Privacy Policy for Roots Allotments
Effective Date: January 2, 2025
At Roots Allotments, operated by Allota Futureland Limited, we value the privacy of our users and are committed to protecting your personal data. This Privacy Policy explains how we collect, use, and share your data, as well as your rights regarding your personal information.
1. Introduction and Data Controller
Allota Futureland Limited is your Data Controller and responsible for your Personal Data. You can contact us at:
- Address: Park View Farm, Newton St. Loe, Bath, BA2 9JA, United Kingdom
- Email: [email protected]
You have the right to make a complaint at any time to the Information Commissioner's Office (ICO), the UK supervisory authority for data protection issues (www.ico.org.uk). However, we would appreciate the chance to address your concerns before you approach the ICO.
2. Information We Collect
We collect the following types of personal data from users:
- Personal Identification Data: Name, email address, phone number, and physical address.
- Payment Information: While we do not store payment details directly, payments are processed securely through Stripe, our trusted payment processor.
- Usage Data: Information about how you interact with our website, including your preferences and settings.
- Technical Data: IP address, browser type, device information, and cookies for analytics and functionality purposes.
3. How We Use Your Data
We use the information we collect for the following purposes:
- Service Provision: To manage your allotment subscription and provide access to our services.
- Communication: To send you important updates about your allotment and our services.
- Marketing: To send you relevant promotional content and newsletters (with your consent).
- Analytics: To improve our website and services based on user behavior and feedback.
- Legal Compliance: To comply with legal obligations and protect our legal rights.
4. Data Sharing and Third-Party Services
We share your personal data with the following third parties:
- Stripe: For secure payment processing.
- Supabase: For secure data storage and user authentication.
- Nuxt: For website functionality and user experience enhancement.
- Google Analytics: For website traffic analysis and service improvement.
All third-party services we use are contractually obligated to protect your data and comply with relevant privacy laws. Any Personal Data collected is only accessible by a limited number of employees who have special access rights and are bound by obligations of confidentiality.
5. Cookies and Tracking Technologies
Our website uses cookies and similar tracking technologies to enhance your browsing experience:
- Essential Cookies: Required for basic website functionality.
- Analytics Cookies: Help us understand how visitors use our website.
- Preference Cookies: Remember your settings and preferences.
You can manage your cookie preferences through our cookie consent banner.
6. Your Data Rights
Under UK data protection law, you have the following rights:
- Access: Request a copy of your personal data.
- Rectification: Correct inaccurate or incomplete data.
- Erasure: Request deletion of your personal data.
- Restriction: Limit how we use your data.
- Data Portability: Receive your data in a structured format.
- Objection: Object to our use of your data for specific purposes.
To exercise these rights, please contact us at [email protected].
7. Data Retention
We retain your personal data for as long as necessary to:
- Provide our services to you
- Comply with legal obligations
- Resolve disputes
- Enforce our agreements
If you cancel your subscription, we retain minimal data for legal and business purposes unless you request complete deletion.
8. Children's Privacy
Our services are not intended for children under 16. We do not knowingly collect or process data from individuals under this age.
9. International Data Transfers
Our services are currently limited to the UK. All data is processed and stored within the UK or EU in compliance with UK GDPR requirements.
10. Security Measures
We implement industry-standard security measures including:
- Encryption of data in transit and at rest
- Regular security assessments
- Access controls and authentication
- Secure data backups
- Regular staff training on data protection
While we strive to protect your Personal Data, no transmission of data over the internet is guaranteed to be completely secure. Any transmission is done at your own risk. If you believe that your interaction with us is no longer secure, please contact us.
11. Changes to This Policy
We may update this Privacy Policy to reflect changes in our practices or legal requirements. We will notify you of any material changes via email or through our website.
12. Contact Us
For privacy-related inquiries:
- Email: [email protected]
- Address: Park View Farm, Newton St. Loe, Bath, BA2 9JA, United Kingdom
- Data Protection Officer: [email protected]
For general inquiries:
- Email: [email protected]