Last updated: 15 November 2023

We at Winchester Vapourium (“we”, “us”, or “our”) are committed to protecting your privacy and ensuring that your personal information is handled in a safe and responsible manner. This Privacy Policy outlines how we collect, use, share, and protect your personal data when you visit our website https://winchester.vapourium.co.uk (the “Site”) or make use of our services in accordance with UK data protection legislation, including the UK General Data Protection Regulation (UK GDPR) and the Data Protection Act 2018.

1. Who We Are

Winchester Vapourium is a company registered in the UK with company number 11708219. For the purposes of the data protection laws applicable in the UK, we are the “controller” of your personal data.

2. What Information Do We Collect?

We may collect and process the following categories of personal data about you:

Personal Identification Information: This may include your name, email address, billing and shipping address, phone number, and other contact details.

Account Details: If you create an account with us, we will collect information such as your login details, order history, and preferences.

Payment Information: We collect payment details such as credit/debit card information or other payment details through our secure payment processing providers.

Transaction Information: Details about payments you make and receive, and other details of products or services you have purchased from us.

Technical Data: This may include your IP address, browser type and version, time zone setting, browser plug-in types and versions, operating system and platform, and other technology on the devices you use to access our Site.

Cookies and Usage Data: We use cookies and similar tracking technologies to track the activity on our Site and store certain information.

3. How Do We Collect Your Information?

Information You Provide to Us: You may give us personal information by filling in forms or by corresponding with us via phone, email, or otherwise when you:

•Create an account on our Site

•Make a purchase or place an order for products

•Subscribe to our newsletter or promotional communications

•Participate in surveys, promotions, or competitions on our Site

•Contact us with inquiries or for customer support

Information Automatically Collected: As you interact with our Site, we may automatically collect technical information using cookies and other similar technologies. You can find out more about our use of cookies in our Cookies Policy/section.

Information From Third Parties: We may receive personal data about you from various third parties such as analytics providers, advertising networks, search information providers, and payment and delivery service providers.

4. How Do We Use Your Information?

We will only use your personal data when the law allows us to. Common uses of your personal information include:

To Provide and Maintain our Services: Processing your orders, managing your account, and providing customer support.

To Process Your Payments: Using your payment details to facilitate transactions when you purchase products from our Site.

To Manage and Improve Our Site: Understanding how our Site is used and ensuring our content is relevant and presented effectively.

For Marketing and Promotions: Sending you newsletters, marketing, or promotional materials and other information that may interest you, with your consent where required by law.

To Communicate with You: Responding to your inquiries, updates on your orders, or providing important information about changes to our policies or terms.

To Comply with Legal Obligations: As necessary, for legal compliance and to establish, exercise or defend against legal claims.

5. Lawful Basis for Processing

We will rely on one or more of the following lawful bases under the UK GDPR when processing your personal data:

Consent: When you have given clear consent for us to process your personal data for a specific purpose.

Contract: When processing is necessary for the performance of a contract with you or to take steps to enter into a contract.

Legal Obligation: Where we need to comply with a legal or regulatory obligation.

Legitimate Interests: When processing is necessary for our legitimate interests (or those of a third party), and your interests and fundamental rights do not override those interests.

6. How Do We Share Your Information?

We may share your personal data with:

Service Providers: Third-party companies that provide services such as payment processing, website hosting, analytics, customer service, email delivery, and marketing assistance.

Business Transfers: In the event of a merger, acquisition, or sale of all or a portion of our business, your personal information may be transferred as part of that transaction.

Legal Purposes: Where we are required to do so by law or regulation, or as legally necessary to enforce or defend our rights, interests, or those of others.

We require all third parties to respect the security of your personal data and treat it in accordance with the law. They are only permitted to process your personal data for specified purposes and in accordance with our instructions.

7. Data Security

We are committed to ensuring that your personal data is secure. We have implemented appropriate technical and organizational measures to protect your information from unauthorized access, disclosure, alteration, or destruction. We use secure server software (SSL) to encrypt financial information you input before it is sent to us.

8. Data Retention

We retain your personal data only for as long as is necessary to fulfill the purposes we collected it for, including for the purposes of satisfying any legal, accounting, or reporting requirements. The retention period may vary depending on the type of data and legal or operational needs.

9. Your Rights

Under UK data protection laws, you have certain rights regarding your personal data, including:

Right to Access: You have the right to request a copy of the personal data we hold about you.

Right to Rectification: You have the right to request that we correct any information you believe is inaccurate or incomplete.

Right to Erasure: You have the right to request that we erase your personal data under certain conditions.

Right to Restrict Processing: You have the right to request that we restrict the processing of your personal data under certain conditions.

Right to Object to Processing: You have the right to object to the processing of your personal data under certain conditions.

Right to Data Portability: You have the right to request the transfer of your personal data to another organization or directly to you under certain conditions.

Right to Withdraw Consent: Where our use of your personal data is based on your consent, you have the right to withdraw your consent at any time.

To exercise any of these rights, please contact us using the contact details provided in the How to Contact Us section.

10. Cookies and Tracking Technologies

We use cookies and similar tracking technologies on our Site to personalize and enhance your browsing experience. This includes:

Essential Cookies: Required for the operation of our Site and to ensure its functionality.

Analytics Cookies: Help us to analyze how our Site is used and to improve its performance.

Marketing Cookies: Used to personalize ads and track the effectiveness of our marketing campaigns.

For more details on the cookies we use and how to manage your cookie preferences, please review our Cookies Policy/section.

11. International Data Transfers

We primarily store and process your data within the UK. However, there may be situations where your personal data needs to be transferred to and processed in a country outside of the UK or European Economic Area (EEA). When we do so, we ensure that an adequate level of protection is afforded to it by implementing appropriate measures, such as using specific contracts approved by the European Commission or ensuring compliance with the UK GDPR and EU data transfer regulations.

12. Third-Party Links

Our Site may contain links to other websites not operated by us. This Privacy Policy applies only to our Site. We have no control over how other websites collect, use, or protect your personal information. We encourage you to review the privacy policies of any third-party sites before providing them with your personal information.

13. Children’s Privacy

Our Site is not intended for use by children under the age of 16. We do not knowingly collect personal data from children under 16. If we become aware that we have collected personal data from a child under the age of 16 without parental consent, we will take steps to remove that information from our servers. If you believe we have mistakenly or unintentionally collected information from a minor, please contact us so we can delete it.

14. Changes to This Privacy Policy

We reserve the right to update or modify this Privacy Policy at any time. We will post any changes on this page and indicate at the top of the page the date this Privacy Policy was last updated. We encourage you to review this Privacy Policy periodically to stay informed about how we are protecting your personal data.

15. How to Contact Us

If you have any questions or concerns about this Privacy Policy or our data processing practices, please contact us at:

Email: winchester@vapourium.co.uk

Phone: 01926 22243

We will respond to your request or inquiry promptly.

16. Lodging a Complaint

If you believe we have not complied with your data protection rights, you have the right to file a complaint with the UK’s supervisory authority, the Information Commissioner’s Office (ICO). For more information, please visit the ICO’s website: https://ico.org.uk/.