Last updated: when you publish your customised version. This Privacy Policy explains what personal data MyDeluxe collects, why, and your rights over it. We are the data controller for personal data you provide.
1. What we collect
- Identity and contact: name, email, billing/shipping address, phone number — collected at checkout.
- Order history: products you bought, prices, dates, payment method, transaction IDs.
- Account data: if you have an account, your saved addresses and preferences.
- Technical: IP address, browser, device type, pages viewed (via analytics — see Cookies below).
- Communications: emails and messages you send us, our replies.
2. Why we use it
- To process your order, take payment, ship the goods, and handle returns. Lawful basis: contract.
- To send order confirmations and shipping updates. Lawful basis: contract.
- To send marketing emails — only if you opt in. You can unsubscribe at any time. Lawful basis: consent.
- To improve the Site (analytics, fraud prevention). Lawful basis: legitimate interest.
- To meet our legal obligations (e.g. tax records, accounting). Lawful basis: legal obligation.
3. Who we share it with
- Payment processors (Stripe, Revolut) — to take payment.
- Shipping carriers — name, address, phone for delivery.
- Email and analytics providers (Klaviyo, Google Analytics, Meta Pixel etc.) — only if those tools are enabled.
- Cloud hosting and backup providers — under data processing agreements.
- HMRC and other authorities — when legally required.
We never sell your personal data.
4. How long we keep it
Order and accounting records: 6 years (UK tax law). Marketing data: until you unsubscribe. Account data: until you ask us to delete the account.
5. Your rights
Under UK GDPR / EU GDPR you can ask us to:
- Show you what data we hold about you (subject access request).
- Correct anything inaccurate.
- Delete your data ("right to be forgotten") — subject to legal retention requirements.
- Restrict or object to certain processing.
- Take your data elsewhere (data portability).
To exercise any of these, email contact@mydeluxe.co.uk. We aim to reply within 30 days.
6. Cookies
We use cookies for cart functionality (essential), analytics (Google Tag Manager / Microsoft Clarity), and advertising (Meta Pixel, TikTok Pixel). When you first visit, our cookie banner asks you to accept or reject non-essential cookies. You can change your choice at any time using the banner.
7. International transfers
Some of our service providers are based outside the UK / EEA (e.g. in the US). When we transfer your data to those providers we use Standard Contractual Clauses or other safeguards required by law.
8. Complaints
If you are unhappy with how we have handled your data, you can complain to the UK ICO at ico.org.uk (or the equivalent regulator in your country).
9. Contact
This is a starting template. Please review with a solicitor for your jurisdiction and edit the customised version in the admin before launch.