Privacy Policy & Data Protection Policy for Post A Ghost Ltd

Privacy Policy for Post A Ghost Ltd:

Effective Date: 5th April 2025

  1. Introduction

1.1 Post A Ghost Ltd (“we”, “our”, “us”) respects your privacy and is committed to protecting your personal data. This Privacy Policy explains how we collect, use, store, and safeguard your personal information when you visit our website www.postaghost.co.uk (“Website”) or purchase products from us.

1.2 By using our Website and purchasing products, you consent to the collection and use of your personal data as described in this Privacy Policy.

  1. Information We Collect

2.1 We collect the following types of personal data:

  • Identity Data: Name, username, or similar identifiers.
  • Contact Data: Email address, phone number, postal address.
  • Payment Data: Payment card details, billing address (processed securely via our third-party payment processor, Stripe).
  • Technical Data: IP address, browser type and version, time zone setting, browser plug-in types, operating system, and other technology on the devices you use to access this Website.
  • Usage Data: Information about how you use our Website and interact with our content.

2.2 We may collect personal data directly from you (e.g., when you make a purchase or sign up for our newsletter) or automatically through your interactions with our Website.

  1. How We Use Your Information

We use the personal data we collect for the following purposes:

  • To process your orders: Including payment processing, order fulfilment, and delivery of products.
  • To improve our Website and services: We analyse usage data to better understand how users interact with our Website, allowing us to improve functionality and user experience.
  • To communicate with you: We may send you emails related to your order, shipping updates, or promotional offers (if you have opted-in to receive such communications).
  • To comply with legal obligations: We may use your data to fulfil our legal obligations, such as processing refunds, addressing disputes, or complying with regulatory requirements.
  1. Legal Basis for Processing Your Data

We process your personal data based on the following legal grounds:

  • Contractual Necessity: To perform the contract between you and us (e.g., to process your order).
  • Consent: If you have provided consent for specific activities, such as receiving marketing communications.
  • Legitimate Interests: To improve our Website and customer service (e.g., analysing usage data).
  • Legal Obligation: To comply with applicable laws and regulations.
  1. How We Protect Your Information

5.1 We take the security of your personal data seriously and have implemented appropriate technical and organisational measures to protect it. This includes encryption, secure payment gateways, and firewalls.

5.2 However, no data transmission or storage method is 100% secure. While we strive to protect your personal data, we cannot guarantee its absolute security.

  1. Sharing Your Information

6.1 We may share your personal data with the following third parties:

  • Payment processors(e.g., Stripe) to process payments securely.
  • Delivery and logistics companiesto fulfil your orders.
  • Third-party service providerswho assist with our operations (e.g., marketing platforms, website hosting).

6.2 We will not sell or rent your personal data to third parties.

  1. Your Rights

Under UK data protection law, you have the following rights regarding your personal data:

  • Right to Access: You can request access to the personal data we hold about you.
  • Right to Rectification: You can request corrections to inaccurate or incomplete data.
  • Right to Erasure: You can request the deletion of your personal data in certain circumstances.
  • Right to Restriction of Processing: You can request the restriction of processing of your personal data in certain situations.
  • Right to Data Portability: You can request a copy of your personal data in a structured, commonly used, and machine-readable format.
  • Right to Object: You can object to processing based on legitimate interests or for direct marketing purposes.

To exercise any of these rights, please contact us at the details below.

  1. Cookies and Tracking Technologies

For information on how we use cookies and other tracking technologies, please refer to our Cookie Policy below.

  1. Data Retention

9.1 We will only retain your personal data for as long as necessary to fulfil the purposes for which it was collected, including legal, accounting, or reporting requirements.

9.2 When we no longer need your personal data, we will securely delete or anonymise it.

  1. Changes to This Privacy Policy

10.1 We may update this Privacy Policy from time to time. Any changes will be posted on this page, and the “Effective Date” will be revised accordingly.

10.2 We encourage you to review this Privacy Policy periodically to stay informed about how we protect your personal data.

  1. Contact Us

If you have any questions or concerns about this Privacy Policy or how we handle your personal data, please contact us at:

Email: info@postaghost.co.uk

Postal Address: 128 City Road, London, EC1V 2NX, United Kingdom

Stripe Payment Processor and Cookie Use

Stripe is our third-party payment processor for securely processing your payments. In addition to processing payments, Stripe may place cookies on your device to help us prevent fraud, facilitate secure transactions, and verify payment details. The use of these cookies is essential to ensuring a safe transaction experience.

To understand how Stripe handles cookies and your data, we encourage you to review their privacy and cookie policies:

Data Protection Policy for Post A Ghost Ltd

  1. Introduction

1.1 Post A Ghost Ltd (“we”, “our”, “us”) is committed to safeguarding your personal data and complying with data protection laws, including the General Data Protection Regulation (GDPR) and the Data Protection Act 2018.

1.2 This Data Protection Policy outlines how we protect personal data, ensuring that it is collected, processed, and stored in a lawful, fair, and transparent manner.

  1. Scope of This Policy

2.1 This policy applies to all personal data that we collect, process, and store, both online (through our Website) and offline (through our interactions with customers).

  1. Data Protection Principles

We follow the data protection principles outlined in the GDPR, which require personal data to be:

  • Processed lawfully, fairly, and transparently.
  • Collected for specified, legitimate purposesand not processed further in a way that is incompatible with those purposes.
  • Accurate and kept up to date.
  • Kept in a form which permits identification of individualsfor no longer than necessary.
  • Processed in a manner that ensures appropriate security.
  1. Roles and Responsibilities

4.1 Post A Ghost Ltd is the data controller for the personal data we collect.

4.2 We have appointed a Data Protection Officer (DPO) to oversee data protection practices. You can contact our DPO at accounts@somethingalittlefunky.com.

  1. Training and Awareness

5.1 We ensure that all employees involved in data processing are trained on data protection principles, privacy regulations, and secure handling of personal data.

  1. Data Security

6.1 We implement technical and organisational measures to safeguard personal data, including encryption, firewalls, and access controls. We also regularly review our security practices to mitigate risks to personal data.

  1. Third-Party Processors

7.1 We may engage third-party processors (such as payment processors, cloud storage providers, or email marketing platforms) to process personal data on our behalf. These processors are required to comply with data protection laws and our data protection standards.

  1. Data Breach Procedure

8.1 In the event of a personal data breach, we have established procedures to notify the Information Commissioner’s Office (ICO) within 72 hours if the breach is likely to result in a risk to individuals’ rights and freedoms. We will also inform affected individuals where necessary.

  1. Data Subject Rights

9.1 Individuals have the right to access, rectify, erase, restrict, object to processing, and port their personal data, as outlined in the Privacy Policy.

  1. Compliance with Data Protection Laws

10.1 We ensure that all personal data is handled in accordance with the GDPR and the Data Protection Act 2018. We conduct regular audits and assessments to ensure our practices comply with data protection laws.

  1. Review and Updates

11.1 This Data Protection Policy will be reviewed periodically to ensure it remains compliant with data protection laws and reflects our data protection practices.

Cookie Policy for Post A Ghost Ltd

Effective Date: 5th April 2025

  1. Introduction

1.1 Post A Ghost Ltd (“we”, “our”, “us”) uses cookies on our website www.postaghost.co.uk (“Website”). By using our Website, you consent to our use of cookies in accordance with this Cookie Policy.

1.2 This Cookie Policy explains what cookies are, how we use them, and how you can control their usage.

  1. What are Cookies?

2.1 Cookies are small text files that are placed on your device (such as your computer, tablet, or smartphone) when you visit a website. These files are stored in your browser and are used to enhance your experience on the Website, providing functionality, improving website performance, and enabling certain features.

2.2 There are several types of cookies that we may use on our Website. These cookies can be broadly categorised into the following:

  • Essential Cookies: These cookies are necessary for the Website to function properly and enable basic features such as security, page navigation, and access to secure areas of the Website. Without these cookies, certain parts of the Website may not work.
  • Performance Cookies: These cookies collect information about how visitors use the Website, such as which pages are visited most often or if visitors receive error messages from certain pages. These cookies do not collect information that identifies you personally. All information collected by these cookies is aggregated and anonymous. The purpose of these cookies is to improve the performance of the Website.
  • Functional Cookies: These cookies allow the Website to remember your choices and preferences (such as language or region) and provide enhanced features. For example, functional cookies may store your preferences to offer a more tailored experience, but they are not essential for basic website functions.
  • Targeting/Advertising Cookies: These cookies are used to deliver advertisements that are more relevant to you and your interests. They track your browsing habits across websites and are often placed by third-party advertisers. They are also used to limit the number of times you see an advertisement and help measure the effectiveness of advertising campaigns.
  1. How We Use Cookies

3.1 We use cookies for various purposes to improve your experience on our Website, including:

  • To ensure the Website functions properly: Essential cookies are necessary to enable core functionality such as secure logins and the use of shopping carts.
  • To analyse usage: Performance cookies help us understand how our Website is being used, enabling us to improve content, navigation, and overall user experience.
  • To personalise your experience: Functional cookies allow us to remember your preferences and provide a more tailored browsing experience.
  • To serve targeted ads: Targeting and advertising cookies are used to present relevant advertisements to you based on your interests.

3.2 Payment Processing and Stripe Cookies

In addition to the cookies mentioned above, we use Stripe as our payment processor for handling transactions. Stripe may use cookies and similar technologies to facilitate payment processing, prevent fraud, and ensure secure payment transactions. These cookies are essential to process payments securely and prevent unauthorized transactions.

  1. Third-Party Cookies

4.1 In addition to the cookies we use directly on our Website (first-party cookies), third-party service providers may also place cookies on your device when you use our Website. These third-party cookies are used for various purposes, including:

  • Analytics: Third-party analytics providers, such as Google Analytics, use cookies to track user behaviour and performance on the Website.
  • Advertising and Marketing: Advertising networks and social media platforms, such as Facebook or Google Ads, may use cookies to track your browsing behaviour across different websites to display targeted advertisements.
  • Payment ProcessingStripe, our third-party payment processor, uses cookies for payment verification and fraud prevention. For more information, please refer to Stripe’s Privacy Policyand Cookie Policy.

4.2 These third-party cookies are governed by the respective privacy policies of the third-party services, and we encourage you to review those policies for more information about their use of cookies.

  1. Managing Cookies

5.1 Most web browsers allow you to control cookies through their settings. You can set your browser to block cookies, delete existing cookies, or notify you when a cookie is being placed on your device.

5.2 Please note that disabling certain cookies may affect the functionality of some features on the Website, and you may not be able to access all parts of the Website.

5.3 You can control your preferences and manage cookies via the settings of your browser. For more information on how to manage cookies, please visit www.aboutcookies.org, which provides detailed guidance on how to manage cookies in various browsers.

  1. Changes to This Cookie Policy

6.1 We may update this Cookie Policy from time to time to reflect changes in our practices or legal requirements. Any updates will be posted on this page with the “Effective Date” revised accordingly.

  1. Contact Us

7.1 If you have any questions or concerns regarding our use of cookies or this Cookie Policy, please contact us at: