Privacy Policy

Privacy Policy
PRIVACY POLICY Last updated: March 2026
1. INTRODUCTION We are committed to protecting your personal data and respecting your privacy. This Privacy Policy explains how we collect, use, store, and protect your information when you visit our website or place an order with us. We comply with the UK General Data Protection Regulation (UK GDPR) and the Data Protection Act 2018.
2. WHO WE ARE Lady Uzo Aloe Oils of Email Address: ladyuzoaloeoils@gmail.com. If you have any questions about this policy or how we handle your data, please contact us at the details above.
3. WHAT DATA WE COLLECT When you shop with us or create an account, we may collect the following personal data: - Name and email address - Billing and shipping address - Payment information (processed securely via our payment provider — we do not store your full card details on our servers)
4. HOW WE USE YOUR DATA We use your personal data for the following purposes: - To process and fulfil your orders - To send order confirmations and shipping updates - To handle returns, refunds, and customer service enquiries - To comply with our legal and regulatory obligations - To prevent fraud and ensure the security of transactions We will only use your data for the purposes for which it was collected, unless we reasonably consider that we need to use it for another reason compatible with the original purpose.
5. LEGAL BASIS FOR PROCESSING Under UK GDPR, we rely on the following lawful bases to process your personal data: - Contract: Processing is necessary to fulfil your order and provide our services to you. - Legal obligation: We may need to retain certain data to comply with applicable laws (e.g. tax and accounting records). - Legitimate interests: To protect our business against fraud and to improve our services, where your interests and rights are not overridden.
6. PAYMENT INFORMATION All payment transactions are handled by a third-party payment processor. We do not store your full credit or debit card details. Our payment provider is compliant with the Payment Card Industry Data Security Standard (PCI-DSS).
7. SHARING YOUR DATA We do not sell, rent, or trade your personal data. We may share your information with trusted third parties only where necessary, including: - Delivery and logistics partners (to fulfil your order) - Payment processors (to handle transactions securely) - IT and platform service providers (to operate our website) All third parties are required to handle your data securely and in accordance with UK GDPR.
8. DATA RETENTION We retain your personal data only for as long as necessary to fulfil the purposes outlined in this policy, or as required by law. Typically: - Order and transaction records: up to 7 years (for tax/legal purposes) - Customer account data: retained while your account is active, or as needed for legitimate business purposes
9. YOUR RIGHTS Under UK GDPR, you have the following rights regarding your personal data: - Right of access: Request a copy of the data we hold about you. - Right to rectification: Ask us to correct inaccurate or incomplete data. - Right to erasure: Request deletion of your data in certain circumstances. - Right to restrict processing: Ask us to limit how we use your data. - Right to data portability: Receive your data in a structured, machine-readable format. - Right to object: Object to processing based on legitimate interests. To exercise any of these rights, please contact us at [Email Address]. We will respond within one month of receiving your request.
10. DATA SECURITY We take appropriate technical and organisational measures to protect your personal data against unauthorised access, loss, or disclosure. These include secure servers, encrypted connections (SSL/TLS), and restricted access to personal data within our team.
11. CHANGES TO THIS POLICY We may update this Privacy Policy from time to time. Any changes will be posted on this page with an updated date at the top. We encourage you to review this policy periodically.
12. COMPLAINTS If you are unhappy with how we have handled your data, you have the right to lodge a complaint with the Information Commissioner's Office (ICO), the UK's data protection regulator. Website: www.ico.org.uk Phone: 0303 123 1113
© Lady Uzo Aloe Oils. All rights reserved.
