WHERE WE STORE YOUR PERSONAL DATA
The data that we collect from you, or that you provide to us, may be stored by us at a destination anywhere within the European Economic Area (EEA). Transfer of your personal data outside the European Economic Area is subject to your prior written approval in each case. If you approve of the transfer and the processing is not taking place in a destination or by an international organisation where the European Commission has decided that the destination or one or more specified sectors or frameworks ensure an adequate level of protection, we shall enter into a binding agreement with you based upon European Union model clauses.
HOW WE USE YOUR PERSONAL DATA
We use the information we collect from you to make your shopping experience with Baker Ross as easy and enjoyable as possible. We need it to process your order, inform you about delays or problems and occasionally, if you have opted in, to send you details about special offers and new developments which we think you may find of interest. Your information allows us to process and fulfil your orders and to notify you of your order status. Your telephone and mobile numbers allow us to contact you if we have a delivery problem or to talk to you about your order. Also, on occasion ask your opinion about our products and services. When you enter a Prize Draw, we will ask you for your name, address and email address. This allows us to administer the Prize Draw and notify winners. We use your shopping history to help us advise you about merchandise that might interest you. We also monitor customer traffic patterns and site usage to help us develop the design and layout of our website.
You have the following rights in relation to the handling of your personal data:
- You have the right to request details of your personal data held about you by us.
- You have the right to have inaccuracies corrected for personal data held about you by us.
- You have the right to have personal data held about you erased / deleted.
- You have the right to object to direct marketing being conducted based upon personal data held about you by us.
- You have the right to restrict the processing for personal data held about you by us, including automated decision-making.
- You have the right to data portability for personal data held about you by us
You can exercise any of your rights outlined above by contacting us and we will action your request within one month. Where we receive a large number of requests, or receive especially complex requests, this may be extended by a maximum of two further months. If we fail to meet these deadlines or if you feel your rights have not been adequately respected, you may complain to the Supervisory Authority and/or seek a judicial remedy.
We follow strict security procedures in the storage and disclosure of information which you have given us, to prevent unauthorised access, as required by the UK Data Protection Acts of 1984 and 1998. We are also a PCI DSS level 3 accredited merchant.
We have put in place appropriate physical, electronic and managerial procedures to protect the personal information in our possession from loss, misuse, unauthorized access, disclosure, alteration and destruction. Some of the measures we use include firewalls, intrusion prevention/detection systems, anti-virus/malware systems, network segmentation, regular vulnerability scans, physical access controls to our data centres and information access authorization controls. When you key personal data on our websites that information is secured using compliant secure socket layer (SSL) technology and AES-256 encryption.
Unfortunately, the transmission of information via the internet is not completely secure. Although we do our very best to protect your personal data, we cannot guarantee the security of your data transmitted to our site. Therefore, any transmission is at your own risk.
Where we have given you (or where you have chosen) a password which enables you to access certain parts of our website, you are responsible for keeping this password confidential, and ask you not to share a password with anyone.