Privacy Policy
Privacy Policy — Furthrive (UK)
Version: 2.1
Last updated: 1 July 2024
Contact: info@furthrive.com
This Privacy Policy explains how Furthrive collects, uses, discloses and safeguards your personal data when you visit our website, place an order, or otherwise interact with us. It is tailored for the UK market and applies to our consumer (B2C) online store.
1. Who we are (Data Controller)
Furthrive ("we", "us", "our") is the data controller for the personal data processed in connection with our website and services.
Email: info@furthrive.com
Registered address: [Insert registered office / geographic address]
Company number: [Insert]
VAT number: [Insert, if applicable]
If we appoint a Data Protection Officer (DPO) or privacy contact, we will publish their contact details here. Until then, use the email above for all privacy enquiries.
2. Scope
This Policy applies to personal data collected via our website, checkout, customer service, marketing communications, and social/media channels we operate. It does not apply to third-party websites or services that have their own privacy policies.
3. What data we collect
We only collect data that is relevant and necessary for the purposes described below. This may include:
-
Identity data: name, title, date of birth (if you provide it).
-
Contact data: email address, phone number, billing/shipping address.
-
Order & transaction data: products purchased, order numbers, delivery preferences, returns, refunds.
-
Account data: login details, saved addresses, preferences (if you create an account).
-
Payment data: last four digits of card, payment method, authorisation tokens (processed securely by our payment providers — we do not store full card numbers).
-
Technical data: IP address, device identifiers, browser type, operating system, referral sources, pages viewed, time on page, interactions.
-
Usage & marketing data: cookie IDs, analytics, marketing consents, campaign engagement, survey responses, product reviews.
-
Customer service data: messages you send us (email, forms, social), recordings/notes of our interactions where permitted.
4. How we collect data
-
Directly from you: when you browse, place an order, create an account, subscribe to our newsletter, contact support, or participate in promotions.
-
Automatically: via cookies, pixels and similar technologies when you visit our site.
-
From third parties: analytics providers, advertising networks, payment and fraud‑prevention partners, delivery partners.
5. Purposes and lawful bases
We process your personal data only when a lawful basis applies. Typical purposes and bases include:
-
To provide our services (process orders, deliver products, handle returns, customer support): performance of a contract.
-
Payments and fraud prevention: performance of a contract and legitimate interests (to protect our business and customers).
-
Account creation and management: performance of a contract and legitimate interests (to offer a smoother experience).
-
Marketing communications (email/SMS/ads): consent (where required) or legitimate interests (for similar products to existing customers, with opt‑out).
-
Analytics and site optimisation: consent where required for non‑essential cookies; otherwise legitimate interests (to understand and improve our services).
-
Legal and regulatory compliance: legal obligation.
-
Security and incident response: legitimate interests (to ensure network and information security).
6. Cookies and similar technologies
We use cookies/pixels to operate our site, remember your preferences, perform analytics, and deliver relevant ads. Non‑essential cookies are used only with your consent where required. You can manage cookies via our Cookie Settings (banner) and your browser settings. For detailed categories, retention periods and providers, please see our Cookie Policy.
7. Sharing your data (Third parties)
We do not sell your personal data. We share it only as necessary with:
-
Payment processors (e.g., card gateways, Klarna/BNPL) to take payments securely.
-
Fulfilment and delivery partners to pick, pack and deliver your order and provide tracking.
-
IT/hosting and platform providers (e.g., e‑commerce platform, CRM, email service, cloud hosting).
-
Analytics and advertising partners (in accordance with your consent choices) for measurement and personalisation.
-
Professional advisers (accountants, auditors, legal advisers) and authorities when required by law.
Where we use processors, they act on our instructions under a written contract and must protect your data.
8. International transfers
Some providers may process data outside the UK. Where this occurs, we ensure appropriate safeguards, such as UK adequacy regulations, the UK International Data Transfer Agreement (IDTA) or Addendum, or other lawful transfer mechanisms.
9. Data retention
We keep personal data only for as long as needed for the purposes above:
-
Orders/transactions: typically 6 years (for tax/audit/legal).
-
Accounts: for as long as your account is active, then a reasonable period for record keeping.
-
Marketing: until you withdraw consent or object (plus a minimal suppression record so we don’t contact you).
-
Customer service: as long as needed to resolve your enquiry and for quality assurance.
We will delete or anonymise data when no longer required, subject to legal obligations.
10. Your rights
Under UK data protection law, you have the right to:
-
Access your personal data and obtain a copy.
-
Rectify inaccurate or incomplete data.
-
Erase your data (“right to be forgotten”), in certain cases.
-
Restrict processing, in certain cases.
-
Object to processing based on legitimate interests or direct marketing.
-
Withdraw consent at any time where processing relies on consent.
-
Data portability for data you provided to us, where processing is based on consent or contract and carried out by automated means.
To exercise these rights, contact info@furthrive.com. We may need to verify your identity. You also have the right to lodge a complaint with the Information Commissioner’s Office (ICO). Visit the ICO’s website or call 0303 123 1113. We would appreciate the chance to resolve your concerns first.
11. Keeping your data secure
We use appropriate technical and organisational measures to protect your data, including encryption in transit, access controls, least‑privilege access, secure development practices, and vendor due diligence. No method of transmission or storage is 100% secure, but we continuously improve our safeguards.
12. Children
Our services are not directed to children and we do not knowingly collect data from individuals under 16. If you believe a child has provided personal data, contact us to remove it.
13. Communications preferences
-
Marketing emails/SMS: You can unsubscribe any time via the link in our messages or by contacting us.
-
Account/transactional messages: These are service messages (e.g., order confirmations) and are not subject to marketing opt‑out.
14. Changes to this Policy
We may update this Policy from time to time to reflect changes in our practices or the law. The “Last updated” date shows the latest version. Significant changes will be communicated where appropriate.
15. Contact us
Questions, requests or complaints about this Policy or your personal data?
Email: info@furthrive.com
