PRIVACY POLICY [GDPR] Carols of Bishops Stortford Ltd t/a

We are committed to protecting and respecting your privacy and to conform with the General Data Protection Act 1998 & General Data Protection Regulation 2018. This policy sets out the basis on which your personal data will be processed by us. Please carefully read the following paragraphs to understand our views and practices regarding your personal data and how it will be handled.

Security guidelines to protect personal data unauthorised access, use or disclosure unauthorised modification unlawful destruction or accidental loss, cannot always be guaranteed and any transaction is at your own risk.

If you are under 16, we require that you inform a parent or guardian about Carol's of Bishops Stortford Ltd t/a Privacy Policy & Terms and Conditions as well as requiring their consent to the Privacy Policy & Terms and Conditions before registering or placing an order with Carols of Bishops Stortford Ltd t/a



By submitting your information and using our website, you consent to the collection, storage and processing of your personal information by us in the manner set out in this Policy, and by shopping with us and completing a transaction with Carol's of Bishops Stortford Ltd t/a you have electronically agreed to the terms set out in this policy and our terms & conditions. 


When you visit our Website our web server collects some information such as your internet service provider's domain name, which pages you accessed on our site, if you used a mobile or desktop, your IP address, and when. We use this information to analyse the use of our website and personalise this to make a better shopping experience for you. Further information on the use of Cookies and tracking on our site is under the “Cookies” paragraph. 

When you place an order with us you are entering into a contract and we will need to take the following personal details.

Name, Address, Delivery address, E-mail address, Telephone number. This information enables the processing & fulfilment of your order / contact to purchase. This information may be used to legitimately contact you to keep you informed of your order status or to deal with any issues through our customer service team


All Payments & information related to any transactions made with Carol's of Bishops Stortford Ltd t/a are completed through one of our third parties using their Payment Service Provider's systems.

We share your information / data with trusted selected third parties which include:

IT developers - who support our website and other business systems., Marketing Companies - to allow us to send you email communications and for the purposes of providing you with relevant marketing or advertising of our website. This includes undertaking behaviour modelling.

Once payments are made the credit card details you enter are securely transmitted straight to our third-party payment provider and we never see or store them in full. Instead we receive a token consisting of your card number with half the digits randomised along with less critical data such as the card type and expiry date. We are then able to use this token to complete tasks such as refunding your card via our payment processor should a refund be requested and accepted.



We would like to keep you updated from time to time with any offers, promotions, and new ranges. Once an order is placed, we will ask you if you want to receive this kind of marketing information by ticking to opt in. You may also subscribe to receive these emails by submitting your email address in our newsletter tab. You can unsubscribe from these updates at any time either through our marketing emails, where you can scroll to the bottom of the page and simply unsubscribe, or you can also contact us at requesting to be removed from our Marketing communications.


How Long We Keep your information

We will only keep your personal data for as long as necessary to fulfil the purposes we collect it for, including the purpose of satisfying any legal, accounting requirements. At the end of that retention period your data will be deleted so it can no longer be associated with you. 

For the Purpose of the Data Protection Act 1998 The Data Controller is Carol's of Bishops Stortford Ltd, 84 South St, Bishop's Stortford CM23 3BG. This Policy has been updated June 2020.

Your Rights
You have the right to request to update your information on file or to request us not to use your details for the purpose of providing you with information about the goods and services provided by us to do this please use the “unsubscribe” option in our newsletter, or you can notify us by emailing

Our website may contain links to and from our partners’ and affiliates’ websites. If you follow a link to their sites, please note that these sites have their own privacy policy and that we do not accept any responsibility or liability for these policies. Please check these policies before you submit any personal data to these sites.

Where we store your personal data
We will take all steps reasonably necessary to ensure that your data is treated securely and in accordance with this Privacy Policy.

All information you provide to us is stored on our secure servers. Where we have provided you (or where you have chosen) a password, user ID or PIN which enables you to access certain parts of our site, you are responsible for keeping this password, user ID or PIN confidential. We ask you not to share a password, user ID or PIN with anyone. Unfortunately, the transmission of information via the Internet is not completely secure. So, whilst we will do our best to protect your personal data, we cannot ensure the security of your data transmitted to our site. Any transmission is at your own risk. Once we have received your information, we will use strict procedures and security features to prevent unauthorised access.

Cookies are small encrypted text files that are sent to your browser from the websites you visit and are stored on your device. We use cookies to better understand how users are navigating to and through our site and to provide you with useful additional functionality. We are currently operating an ‘implied consent’ policy which means that we assume you are happy with this usage. If you do not wish us to store cookies on your device, then please visit this link: which will give you detailed instructions on how to disable and delete cookies in your browser settings.

We use the following types of cookies on the website:

Analytic cookies
We additionally make use of analytical cookies through Google Analytics. These cookies help us compile anonymous statistics that allow us to understand how visitors are using our web site, which pages are being visited, and help us improve it and its content. These cookies do not identify visitors personally.

Our use of Google Analytics will set the following cookies on your device (information taken from


This cookie is typically written to the browser upon the first visit to your site from that web browser and is used to determine unique visitors to a site and is updated with each page view.


This cookie is used to establish and continue a user session with your site. When viewing a page, the Google Analytics code attempts to update this cookie. If it does not find the cookie, a new one is written, and a new session is established. Each time a user visits a different page on your site, this cookie is updated to expire in 30 minutes, thus continuing a single session for as long as user activity continues within 30-minute intervals.


Historically, this cookie operated in conjunction with the __utmb cookie to determine whether or not to establish a new session for the user.


This cookie stores the type of referral used by the visitor to reach your site, whether via a direct method, a referring link, a website search, or a campaign such as an ad or an email link. It is used to calculate search engine traffic, ad campaigns and page navigation and is updated with each page view.

Google offers an opt-out tool available at which allows you to opt out of all their Analytics tracking for all web sites as an add-on to most popular browsers.

Third Party Cookies
Our website also carries embedded ‘share’ buttons to enable users of the site to easily share articles with their friends through several popular social networks. These sites may also set cookies when you are also logged into their service. We do not control the dissemination of these cookies and you should check the relevant third-party website for more information about these cookies. Here are some useful links from some third-party websites where links are commonly shared.

To read more about cookies, what they mean, what they can be used for and why we have made this statement, please visit We may amend this policy in line with future changes in legislation or best practice.