORKING
Surrey
RH4 1DY

Email: info@blossomsofeden.co.uk