Privacy Policy
Last updated: 14th October 2023
Your privacy is not an afterthought. It's integral to our promise of trust and transparency.
Cosmos Hearth is committed to protecting and respecting your privacy. This policy explains our practices concerning the personal data we collect, how we secure it, and how you can control it, all in compliance with UK and international data protection laws, including the UK General Data Protection Regulation (UK GDPR).
Our Data Promise
Here at Cosmos Hearth, we believe that understanding how your personal information is handled is a fundamental aspect of the mindful and transparent relationships we build with our community. Our commitment extends beyond ethical homeware to ethical data practices.
1. Who We Are
Cosmos Hearth is a UK-based company specializing in philosophy-inspired homeware, bespoke furniture, and mindful living experiences. We are the data controller responsible for your personal data. Our registered address is 34 The Shard, 32 London Bridge Street, Floor 20, London, Greater London, SE1 9SG, UK.
2. What Data We Collect
We only collect data necessary to provide and improve our services, and to communicate effectively with you. This may include:
- Identity Data: Name, title, date of birth, and gender.
- Contact Data: Billing address, delivery address, email address, and telephone numbers.
- Financial Data: Payment card details for transactions (processed securely by third-party payment gateways; we do not store full card numbers).
- Transaction Data: Details about payments to and from you, and other details of products and services you have purchased from us.
- Technical Data: Internet protocol (IP) address, your login data, browser type and version, time zone setting and location, browser plug-in types and versions, operating system and platform, and other technology on the devices you use to access this website.
- Profile Data: Your username and password, purchases or orders made by you, your interests, preferences, feedback, and survey responses.
- Usage Data: Information about how you use our website, products, and services.
- Marketing and Communications Data: Your preferences in receiving marketing from us and our third parties, and your communication preferences.
3. How We Use Your Data
We use your personal data for legitimate business purposes, including:
- Processing and fulfilling your orders.
- Managing your account and providing customer support.
- Personalizing your experience on our website.
- Sending you marketing communications (if you have opted-in).
- Improving our website, products, and services through analytics.
- Complying with legal obligations and resolving disputes.
4. Legal Basis for Processing
Our legal bases for collecting and using your personal data include:
- Contract: To fulfill obligations arising from contracts with you (e.g., processing orders).
- Legitimate Interest: For our legitimate business interests, provided your data protection rights are not overridden (e.g., improving services, fraud prevention).
- Consent: Where you have given clear consent for us to process your personal data for a specific purpose (e.g., marketing subscriptions).
- Legal Obligation: To comply with a legal or regulatory obligation.
5. Data Security & Retention
We have implemented robust security measures to prevent your personal data from being accidentally lost, used or accessed in an unauthorized way, altered, or disclosed. We limit access to your personal data to those employees, agents, contractors, and other third parties who have a business need to know. They will only process your personal data on our instructions and are subject to a duty of confidentiality.
We retain your personal data only for as long as necessary to fulfill the purposes we collected it for, including for the purposes of satisfying any legal, accounting, or reporting requirements. Typically, this is 6 years after your last interaction for tax and regulatory purposes.
6. Your Rights Under UK GDPR
Under certain circumstances, you have rights under data protection laws in relation to your personal data:
- The right to access your personal data.
- The right to rectification of your personal data.
- The right to erasure of your personal data.
- The right to object to processing of your personal data.
- The right to restriction of processing your personal data.
- The right to data portability.
- The right to withdraw consent at any time.
You can exercise these rights by contacting us. We aim to respond within one month.
7. Cookie Policy
Our website uses cookies to distinguish you from other users of our website. This helps us to provide you with a good experience when you browse our website and also allows us to improve our site. For detailed information on the cookies we use and the purposes for which we use them, please see our Cookie Policy.
Manage Your Cookie Preferences
8. How to Contact Us
For any questions regarding this privacy policy or our data practices, please refer to the section below or use the main contact details provided on our website.
Contact our Data Protection Officer
For any questions regarding this policy or to exercise your rights concerning your personal data, please reach out to our dedicated Data Protection Officer.
You can also find further contact information on our main Contact Us page.