1. OVERVIEW OF THIS POLICY
You are required to read, understand, and agree to how we process (collection, use, disclosure, security, etc.) your information in this Policy. You are also required to read our Terms and Conditions and print a copy each for future reference. By your use of the website and your submission of the requested personal information, you hereby agree to how we process your information as described in this Policy. if you do not agree, you should not submit information.
Westminster Stone may change this policy from time to time by updating this page. You should check this page regularly to ensure that you are happy with any changes. This updated GDPR policy is effective from 25th May 2018.
2. WHAT INFORMATION DOES WESTMINSTER STONE COLLECT FROM YOU?
We collect information from and about users of our Website:
· Directly from you when you provide it to us.
· Automatically when you use the Website.
We do not collect special categories of personal data such as information relating to or about the below or information about criminal records.
- Racial or ethnic origin
- Political opinions
- Membership of a political association
- Membership of a trade union
- Religious beliefs or affiliations
- Philosophical beliefs
- Sexual orientation or practices
- Biometric information
We may collect the following information:
· name and job title
· current employer
· contact information including email address
· demographic information such as postcode, preferences and interests
· other information relevant to customer surveys and/or offers
3. WHAT DOES WESTMINSTER STONE USE INFORMATION COLLECTED FOR?
Any information collected by us is for a purpose in relation to your use of our website, including for providing the services, processing, and delivering your orders.
· Provide Services to you: We collect information to send you email about your registration, for Internal record keeping, perform tasks required to complete a transaction, provide customer support, or provide other types of customer relationship management and fulfillment. We may also use your information to optimize or improve our Services and operations, for example, training and quality assurance.
· Fulfilling legal and compliance obligations: We collect information to fulfill our legal obligations. Examples of this may include satisfying regulatory screening requirements in connection with entity formations, responding to subpoenas and other legal requests for information, and maintaining records as required in our role as Registered Agent. We may also collect information to detect fraud or other suspicious activity.
· Analytics: We collect information for use in performing various types of analytics. For example, we use the information to analyze how visitors interact with our website, where visitors to our website arrive from and exit to, pages visited, links clicked, text entered and mouse movements to understand site usage, to detect fraud and potential threats and improve our services.
· To communicate with you: We collect your email address and phone number to (i) contact you regarding your use of our website/Website, (ii) respond to your questions, complaints, and queries, and (iii) send you updates regarding our services or this Policy and other agreements;
· For other purposes through your consent: We may also process your information for some other reasons which your consent will be sought before we process such information. You may also withdraw your consent at any time.
4. HOW PERSONAL DATA IS COLLECTED.
4.1 Automatic Information Collection and Tracking.
When you access and use the Website, it may use technology to automatically collect:
· Usage Details. When you access and use the Website, we may automatically collect certain details of your access to and use of the Website, including traffic data, location data, logs and other communication data and the resources that you access and use on or through the Website.
4.2 If you do not want us to collect this information, please do not create an account with us.
4.3 We may also use these technologies to collect information about your activities over time and across third-party websites, Websites or other online services (behavioural tracking).
4.4 Information Collection and Tracking Technologies.
The technologies we use for automatic information collection may include:
· Cookies (or mobile cookies). A cookie is a small file placed on your smartphone or device. It may be possible to refuse to accept mobile cookies by activating the setting on your browser. However, if you select this setting you may be unable to access certain parts of our Website.
The cookies we use include “analytical” cookies. They allow us to recognize and count the number of visitors and to see how visitors move around the Website when they are using it. This helps us to improve the way our Website works, for example, by ensuring that users are finding what they are looking for easily.
These cookies are used to collect information about how visitors use our Website. We use the information to compile reports on general user traffic, conversion statistics and to help us improve the site. The cookies collect information anonymously.
· Web Beacons. Pages of the Website and our e-mails may contain small electronic files known as web beacons (also referred to as clear gifs, pixel tags and single-pixel gifs) that permit the Company, for example, to count users who have visited those pages or opened an e-mail and for other related Website statistics (for example, recording the popularity of certain Website content and verifying system and server integrity).
5. HOW WE USE PERSONAL DATA AND LAWFUL BASES FOR PROCESSING
5.1 Lawful Bases for Processing under the GDPR
· Consent: the individual has given clear consent for us to process their personal data for a specific purpose.
· Contract: the processing is necessary for a contract we have with the individual, or because they have asked us to take specific steps before entering into a contract.
· Legal obligation: the processing is necessary for us to comply with the law (not including contractual obligations).
· Legitimate interests: the processing is necessary for our legitimate interests or the legitimate interests of a third party unless there is a good reason to protect the individual’s personal data which overrides those legitimate interests.
5.2 We use information that we collect about you or that you provide to us, including any personal information, to:
· To set up and operate your Westminster Stone account (such processing is necessary for the performance of our contract with you).
· To verify your identity and carry out security checks in order to set up your account (such processing is necessary for the performance of our contract with you and necessary for us to comply with a legal obligation).
· Provide you with the Website and its contents, and any other information, products or services that you request from us (such processing is necessary for the performance of our contract with you).
· Give you notices about your account, the account you create (such processing is necessary for the performance of our contract with you and necessary for us to comply with a legal obligation).
· Ensure that content from our Website is presented in the most effective manner for you and for your computer or device for accessing the Website (such processing is necessary for the performance of our contract with you).
· Carry out our obligations and enforce our rights arising from any contracts entered into between you and us, including for billing and collection (such processing is necessary for our legitimate interests).
· To manage your account, including processing payments and providing notifications, should this service be introduced within the Website (such processing is necessary for the performance of our contract with you and is necessary for our legitimate interests (to process payments).
5.3 The usage information we collect helps us to improve our Website and to deliver a better and more personalized experience by enabling us to:
· Estimate our audience size and usage patterns (such processing is necessary for our legitimate interests (for running our services and to study how users use our Website).
· Store information about your preferences, allowing us to customize our Website according to your individual interests (such processing is necessary for our legitimate interests (for running our services).
· Speed up your searches (such processing is necessary for our legitimate interests (for running our services).
· Recognize you when you use the Website (such processing is necessary for the performance of our contract).
· To provide us with information about how the Website is running or whether there are any faults or issues with our products and services (such processing is necessary for our legitimate interests (for us to deliver a better service to you).
5.4 We may also use your information to contact you about news, offers, notifications, surveys, information, goods and services that we think may be of interest to you (such processing is done with your consent and is necessary for our legitimate interests (to develop our products/services and grow our business)). We give you the option to consent to such emails when you sign up for the Website. If you do not want us to use your information in this way, please do not consent. You may adjust your user preferences in your account profile.
5.5 We have implemented reasonable measures designed to secure your personal information from accidental loss and from unauthorized access, use, alteration and disclosure.
5.6 The safety and security of your information also depends on you. Where we have given you (or where you have chosen) a password for access to certain parts of our Website, you are responsible for keeping this password confidential. We ask you not to share your password with anyone. We urge you to be careful about giving out information in public areas of the Website like message boards. The information you share in public areas may be viewed by any user of the Website.
5.7 Unfortunately, the transmission of information via the internet and mobile platforms is not completely secure. Although we do our best to protect your personal information, we cannot guarantee the security of your personal information transmitted through our Website. Any transmission of personal information is at your own risk. We are not responsible for circumvention of any privacy settings or security measures we provide.
5.8 If you suspect that there has been a breach of the security of your data you should contact us at: firstname.lastname@example.org and include details of:
· the nature of the breach;
· the date of the breach; and
· the full circumstances of the breach.
5.9 On notification of such a breach we will investigate the matter and, where appropriate and required by law, notify the relevant Data Protection Regulator.
6. LINKS TO OTHER WEBSITES
Our website may contain links to other websites of interest. However, once you have used these links to leave our site, you should note that we do not have any control over that other website. Therefore, we cannot be responsible for the protection and privacy of any information which you provide whilst visiting such sites and such sites are not governed by this privacy statement. You should exercise caution and look at the privacy statement applicable to the website in question.
7. HOW PERSONAL DATA IS SHARED AND WITH WHOM
Westminster Stone does not sell or share your personal information to third parties but may share your information if need arises such as the following:
- To a buyer or other successor in the event of a merger, divestiture, restructuring, reorganization, dissolution or other sale or transfer of some or all of the Company’s assets, whether as a going concern or as part of bankruptcy, liquidation or similar proceeding, in which personal information held by the Company about our Website users is among the assets transferred.
- For any other purpose disclosed by us when you provide the information.
- For the purposes of academic research.
- For any other purpose with your consent.
- To comply with any court order, law or legal process, including to respond to any government or regulatory request.
- To enforce our rights arising from any contracts entered into between you and us.
If we believe disclosure is necessary or appropriate to protect the rights, property, or safety of the Company, our customers or others. This includes exchanging information with other companies and organizations for the purposes of fraud protection and credit risk reduction.
8. CONTROLLING YOUR PERSONAL INFORMATION
You may choose to restrict the collection or use of your personal information in the following ways:
- whenever you are asked to fill in a form on the website, look for the box that you can click to indicate that you do not want the information to be used by anybody for direct marketing purposes
- if you have previously agreed to us using your personal information for direct marketing purposes, you may change your mind at any time by writing to or emailing us at email@example.com
We will not sell, distribute, or lease your personal information to third parties unless we have your permission or are required by law to do so. We may use your personal information to send you promotional information about third parties which we think you may find interesting if you tell us that you wish this to happen.
If you believe that any information, we are holding on you is incorrect or incomplete, please write to or email us as soon as possible at the following address. We will promptly correct any information found to be incorrect.
westminsterstone.co.uk, Shaws Estate, Sodylt, Nr Ellesmere, Shropshire SY12 9EJ
9. YOUR RIGHTS WITH RESPECT TO PERSONAL DATA.
· You can review and change your personal information by logging into the Website and visiting your account settings page.
· You may also send us an e-mail at firstname.lastname@example.org to request access to, correct or delete any personal information free of charge that you have provided to us. We cannot delete your personal information except by also deleting your user account.
· We will respond to a request to access, correct or delete any data within 30 days of the date we receive the request.
· We may not accommodate a request to change information if we believe the change would violate or breach any law or legal requirement or cause the information to be incorrect.
· If, on your request, we refuse to amend, correct or delete your personal information, we will set out our reasons for not doing so and provide you with details of how you may complain about our refusal.
· If you delete your User Contributions from the Website, copies of your User Contributions may remain viewable in cached and archived pages, or might have been copied or stored by other Website users. Proper access and use of information provided on the Website, including User Contributions, is governed by our Terms and Conditions.
10.HOW LONG PERSONAL DATA IS KEPT
We will only retain personal data for as long as is reasonably necessary. Upon deletion of an account, all personal data will be removed as soon as possible, and always within 90 days of the deletion.
11.LEGAL BASIS FOR THE PROCESSING OF PERSONAL INFORMATION
1. We rely upon both consent and legitimate business interests for processing personal information. For example, we may process personal information with a User’s consent when they agree that we may place cookies on their devices, or that we can process information that they enter into a form on one of our sites.
2. It is in our interest as a business to enhance the services that we provide which may include processing your information to enable us to:
· Respond to User enquiries and to fulfil User requests
· Send Customers or Potential Customers relevant marketing information and offers
· Complete transactions
· Provide customer service
· Send administrative information
· Personalize Users’ experiences with our sites
· Do so where we are required to by law
3. We may also process personal information when it is in our or a Users’ legitimate interests to do so and when these interests are not overridden by an individual’s data protection rights.
We have implemented multiple security measures designed to secure your personal information from accidental loss and unauthorized access, use, alteration, and disclosure. All information you provide to us is stored on secure servers behind firewalls. Any payment transactions will be encrypted using SSL technology.
The safety and security of your information also depend on you. Where we have given you (or where you have chosen) a password for access to certain parts of our Website, you are responsible for keeping this password confidential. We ask you not to share your password with anyone.
Unfortunately, the transmission of information via the internet is not completely secure. Although we do our best to protect your personal information, we cannot guarantee the security of your personal information transmitted to our Website. Any transmission of personal information is at your own risk. We are not responsible for circumvention of any privacy settings or security measures contained on the Website.
13.DO NOT TRACK DISCLOSURE
Third parties such as advertising networks, analytics providers, and widget providers may collect information about your online activities over time and across different websites when you access or use our Service.