Great Scot is firmly built on the principle of providing 5-star service to every customer we have the pleasure of meeting and transacting with. For this to work we need to collect certain pieces of information about you.
This helps us to process orders in a speedy and communicative fashion, but it also can help us send you offers for things that we think will appeal. Lastly, if you have a size-exchange, a query, or any problem with your order, it means we can deal with it rapidly because we are able to access details about you; for example, your shipping address, shipping method, your previous orders, or your chosen size.
In order to acheive this, Great Scot needs to comply with data protection legislation, where we clearly explain to you, the customer, how we collect and use your information, and whether we will share that data with anyone.
Great Scot (Scotland) Ltd. is a company incorporated in Scotland and our company number is 445521. Great Scot (Scotland) Ltd is classed as a ‘Data Controller’, which means that we are responsible for determining and reporting which data is collected and how that data is used.
We have a Data Protection Officer who is responsible for ensuring regulatory compliance. If you have any questions, do please get in touch by writing to:The Data Protection Officer
Great Scot (Scotland) Ltd
Isla Bank Mills
Or by calling (+44) 0845 004 0324
Or by email: email@example.com [Please put ‘DPO’ in the subject line]
PERSONAL INFORMATION WE COLLECT
When you visit the Site, we automatically collect certain information about your device, including information about your web browser, IP address, time zone, and some of the cookies that are installed on your device. Additionally, as you browse the Site, we collect information about the individual web pages or products that you view, what websites or search terms referred you to the Site, and information about how you interact with the Site. We refer to this automatically-collected information as ‘Device Information.’
We collect Device Information using the following technologies:
Cookies are small text files that websites send to your computer. A cookie can be thought of as an Internet user's identification card. They let the website know when the user has returned. This lets the site bring up information relevant to that user, for example your name, past orders etc.
Cookies are not computer programs and can't read other information saved on your hard drive. They cannot be used to disseminate viruses, or get a user's email address etc. They only contain and transfer to the website as much information as the users themselves have disclosed to that website. It is possible to opt out of cookies via your browser’s cookie settings, but if you do this you will not be able to shop from the Site as the functions of the Site are dependent on cookies. Please note that cookies are computer specific, so if you log on to any site from a different computer, the cookie settings on that computer will apply.
For further information about managing and disabling cookies on your computer see www.allaboutcookies.org/manage-cookies.
When you visit our site, cookies are either served directly by us, or by our business partners. Here is a description of the different kind of cookies we use.
Essential cookies. These cookies allow you to use the basic functionality of our website. For example, browsing our products, ordering and paying for items, checking your account information and viewing your order history.
Performance cookies. They allow us to get to know how you use our website. They are used to analyse visitor information such as usage, visitor numbers and help us see how effective our advertising is and to understand what you like. We also use this information to help improve our website, make our marketing more relevant and improve the user experience.
Functionality cookies. They allow us to provide additional functionalities to the Site and will retain some settings information. Whilst not essential for the functionality of our site, they do enable extra features that should improve your shopping experience.
Here are the descriptions of the cookies we use:
- _session_id, unique token, sessional, Allows Shopify to store information about your session (referrer, landing page, etc).
- _shopify_visit, no data held, Persistent for 30 minutes from the last visit, Used by our website provider’s internal stats tracker to record the number of visits
- _shopify_uniq, no data held, expires midnight (relative to the visitor) of the next day, Counts the number of visits to a store by a single customer.
- _cart, unique token, persistent for 2 weeks, Stores information about the contents of your cart.
- _secure_session_id, unique token, sessional
- storefront_digest, unique token, indefinite If the shop has a password, this is used to determine if the current visitor has access.
- PREF, persistent for a very short period, Set by Google and tracks who visits the store and from where.
In addition to these cookies there are also:
- Log files. These track actions occurring on the Site, and collect data including your IP address, browser type, Internet service provider, referring/exit pages, and date/time stamps.
- Web beacons such as ‘tags’, and ‘pixels’. These are electronic files used to record information about how you browse the Site.
- Facebook cookies, to allow you ‘like this’
- Pinterest cookies, to allow you to ‘Pin this’
- Twitter cookies, to allow you to ‘Tweet this’
- Instagram and Tumblr cookies, to allow you to ‘share this’
Additionally, when you make a purchase or attempt to make a purchase through the Site, we collect certain information from you when you input it, including your name, billing address, shipping address, payment information (including credit card numbers or debit card numbers), email address, and phone number. We refer to this information as ‘Order Information’.
HOW DO WE USE YOUR PERSONAL INFORMATION?
We use the Order Information that we collect generally to fulfil any orders placed through the Site (including processing your payment information, arranging for shipping, and providing you with invoices and/or order confirmations). Additionally, we use this Order Information to:
- Communicate with you;
- Screen our orders for potential risk or fraud; and
- When in line with the preferences you have shared with us, provide you with information or advertising relating to our products or services.
We will contact you via email or post with information about goods that we think may be of interest to you. Under data protection law, it is considered a legitimate business interest for us to use our customers’ details for direct marketing, so it is our intention to do so. However, we will only do this where you have opted-in to receive such communications, either at the checkout at the time of making a purchase from us, or via the signup form to join our VIP Club.
We use the Device Information that we collect to help us screen for potential risk and fraud (in particular, your IP address), and more generally to improve and optimise our Site (for example, by generating analytics about how our customers browse and interact with the Site, and to assess the success of our marketing and advertising campaigns).
SHARING YOUR PERSONAL INFORMATION
We share your Personal Information with third parties to help us use your Personal Information, as described above. For example, we use Shopify to power our online store - you can read more about how Shopify uses your Personal Information here: https://www.shopify.com/legal/privacy. We also use Google Analytics to help us understand how our customers use the Site--you can read more about how Google uses your Personal Information here:
We may also receive information from third parties such as fraud detection agencies when we transact with you, so we can verify that you are actually you. This is built into the payment side of our site and is there to stop your card details from being fraudulently used.
Please note though: Great Scot does not retain or store credit card, debit card or other confidential payment information.
Finally, we may also share your Personal Information to comply with applicable laws and regulations, to respond to a subpoena, search warrant or other lawful request for information we receive, or to otherwise protect our rights.
We use third-party service providers (Facebook, Google) to serve ads on our behalf across the internet and sometimes on this site. They may collect anonymous information about your visits to our Site, and your interaction with our products and services. They may also use information about your visits to this and other websites to target advertisements for goods and services. This anonymous information is collected through the use of a pixel tag, which is industry standard technology used by most major websites. No personally identifiable information is collected or used in this process. They do not know the name, phone number, address, email address, or any personally identifying information about the user. If you would like more information about this practice and to know your choices about not having this anonymous information used by our third-party service provider, please visit our third-party service provider’s websites.
As described above, we use your Personal Information to provide you with targeted advertisements or marketing communications we believe may be of interest to you. For more information about how targeted advertising works, you can also visit the Network Advertising Initiative’s (‘NAI’) educational page at http://www.networkadvertising.org/understanding-online-advertising/how-does-it-work.
You can opt out of targeted advertising by going to:
FACEBOOK - https://www.facebook.com/settings/?tab=ads
You can also read more about online marketing practices and the technologies that support them by visiting the Your Online Choices.
Additionally, you can opt out of some of these services by visiting the Digital Advertising Alliance’s opt-out portal at: http://optout.aboutads.info/
DO NOT TRACK
Please note that we do not alter our Site’s data collection and use practices when we see a Do Not Track signal from your browser.
If you are a European resident, you have the right to access personal information we hold about you and to ask that your personal information be corrected, updated, or deleted. If you would like to exercise this right, please contact us through the contact information below. It’s always a pleasure to help.
You have the right to ask us to stop processing your data. Please contact us to let us know if you want us to erase, stop or amend any part of our processing and as far as we are able to (when taking into account our own legal obligations) we will do so.
Additionally, if you are a European resident we note that we are processing your information in order to fulfil contracts we might have with you (for example if you make an order through the Site), or otherwise to pursue our legitimate business interests listed above. Additionally, please note that your information will be transferred outside of Europe, including to Canada and the United States.
When you place an order through the Site, we will maintain your Order Information for our records unless and until you ask us to delete this information.
Likewise, when you join the Great Scot VIP Club, we will maintain your signup information unless and until you opt to unsubscribe from the club (the bottom of every promotional email we send has a link to allow you to unsubscribe), or you ask us to unsubscribe your details. In both events, your data is permanently deleted.
Great Scot chooses to use Mailchimp to store the data of customers who have opted-in to join the VIP Club. Mailchimp has self-certified to both the EU-US Privacy Shield and Swiss-US Privacy Shield regimes, and lawfully transfers EU/EEA personal data to the US pursuant to their Privacy Shield Certification. They also complete a SOC II Type 2 examination on an annual basis for the Trust Principal Criteria of Security, Processing Integrity, Confidentiality and Availability. This allows us to be confident about the security and data privacy of the information of our customers.
The Site is not intended for individuals under the age of 18. This is because the way the payment systems operate require you to be over 18 to allow you to legally enter a contract or purchase something with your own money.
For more information about our privacy practices, if you have questions, or if you would like to make a comment, please contact us by e-mail at firstname.lastname@example.org or by post using the details provided below:
The Data Protection Officer
Great Scot (Scotland) Ltd.
Isla Bank Mills