Our contact promise is a summary of how we look after your personal data.
We collect, use and store your personal data so that we can offer you the products and services you expect from us. We see your personal data as just that: it's yours. So we will always be clear and upfront with you about what we do with your personal data, and (of course) you have control over it.
We collect your personal data for three main reasons:
To process any orders, you make and to deliver those orders to you
To personalise, report on and improve the products and services we provide to you
To send you special offers, often tailored to what you have told us you would like to hear about
We will always use market-leading technology and software to ensure that your personal data is secure and when we ask another organisation to provide services to us which involve sharing your personal data with them, we will always make sure they have appropriate security measures.
We will send you marketing communications as we believe we have a legitimate interest in doing so; however, we will always offer you a clear and simple means of changing your preferences whenever you want to (including when you first become a customer). Simply click the link at the bottom of the page to view and amend your preferences.
Who we are
Shipton & Co. 1870 Limited, a private company registered in England and Wales with company number 07900863. Our registered office is: 27-33 spencer Street, Birmingham Jewellery Quarter, B18 6DL.
If you have any questions about how we look after your personal data, you can contact us:
In writing, to Customer Services 27-33 spencer Street, Birmingham Jewellery Quarter, B18 6DL.
By email to this address: firstname.lastname@example.org
By telephone: 0121 2626 478
You can manage your marketing preferences by contacting us as above or through the preference centre. We will update your preferences as soon as we can but please note that as catalogues are printed in advance, it may take up to 8 weeks for the process to be completed and for emails it may take up to 2 weeks.
How do we collect your personal data?
We collect your personal data in two main ways:
(1) When you give it to us directly
When you create a customer account, visit our website, communicate with us or purchase our products or services, you may choose to give us certain information. For example, when you give us your name and address or when clicking on active buttons such our 'Place Order & Pay'.
(2) When our systems collect information or personal data as you use our website or app, or websites or apps that are connected to our website
Whenever you use a website, app or other internet service, information gets recorded automatically by the IT systems used to operate that website, app or service. The most common type of information collected is in the form of cookies (small text files sent by your computer each time you visit our website) but can also include personal data transferred by the electronic device you use to access our website and its settings. The manufacturer of your device, or the provider of the operating system, will have details about what information your device shares with us.
What categories of personal data do we collect?
We may collect the following information about you:
• Your name, birthday and contact details
This can include your postal, billing and delivery addresses (which would include the addresses of any family or friends you choose to send jewellery to); your telephone number(s), including, if you provide it, your mobile number; and your email address
• Purchases and orders made by you
• We do NOT store any of your credit/debit card details if you order by post your postal order is shredded after it is keyed
• When you set up an account with us, your password (which we encrypt) and your marketing preferences
• Your product preferences, favourites, ratings and reviews
• Your on-line browsing history on our website
• Your correspondence with us
Personal data we will process to fulfil your orders and to comply with the law
We will need to process some of your personal data to fulfil any orders you place and to comply with the law. For example:
We will share your (or your recipient's) name, address and, where applicable, telephone number with our carriers.
We will share your payment details with our bank or clearing house so that we can process payment for your order
How and why do we use your personal data?
We use your personal data:
To manage any orders/accounts you have registered with us so that
(i) We can provide you with products and services
(ii) You can place orders
(iii) We can fulfil those orders and communicate with you about them
To improve the range of jewellery, offers and associated products we offer you and to help identify new products and services in the future
To present you with personalised offers on our website, through social media channels such as Facebook and Instagram and by placing banner advertisements on third party websites
To personalise the offers you receive from us – the jewellery you love, unique events, and special offers and promotions
To allow you to post links to our products on social media
To verify your identity
To detect and prevent fraud and other illegal activities (and to assist regulators, trade bodies and law enforcement agencies in relation to the same)
To carry out research to better understand your views on our products and services
To provide excellent customer service
Our legitimate interests
"Legitimate Interests" means the interests of our company in conducting and managing our business to enable us to give you the best products and services, and the best and most secure experience.
For example, we have an interest in marketing our products and services to you, and making sure our marketing is relevant for you. Therefore, we may process your information to send you marketing that is tailored to your interests.
It can also apply to processing that is in your interests as well. For example, we may process your information to protect you against fraud when transacting on our website, and to ensure our websites and systems are secure.
When we process your personal information for our legitimate interests, we make sure to consider and balance any potential impact on you (both positive and negative), and your rights under data protection laws. Our legitimate business interests do not automatically override your interests - we will not use your personal data for activities where our interests are overridden by the impact on you (unless you have opted out or are otherwise required or permitted to by law).
Where we rely on our legitimate interests to send you marketing communications, we shall tell you when you become a customer how we would like to market our products and services to you, and offer you a means of opting out of those communications. You can opt out of our marketing communications at any time through the preference centre in your online account or by contacting us on 0121 2626 478 or email@example.com.
In addition to sending you marketing communications, we rely on our legitimate interests to process your personal data so that we can:
Improve our existing product range, associated products and services, and develop new ones
Provide you with a quality customer service experience
Protect you, our employees and our business
Understand your likes and dislikes, what products you want to hear about and how best to contact you to inform you about them
Manage insurance claims made by our customers
Taking legal action against any party in breach of its obligations to Shipton & Co ltd
When do we share your personal data?
So that we can provide you with our products and services, we have to share some of your personal data with certain third parties.
When we share your personal data, we make sure that it remains secure:
We conduct a data security review of third parties we share your personal data with to ensure that they will keep your personal data secure and confidential to the standards you and we would expect
Every external company we work with is required to have a contract with us which clearly describes our expectations about the way in which they keep your personal data secure, the purposes for which they can use your personal data and which holds them fully responsible for meeting those expectations
We will only send to third parties the personal data that is necessary for the purposes it is required for.
We share your data as follows:
With core service providers to enable our business to function
We rely on a set of external companies to provide us with services that enable our business to run properly. Our core service providers include the courier companies we use to deliver our products to you; banks and clearing houses to process your payments; IT services providers; companies to help us with our marketing.
• Pursuit – Epos and stock control and central data storage system
• Sagepay – Credit and debit card charging portal for online and 3rd party call centre
• Lloyds Cardnet – For stores and in-house call centre.
• VisualSoft – Our website providers and hosts
• Base data – Bureau who manage and clean our data for mailings, analysis and are the hub for all 3rd party data distribution;
• Sterling Press - Catalogue Printers and Mailing House
• Whistl. – Down Stream Access Postal Delivery Service providers
• Epsilon Abacus Alliance – Data Co-operative company -
o We work with both Epsilon Abacus (registered as Epsilon International UK Ltd), a company that manages the Abacus Alliance on behalf of UK retailers. The participating retailers are active in the clothing, collectables, food & wine, gardening, gadgets & entertainment, health & beauty, household goods, home interiors and travel categories. They share information on what their customers buy. Epsilon Abacus analyse this pooled information to understand consumer's wider buying patterns. From this information, retailers can tailor their communications, sending people suitable offers that should be of interest to them, based on what they like to buy. Epsilon Abacus may transfer data outside the EEA. The transfer will take place in the presence of appropriate safeguards, including standard data protection clauses adopted by the EU Commission.
We also use a tracking pixel in order to help us understand content you are interested in. This is used to track interactions with email marketing and with the website. This will track metrics to help us monitor activity, optimise performance and provide a more appropriate product offering and improve customer service.
With other partners if you have not opted out
We work with a number of other third-party companies to provide value to our business and to you. These companies include our marketing partners and social media partners (for instance you can publish a link on Facebook or Twitter to any Jewellery of ours that you loved).
We will only partner with a company that meets our own high standards and that we think is a good fit for our business and our customers. Each of these third parties is required by the terms of the contract we have agreed with them to use your personal data only as we instruct it and to ensure that your personal data is secure.
We may also on occasions share your data with trusted retail and charity partners either directly or through alliances operated by third parties. The companies we share your data with directly and the retailers participating in these alliances are active in the clothing, collectables, food & wine, gardening, gadgets & entertainment, health & beauty, household goods, and home interiors categories.
These alliances work by each trusted retailer sharing information on what their customers buy. This information is analysed to help the retailers understand consumers’ wider buying patterns. As a result, the retailers can tailor their communications, sending suitable offers that should be of interest, based on what they like to buy.
If you would rather not receive marketing offers from third party companies and charities, you can withdraw your permission whenever you want through the preference centre in your online account or by contacting us on 0121 2626 478 or firstname.lastname@example.org.
With regulators and law enforcement agencies when required to do so by law
We are required to co-operate with regulators (like the Information Commissioner's Office or HMRC) and law enforcement agencies (like the police or the Serious Fraud Office) in every country we operate in. Although it does not happen often, regulators and law enforcement agencies can require us to share information with them as part of an investigation; this may include your personal data. We would have to disclose your personal data where we believe that disclosure is reasonably necessary to comply with the regulator or crime enforcement agency's demand.
When we think it is reasonably necessary to protect you or us
Occasionally businesses are subject to attempted criminal activities; this can affect both us and you. We will take all reasonable steps to protect you and our business but sometimes we may need to share your personal data where we think it is reasonably necessary to:
Detect, monitor, investigate or prevent any suspected illegal activities, fraud or security issues
Enforce our terms and conditions and to protect your and our rights and property
Investigate and defend any third-party claims or allegations
As part of a business sale or purchase, merger or reorganisation
From time to time we may look to purchase another business or sell or re-organise parts of our business to ensure that we remain in strong shape. Sometimes these types of corporate transactions involve the transfer of your personal data solely for the purposes of assessing the transaction. In the event that we sell or buy any business or assets, personal data which we hold about you may be one of the transferred assets.
How long do we hold your personal data for?
We will not keep your personal data for longer than is necessary for the purposes described in this policy.
As a guide:
We will keep personal data while your account is active and beyond that for the purposes of insurance claims unless you ask us not to.
We may keep certain categories of personal data after your account is closed in order to meet any legal or regulatory requirements, or to resolve a legal dispute and, because of this, we may keep different types of personal data for different lengths of time (for instance, we may need to keep certain personal data relating to your purchases in order to comply with HMRC's VAT reporting requirements)
You have a number of rights under data protection laws; these are summarised below.
The right to be informed
The right of access
You can access the personal data we hold on you by contacting us 0121 2626 478 or email@example.com. To process your request, we will ask you to send us two forms of proof of identity so that we can be sure we are releasing your personal data to the right person.
We will process your request within one month or, if the request is particularly complex, two months. We can provide you with a copy of your personal data in electronic format or hard copy.
The right to rectification
We welcome feedback from you to ensure our records are as accurate and up-to-date as possible. If you think that the information we hold about you is inaccurate or incomplete, please ask us to correct it by contacting us on 0121 2626 478 or firstname.lastname@example.org or by updating your details at any time through your online account. We will process your request as soon as we receive it or within one month of receipt at the latest.
The right to erasure
You can ask us to delete your personal data; however, this is not an absolute right. We can refuse to erase personal data which we need to keep (i) to comply with a legal obligation (for instance, we are required by HMRC to keep certain personal data for up to 6 years for VAT reporting purposes); and (ii) in relation to the exercise or defence of any legal claims.
When you ask us to delete your personal data, we assume that you do not want to hear from us again. To ensure that we do not send you any special offers in the future (for example, if we purchased your details from a third party list), we will retain just enough of your personal data solely for suppression purposes.
Other than as described above, we will always comply with your request and do so promptly. We would also notify any third parties with whom we have shared your personal data (for instance, our carriers for the purposes of delivering your jewellery to you) about your request so that they could also comply.
Some customers would still like to order our products but do not want to receive any marketing communications from us. This is not a problem as you can simply update your marketing preferences in your online account or by contacting us on 0121 2626 478 or email@example.com or through the preference centre in your online account.
The right to transfer your personal data (known as data portability)
You have the right to move, copy or transfer your personal data from one organisation to another. We hold little information that would be much use to another jewellery business but if you do wish to transfer your personal data we would be happy to help.
If you ask for a data transfer, we will give you a copy of your personal data in a structured, commonly used and machine-readable form (for instance, in a CSV file format). We can provide the personal data to you directly or, if you request, to another organisation.
Please note that we are not required to adopt processing systems that are compatible with another organisation, so it may be that the recipient organisation cannot automatically use the personal data we provide.
When making a transfer request, it would be helpful if you can identify exactly what personal data you wish us to transfer.
We will comply with your request within one month or, if the request is complex or there are a number of requests from you, within two months.
The right to object
If you would like us to stop processing your personal data for marketing purposes simply let us know by contacting us on 0121 2626 478 or firstname.lastname@example.org or through the preference centre in your online account.
We put a lot of effort into personalising your experience with us to ensure that the offers we send you are interesting, relevant and timely. To do this we look at your previous purchases plus any preferences, ratings, reviews and favourites you may have indicated to build a profile of what you are most likely to want to buy. This is known as 'profiling'.
If you don't want us to carry out any profiling using your personal data please let us know by contacting us on 0121 2626 478 or email@example.com. However, please be aware that if you ask us to stop profiling your personal data you my receive promotions not as well targeted which is likely to be less useful to you.
We may update this policy from time to time to take account of any new business activity or to reflect any changes in law or best practice in relation to data protection. We will notify you if we do so.
This policy was last updated on 15 May 2018.
What are cookies?
To order products on shiptonandco.com, you need to have cookies enabled. If you don't wish to enable cookies, you'll still be able to browse the site and use it for research purposes and order offline.
Please note that cookies can't harm your computer. We don't store personally identifiable information such as credit card details in cookies, but we do use encrypted information gathered from them to help improve your experience of the site. For example, they help us to identify and resolve errors, or to determine relevant related products to show you when you're browsing.
We do have relationships with carefully-selected and monitored suppliers who may also set cookies during your visit to be used for remarketing purposes - in other words to show you different products and services based on what you appear to be interested in. If you'd like to opt out, please go to the Network Advertising Initiative website (please note that we're not responsible for the content of external websites).
We're giving you this information as part of our initiative to comply with recent legislation, and to make sure we're honest and clear about your privacy when using our website. We know you'd expect nothing less from us, and please be assured that we're working on a number of other privacy and cookie-related improvements to the website.
For more information on cookies, visit the official ICO website at ico.org.uk or whatarecookies.com.
Types of Cookies
Strictly necessary cookies - These cookies enable you to navigate our site and gain full access to its features and secure areas. Without these cookies essential services you have asked for like 'Your Basket' cannot be provided.
Performance cookies - These cookies remember information about how you and other customers use our website. This gives us vital information such as which pages are visited most often and if customers are receiving error messages from certain pages. The role of these cookies is to allow us to analyse and improve the performance of our website ensuring you receive a consistent look, feel and shopping experience. Performance cookies (often known as web analytic cookies) don't collect any information that identifies the customer and all information collected is aggregated and therefore anonymous.
Functionality cookies - These cookies remember choices you made on previous visits to our site such as your username, language or region so we can provide enhanced, more personal features. They can also be used to remember changes you've made to text size, fonts and other parts of web pages you can customise. Functionality cookies can also be used to provide services you have previously asked for such as watching videos or commenting on a blog. The information collected by these cookies may be anonymised and they cannot track your browsing activity on other sites.
Targeting or advertising cookies - These cookies are used to deliver adverts more relevant to your personal interests. Alongside this they limit the amount of times you see an advert and measure the effectiveness of adverts. This means you won't keep seeing irrelevant adverts or the same adverts over and over. These cookies are usually placed by advertising networks with the website operator's permission. They remember that you have visited a website and the information is shared with other organisations such as advertisers. Quite often targeting or advertising cookies will be linked to site functionality provided by the other organisations that generate the advert. When one of these adverts is presented to you on a site there will be a quick and easy way to click in and opt out of receiving further adverts.
Cookies we use
Vscommerce - A session identifier cookie that disappears after the browser is closed. This is a unique ID that references the database entry holding information such as the basket contents, logged in status and other information.
VSReferrer - An identifier that stores that website that referred you
VSCurrency - An identifier that references the currency the prices are displayed in.
VSVatPrices - An identifier that references if prices are shown inclusive or exclusive of VAT.
VSCategoryGroup - An identifier that references the last top level category visited.
mobi - An identifier that references whether the customer has opted to view the mobile or standard version of the website.
VSCourierID - An identifier that references the courier the customer has selected.
VSCountryID - An identifier that references the country and currency the customer has selected.
VSWishlistId - An identifier that references the database entry holding the visitors wishlist on the website when they are not logged in.
VSWishlistToken - An identifier that references the database entry holding the visitors wishlist on the website when they are not logged in.
vs_login - Secure login token if the visitor selected for the website to remember them.
VSMultisiteIPRedirected - An identifier that flags if we have automatically redirected the visitor to a more appropriate version of the site depending on their location.
locale_prefix - An identifier used to keep a visitor on a specific version of the website.
JSESSIONID - These cookies enable us to respond to your actions on our website such as add to basket
Google Adwords conversion tracking - This is a cookie from Google that helps us to understand how customers are purchasing from our website. This information helps us understand what is working more successfully for us in terms of sponsored advertising on search engines, website structures, promotions and other key identifiers. The cookie does not contain any personal information about our customers. https://support.google.com/adwords/bin/answer.py?hl=en&answer=93148
Share buttons (Facebook, Twitter and Google+) - These cookies are required to enable our customers to share their shopping experiences through social media such as Facebook and Twitter etc. Please note that if you do choose to share through these social media providers that we don't control the setting of these cookies and we recommend that you check the provider's website for further information.
JSESSIONID - These cookies enable us to respond to your actions on our website such as add to basket.
Link to our register page which displays our opt in options - https://www.shiptonandco.com/register