Privacy Policy
Privacy Policy
Greener Sheds and Garden Rooms
INTRODUCTION
Thank you for considering shopping with Greener Sheds and Garden Rooms. In sharing your personal information, we aim to offer you a tailored and convenient shopping experience.
This privacy policy explains how we collect, use, and share your personal information. It applies if you shop on the Greener Sheds and Garden Rooms website, order by telephone, or otherwise share your personal information with us for example, when you contact us or when we send you marketing communications.
We may update this privacy policy from time to time, and you should check it regularly. The “last updated” date is listed at the bottom of this document. If any material changes are made, we will take steps to bring them to your attention.
WHO WE ARE
This is the privacy policy of Greener Sheds and Garden Rooms Ltd.
This policy sets out our procedures regarding the collection and use of your personal information when you interact with our website, receive postal communications, or order or enquire about our goods and services. Greener Sheds and Garden Rooms Ltd is a company registered in England & Wales. Our registered office and trading address is: Greener sheds, Sidmouth Road, Farringdon, Exeter, EX5 2JU
Greener Sheds and Garden Rooms Ltd is the data controller, which means we are responsible for deciding how and why your personal information is used. We also ensure that your data is kept secure and handled lawfully.
If you have any questions or requests regarding your personal data, please contact our Data Protection Officer at: Greener sheds, Sidmouth Road, Farringdon, Exeter, EX5 2JU
Email: info.greenersheds@gmail.com
Postal Address: Data Protection Officer, Greener Sheds and Garden Rooms, 4 Barton Court, Copplestone, Devon, EX17 5DW
YOUR RIGHTS
If you provide your personal information to us in any way (e.g. by shopping, enquiring, or contacting us), you are a data subject under UK data protection law. You have the following rights:
Right of Access – Request a copy of the personal information we hold about you.
Right to Rectification – Ask us to correct inaccurate or incomplete data.
Right to Erasure – Ask us to delete your personal data (also called the “Right to be Forgotten”).
Right to Restrict Processing – Ask us to limit how we use your data.
Right to Data Portability – Ask us to transfer your data to another service provider.
Right to Object to Automated Decisions – Object to automated decision-making or profiling.
Right to Withdraw Consent – Withdraw consent for processing activities at any time.
Right to Be Informed – Understand how and why your data is collected and used.
These rights may be limited under certain circumstances (e.g., legal obligations or conflicts with other people's data). If you have any concerns, you also have the right to lodge a complaint with the Information Commissioner’s Office (ICO) at www.ico.org.uk.
To exercise your rights, email us at info.greenersheds@gmail.com or visit www.greenersheds.com/contact.
LEGAL BASES FOR PROCESSING YOUR DATA
We only process your data when we have a lawful reason to do so. The bases we rely on include:
-
Contract – To fulfil an order or service.
-
Consent – Where you explicitly allow us to use your data for a specific purpose.
-
Legitimate Interests – To improve our services and marketing (unless overridden by your rights).
-
Legal Obligation – When processing is necessary under the law.
-
Vital Interests – To protect someone’s life in emergencies.
THE INFORMATION WE COLLECT AND HOW WE USE IT
We collect personal information from the following sources:
-
Directly from you (e.g. enquiries, orders, account setup)
-
Cookies and tracking technologies on our website
-
Phone calls, emails, live chat or postal correspondence
-
Third parties (e.g. payment processors, advertising networks)
We use your data to:
1. Process Orders and Returns (Contract)
-
Take payments and share payment details with processors like Opayo, Klarna, and PayPal
-
Use your billing/delivery info for dispatch via partners like DHL or local couriers
2. Provide Customer Service (Legitimate Interest)
-
Record calls and correspondence
-
Resolve queries and improve service quality
3. Personalise Your Experience (Legitimate Interest)
-
Track website behaviour and marketing interactions
-
Use demographics, preferences, and purchase history to show relevant offers
4. Send You Marketing Communications (Consent/Legitimate Interest)
-
Promote products, services, and offers
-
Use data from cookies, ad networks, and platforms like Google and Facebook
-
Ensure marketing is relevant and not repetitive
5. Operate Our Website Effectively (Legitimate Interest/Consent)
-
Use cookies to remember preferences and improve usability
-
Collect device data (IP, OS) to ensure functionality and security
6. Improve Products and Services (Legitimate Interest)
-
Send customer surveys
-
Work with analytics and demographic profiling companies
7. Prevent Crime and Fraud (Legitimate Interest/Legal Obligation)
-
Monitor orders, devices, and payment history for fraud
-
Share data with anti-fraud services like CIFAS
8. Meet Legal Obligations (Legal Obligation)
-
Comply with laws, regulations, and tax requirements
-
Fulfil duties in recalls or sale of age-restricted items
DATA RETENTION
We keep your data based on your relationship with us:
-
Customers: 7 years after the last transaction (or longer if under warranty: 10/15/20 years).
-
Enquirers: 3 years from last interaction.
-
Correspondence: Up to 6 years (longer if related to complaints).
-
Legal Disputes: As long as necessary.
After these periods, your data is anonymised for research/statistical use.
THIRD PARTIES WE SHARE DATA WITH
We only share your data where necessary, securely, and under contract. These third parties include:
-
Delivery Partners (e.g., couriers)
-
IT Service Providers (e.g., hosting, security, support)
-
Marketing Platforms (e.g., SMS/email services, ad networks like Facebook and Google)
-
Consumer Profiling Services
-
Payment Providers (e.g., Klarna, PayPal)
-
Fraud Detection Agencies
-
Survey & Feedback Companies
-
Ombudsman Services
-
Regulatory and Legal Authorities
We ensure all partners meet strict data protection standards.
INTERNATIONAL TRANSFERS
Most of our data is processed within the UK. If data is processed overseas (e.g., in cloud services), we ensure it is protected by standard contractual clauses or other legal mechanisms.
KEEPING YOUR DATA SECURE
We employ strong technical and organisational measures to protect your information:
-
256-bit encryption, AES-256, SSL, and 2048-bit keys
-
PCI-DSS compliance for payment data
-
Regular security updates and staff training
No system is 100% secure, but we follow industry standards to keep your data safe.
THIRD-PARTY SERVICES
If you interact with Greener Sheds and Garden Rooms via platforms like Facebook, Instagram, or Amazon Alexa, your usage is also governed by their own privacy policies. We encourage you to read them carefully.
CONTROLLING YOUR PERSONAL INFORMATION
You can:
-
Disable cookies via your browser or our cookie banner
-
Opt-out of marketing via unsubscribe links or email
-
Withdraw consent at any time by emailing info.greenersheds@gmail.com
If you withdraw consent, any previous processing remains lawful.
REQUESTING A COPY OF YOUR PERSONAL INFORMATION
You have the right to request your personal data. To do so, send a Subject Access Request with proof of ID to:
Email: info.greenersheds@gmail.com
Or Post to: Data Protection Officer, Greener Sheds and Garden Rooms, 4 Barton Court, Copplestone, Devon, EX17 5DW
We will supply:
-
Your contact details
-
Your transaction history
-
Any marketing sent to you
-
Call recordings (if specified)
-
Email correspondence linked to your email address
There is no charge for this service.
CHANGES TO THIS POLICY
We reserve the right to update this policy at any time. Changes take effect immediately upon posting. If we make significant updates, we will notify you via email or on our website.
Last updated: 10/05/2025