Privacy Policy for Uffizi Flowers
Uffizi Flowers ("our site," "we," "us," or "our online platform") is committed to protecting the privacy and security of your personal information. This Privacy Policy describes how we collect, use, disclose, and protect the information obtained from visitors and customers of our floral retail and design services, including fresh cut flower arrangements, bespoke event floral design, corporate flower subscriptions, bridal bouquets, floral workshops, plant sales, terrarium creations, and floral delivery service.
Information We Collect
We collect various types of information in connection with the services we provide:
- Personal Data You Provide Directly: This includes information you provide when you place an order, register for a workshop, subscribe to our services, sign up for our newsletter, contact us with inquiries, or interact with us in any way. This may include your name, shipping and billing address, email address, phone number, payment information (processed securely by third-party payment processors), and any specific floral preferences or design details you share with us.
- Recipient Information: When you send flowers or gifts to others, we collect the recipient's name, address, and contact number to facilitate delivery. We ensure this information is used solely for the purpose of fulfilling your order.
- Transaction Data: Details about the products and services you have purchased from us.
- Communications Data: Records of your correspondence with us, including emails and customer service inquiries.
- Technical Data: Information about your device and how you access our site, including IP address, browser type and version, time zone setting, operating system and platform, and other technology on the devices you use to access this website. This information is collected through cookies and similar tracking technologies.
- Usage Data: Information about how you use our website, products, and services.
How We Use Your Information
We use the collected information for various purposes, primarily to provide and improve our services and your experience:
- To process and fulfill your orders for fresh cut flowers, arrangements, plants, and workshops, including payment processing and delivery.
- To provide and manage our services, including bespoke event floral design and corporate flower subscriptions.
- To communicate with you about your orders, inquiries, updates, and promotional offers relevant to Uffizi Flowers, where you have consented to receive such communications.
- To personalize your experience on our site and recommend products or services that may be of interest to you.
- To improve our website, products, and services based on your feedback and usage patterns.
- To comply with legal obligations, resolve disputes, and enforce our agreements.
- For internal analytical purposes, such as understanding customer preferences and market trends.
Legal Basis for Processing Personal Data (GDPR)
We will only process your personal data where we have a lawful basis to do so under the General Data Protection Regulation (GDPR). Our lawful bases for processing personal data include:
- Performance of a Contract: When processing is necessary for the performance of a contract to which you are a party or in order to take steps at your request prior to entering into a contract (e.g., to process your order for flowers).
- Legitimate Interests: When processing is necessary for our legitimate interests or those of a third party, and your interests and fundamental rights do not override those interests (e.g., to improve our services, for fraud prevention).
- Consent: Where you have given explicit consent for us to process your personal data for a specific purpose (e.g., for direct marketing communications). You have the right to withdraw your consent at any time.
- Legal Obligation: When processing is necessary for compliance with a legal obligation to which we are subject (e.g., for tax and accounting purposes).
Sharing Your Information
We do not sell, trade, or otherwise transfer your personal information to outside parties for their independent marketing purposes. We may share your information with:
- Service Providers: Trusted third-party service providers who assist us in operating our website, conducting our business, or providing services to you (e.g., payment processors, delivery companies, website hosting, email service providers). These parties are contractually obligated to keep your information confidential and use it only for the purposes for which we disclose it to them.
- Legal Requirements: When required by law or in response to valid requests by public authorities (e.g., a court order or government agency).
- Business Transfers: In connection with a merger, acquisition, or sale of all or a portion of our assets, your personal data may be transferred to the acquiring entity.
Data Security
We implement a variety of security measures to maintain the safety of your personal information when you place an order or enter, submit, or access your personal information. These measures include using secure servers, encryption of sensitive data (like payment information), and restricting access to personal data to authorized personnel only. Despite our efforts, no method of transmission over the internet or method of electronic storage is 100% secure.
Data Retention
We will retain your personal data only for as long as necessary to fulfill the purposes for which it was collected, including for the purposes of satisfying any legal, accounting, or reporting requirements. To determine the appropriate retention period for personal data, we consider the amount, nature, and sensitivity of the personal data, the potential risk of harm from unauthorized use or disclosure of your personal data, the purposes for which we process your personal data and whether we can achieve those purposes through other means, and the applicable legal requirements.
Your Data Protection Rights (GDPR)
Under GDPR, you have the following rights regarding your personal data:
- The right to be informed: About how your personal data is being used.
- The right of access: To request a copy of the personal data we hold about you.
- The right to rectification: To request that we correct any inaccurate personal data about you.
- The right to erasure ("the right to be forgotten"): To request that we delete personal data we hold about you, under certain circumstances.
- The right to restrict processing: To request that we limit the way we use your personal data.
- The right to data portability: To request that we transfer your personal data to another organization or to you.
- The right to object: To our processing of your personal data in certain situations (e.g., for direct marketing).
- Rights in relation to automated decision-making and profiling: To not be subject to a decision based solely on automated processing, including profiling, which produces legal effects concerning you or similarly significantly affects you.
To exercise any of these rights, please contact us using the contact details provided below. We may need to request specific information from you to help us confirm your identity and ensure your right to access your personal data (or to exercise any of your other rights). This is a security measure to ensure that personal data is not disclosed to any person who has no right to receive it.
Third-Party Links
Our website may contain links to third-party websites. This Privacy Policy applies only to our online platform. We are not responsible for the privacy practices or the content of these third-party websites. We encourage you to read the privacy policies of any linked websites you visit.
Children's Privacy
Our services are not directed to individuals under the age of 16. We do not knowingly collect personal information from children under 16. If we become aware that we have inadvertently received personal information from a user under the age of 16, we will delete the information from our records.
Changes to This Privacy Policy
We may update this Privacy Policy from time to time to reflect changes in our practices or for other operational, legal, or regulatory reasons. We will post any changes on this page. We encourage you to review this Privacy Policy periodically for the latest information on our privacy practices.
Contact Us
If you have any questions or concerns about this Privacy Policy or our data practices, please contact us at:
Uffizi Flowers
7 Via del Corso, Floor 2,
Florence, Tuscany, 50122
Italy