PRIVACY POLICY

Oxford Love Packs (“we,” “us,” or “our”) operates the website www.oxfordlovepacks.com (the “Site”). We are firmly committed to safeguarding your privacy and maintaining the highest standards in data protection and transparency. This Privacy Policy outlines how we collect, process, store, and share your personal information in accordance with the General Data Protection Regulation (GDPR), the California Consumer Privacy Act (CCPA), and other applicable privacy laws.

1. Commitment to Privacy and Data Protection

Your privacy is of paramount importance to us. Oxford Love Packs is dedicated to protecting your personal data and ensuring transparency in how your personal information is processed. We take data protection seriously and implement industry-standard practices to maintain the confidentiality, integrity, and security of your personal data.

2. Scope of Policy and Data Controller Role

This Privacy Policy applies to all personal data collected through your use of the website www.oxfordlovepacks.com, whether as a visitor, customer, or registered user. For purposes of the GDPR, Oxford Love Packs is the “data controller,” meaning we determine the purposes and methods of data processing. If you have questions or concerns about how we handle your personal data, you may contact us at [email protected].

3. Categories of Data Processed

We collect and process various categories of personal data when you interact with our Site or engage with our services:

a. Usage Data
Includes information such as your browser type, IP address, time zone setting, operating system, date/time stamps, and your activity on the Site (e.g., pages visited, referring/exit pages, session duration).

b. Account Data
Includes information you provide when creating an account, such as your name, email address, phone number, and billing/shipping address.

c. Profile Data
Encompasses your preferences, order history, user behavior, feedback, wish lists, and shopping preferences collected while using our services.

d. Communication Data
Includes records from your interactions with us, such as emails, support tickets, live chat messages, and inquiries submitted through our contact forms.

e. Technical Data
Includes information about the devices you use to access our Site, such as device type, platform, browser plug-in types, screen resolution, and system configurations.

f. Transaction Data
Includes details of purchases and payments made through the Site, including products ordered, delivery details, payment method, transaction IDs, and billing details (processed through compliant third-party providers).

g. Preference Data
Includes your consents to marketing communications, newsletter subscriptions, product interests, and choices regarding how we contact you.

4. Legal Bases for Processing

We process your personal data under the following lawful bases, as defined under the GDPR:

– Consent: Where you have expressly agreed to our processing by opting in (e.g., to receive newsletters or marketing).
– Contract: When processing is necessary for the performance of a contract with you, such as fulfilling your order.
– Legal Obligation: Where processing is necessary for compliance with a legal obligation (e.g., recordkeeping).
– Legitimate Interest: For purposes that are necessary for the operation of the Site or to serve our business interests, such as fraud prevention, service improvement, and website analytics, unless overridden by your rights and freedoms.

5. Your Rights

Subject to applicable legislation, you have the following rights regarding your personal data:

– Right of Access: Request access to your personal data and obtain a copy.
– Right to Rectification: Request correction of inaccurate or incomplete data.
– Right to Erasure: Request deletion of your personal data, subject to certain obligations.
– Right to Restrict Processing: Request that we suspend processing of your data under certain circumstances.
– Right to Data Portability: Request to receive your data in a structured, commonly used, machine-readable format or request its transfer to another controller.

California residents also have rights under the CCPA, including the right to know what personal data we collect, the right to request deletion, the right to opt out of the sale of personal data (Oxford Love Packs does not sell personal data), and freedom from discrimination for exercising these rights.

To exercise any of these rights, please contact us at [email protected]. We respond to validated requests in accordance with all applicable legal timeframes.

6. Security Measures

We implement appropriate technical and organizational measures to safeguard your personal data. These measures include but are not limited to:

– Secure Socket Layer (SSL) encryption for data transmission.
– Role-based access to sensitive data.
– Firewall protection and intrusion detection.
– Regular system backups and data recovery protocols.
– Employee training and access controls to ensure responsible data handling.

7. International Transfers

Your data may be transferred to and processed in countries outside the European Economic Area (EEA) or the United Kingdom (UK), including jurisdictions that may not provide the same level of data protection. Where such transfers occur, we ensure appropriate safeguards are in place, including Standard Contractual Clauses approved by the European Commission, and compliance with local data protection laws.

8. Data Retention

We retain your personal data only for as long as necessary to fulfill the purposes for which it was collected, including:

– Account and Profile Data: retained for the duration of your account and up to 6 years thereafter for recordkeeping or legal compliance.
– Transaction Data: retained for tax and legal obligations for up to 7 years.
– Communication Data: retained for a period of 3 years from the last interaction.
– Usage and Technical Data: retained for up to 2 years for analytics purposes.

Once data retention periods expire, data is securely deleted or anonymized.

9. Cookie Policy

Cookies are small text files that improve your browsing experience on our Site. We use the following categories of cookies:

– Essential Cookies: Necessary for the effective operation of www.oxfordlovepacks.com, including navigation and checkout functionality.
– Functional Cookies: Enable enhanced personalization features such as language preferences and saving user settings.
– Analytics Cookies: Collect data on how users interact with the Site, helping us improve performance and usability (e.g., Google Analytics).
– Performance Cookies: Monitor website load times and responsiveness to ensure efficient platform performance.

10. Cookie Management and Compliance with GDPR & CCPA

You have the right to manage your cookie preferences at any time. Upon your first visit to www.oxfordlovepacks.com, a cookie consent banner will appear enabling you to accept or manage cookies.

Under GDPR, you may withdraw your consent at any time by adjusting your cookie settings through your browser or through designated cookie preference tools on our Site.

Under CCPA, California residents may opt out of certain data collection practices. While we do not sell your personal data, we provide you with a clear “Do Not Sell My Data” mechanism in accordance with CCPA guidelines.

11. Special Protections for Children Under 13

Oxford Love Packs does not knowingly collect or solicit personal information from children under the age of 13. If you are under 13, please do not provide any personal data on or through the Site. If we learn that personal data has been collected from a child without verifiable parental consent, we will delete that information promptly. If you believe a child under 13 has provided us with personal data, please contact us at [email protected].

12. Policy Updates and User Notifications

We reserve the right to update or amend this Privacy Policy at our discretion. When changes are made, they will be posted prominently on this page. Where required by law, we will notify users of material changes and request renewed consents, if necessary.

13. Contact

If you have any questions, concerns, or complaints about how we handle your personal data, or to exercise any of your rights, please contact us via:

Email: [email protected]
Website: www.oxfordlovepacks.com

We are committed to ensuring full compliance with GDPR, CCPA, and other applicable privacy regulations. Please do not hesitate to reach out with any privacy-related concerns or requests.