We take safeguarding online privacy seriously. Please read the whole of this policy carefully as it sets out what information we may collect from you, how we may use it and your rights in respect of our use of that information.
From time to time, we may need to change our privacy statement because of changes in our organisation, changes to legislation or in our attempts to serve your needs better. We will use reasonable efforts to publish any changes to our privacy statement in advance of the changes taking effect and always within five working days of any implemented changes.
Joanne Thibodeau is responsible for collecting, processing, storing and safe-keeping personal and other information as part of providing a service and carrying out our regular business activities. We manage personal information in accordance with the General Data Protection Regulation (GDPR) the Data Protection Act 2018 and in accordance with the requirements of the Information Commissioner’s Office.
Any questions regarding our processing of personal data should be directed to us via email to firstname.lastname@example.org
We are guided by the following principles when processing data:
1. We will only collect data for specific and specified purposes; we will make it clear at the point when we request your information, what we are collecting it for and how we are going to use it;
2. We will not collect data beyond what is necessary to accomplish those purposes; we will minimise the amount of information we collect from you to what we need to deliver the services required;
3. We will collect and use your personal information only if we have sensible business reasons for doing so, such as communicating to you with our newsletter which will contain relevant information about the work that we do, the services we provide and the offers available from time to time;
4. We will not use your data for purposes other than those for which it was collected, accepted as stated within this policy, or with your prior consent;
5. We will seek to verify and/or update your data periodically and we will accept requests from you for amendment of the data held;
6. We will apply high technical standards to make our processing of data secure;
7. Except otherwise stated, we will not store data in identifiable form longer than is necessary to accomplish its purpose or as required by law.
The information we may collect about you could include, but is not limited to:
1. Personal details;
2. Lifestyle and demographic details such as gender and date of birth;
3. Browsing and website use information; and
4. Purchasing history and payment information.
We do not knowingly collect any special category data, such as health or medical conditions. Should we collect any special category data from you we will ensure that explicit consent is obtained.
We do not knowingly collect any data from anyone under the age of 18.
We will collect information from you when:
1. You sign up to our newsletter or mailing list;
2. You download an opt-in;
3. You purchase a product or service from us;
4. You contact us for information via our website or social media channels, by phone or email;
5. You post on our social media channels, website or blog;
6. You browse and use our site; and
7. You work with us in a commercial capacity.
We may use the information collected to:
1. Allow you to make a purchase from our site;
2. Send you our newsletters or provide you with information, products or services that you request from us or which we feel may interest you, where you have consented to be contacted for such purposes;
3. Ensure that content from our site is presented to you in the most effective manner for you and your computer;
4. Allow you to participate in the service you have chosen to do so;
5. Send you targeted emails and offers based on your preferences; and
6. Notify you about changes to our service.
INFORMATION SHARING & STORAGE
It is important to us that we protect your data. We will never sell or share your personal information with third parties. We will share and store it in the following ways:
1. If you view or interact with our site then we may share your information with:
a. Social media sites (Facebook and Instagram) and search engines including Google in order to allow personal recommendations and specific advertising;
b. Payment and IT (including hosting) providers and our accountant; and
c. Any regulatory bodies as required by law.
3. If you purchase our services then your personal information will be requested as part of a contact for provision of services and stored securely within our online system.
4. If you visit our site your IP address may be obtained and stored by Facebook pixel and Google Analytics. If you provide feedback about our services via Google My Business and leave a review your data may also be obtained and stored. You can find out more about their privacy policies here:
LEGAL BASIS FOR PROCESSING YOUR DATA
The General Data Protection Regulation (GDPR) provides that processing of your data shall only be lawful if and to the extent that at least one of the following applies:
1. You have consented;
2. For the performance of a contract;
3. For compliance with a legal obligation which we must perform;
4. To protect vital interests of your or another person;
5. It is in the public interest; or
6. It is in the legitimate interests pursued by us or a third party
We collect data for the purposes set out in our policy above which is primarily to provide you with an online browsing experience of the information available about our services via site. In all circumstances we will have obtained your data because you provided your consent to share it, in some circumstances there will also be additional lawful reasons which apply. Data is managed to ensure that it is either erased from our system when it is no longer required for the purpose for which it was collected, retained for legal reasons or minimised and retained.
LINKS FROM OUR SITE
We will make it as easy as we can for you to opt out of unwanted communications, providing it does not restrict our ability to provide you with the primary service you have requested.
Please note if you wish to unsubscribe from any marketing emails that you have signed up for, you can do so by clicking onto the unsubscribe link on the marketing email that was sent to you or by emailing email@example.com and putting “Unsubscribe” in the subject of the email. It may take 24 hours for this to become effective.
Our email marketing messages are created and sent through CMailChimp – an email marketing service (EMS) provider. This is a third-party service provider of software that securely stores data and allows me to send emails to different lists of contacts. These emails may track subscriber activity, such as whether a contact has opened the email and clicked on any links. This information helps us to review and improve future emails so that they’re as relevant and useful as possible to you.
WEBSITE ANALYTICS & TARGETED MARKETING
We use website analytics to provide the best user experience and service to you and to evaluate and improve our site. We utilise third party data analytics service providers, Google Analytics and may also from time to time use Facebook Pixel and Instagram Ads, to improve our visibility and to monitor website browser behaviour and navigation across our site.
These third-party data analytics service providers collect this information on our behalf in accordance with our instructions and in line with their own privacy policies. Our service providers may collect the following data about the way you use our site, which will almost always be anonymised and aggregated before reporting back to us:
- Number of visitors to our site
- Pages visited whilst using the site and time spent per page
- Page interaction information, such as scrolling, clicks and browsing methods
- Source location and details about where users go when they leave the site
- Page response times and any download errors
- Other technical information relating to end user device, such as IP address or browser plug-in
From time to time we may use the information collected about you to present you with targeted advertisements using platforms such as Facebook, Google and/or Instagram.
CHANGES TO THIS POLICY & FUTURE PROCESSING
We continually review our privacy practices and may change our practices, and subsequently, this policy, from time to time. We do not intend to process your personal information except for the reasons stated within this privacy notice. If this changes, this privacy notice will be amended and placed on our website at www.joanne-photography.co.uk
If you are concerned about how we are collecting, using and/or sharing your personal information, you can contact our Data Protection Officer Joanne Thibodeau via email firstname.lastname@example.org
This privacy notice was first published on 1st of January 2022. It is regularly reviewed and where necessary, updated.