At Loretta Shoes®, we take your privacy very seriously. This policy explains how we collect, store, use and protect your personal information.
Who We Are
Loretta Shoes® is a UK-based retailer of ladies’ shoes and accessories. Our head office address is:
Loretta Shoes Ltd
27 Shoe Lane
Northampton
NN1 2BT
We are registered in England & Wales under company number 09876543.
What Information We Collect
We collect personal information from you in the following ways:
- Account registration. When you create an account on our website, we collect your name, email address, and password. You can also optionally add your phone number and birth date.
- Orders. When you place an order on our website or in-store, we collect your name, billing/delivery address, contact details, and payment card information.
- Marketing sign-ups. If you opt-in to receive our emails, post or SMS, we collect your relevant contact details.
- Store visits. If you connect to our in-store WiFi, we may collect your device MAC address and browsing data. CCTV is used for security purposes.
- Surveys. If you participate in a survey, we collect any personal data you choose to disclose.
- Website usage. We use cookies and analytics tools to collect your IP address, browsing patterns, and device details. See our Cookie Policy.
How We Use Your Information
We use your personal information in the following ways:
- Provide products & services e.g. to create and manage your account, process orders, and handle deliveries.
- Communicate with you e.g. to respond to queries, send service emails and SMS, and notify you of order updates.
- Personalize your experience e.g. to recommend products you may like based on past orders.
- Marketing & advertising e.g. to send promotional emails, post or SMS that you have signed up for, and display relevant ads. We never share your data with third party advertisers.
- Improve our store e.g. to analyze site traffic, understand customers’ needs, and optimize the shopping experience.
- Prevent fraud e.g. to detect and prevent fraudulent transactions and other illegal activities.
- Comply with law e.g. to comply with legal and regulatory requirements like consumer protection laws.
When We Disclose Your Information
We will never sell or rent your personal information to third parties. The main situations in which we may disclose your data are:
- To our service providers and business partners who process data on our behalf (e.g. payment providers, warehouses, analytics services). We ensure all third parties are contractually obligated to implement appropriate security measures and only process data per our instructions.
- To law enforcement, government bodies or regulators upon a legally binding request. We may also disclose data when necessary to protect Loretta Shoes®’ legal rights, or the vital interests or safety of our employees or customers.
- To a potential buyer or successor company in the event Loretta Shoes® undergoes a merger, acquisition, bankruptcy or other corporate change. We will notify you if any such transfer occurs, and ensure your data is protected to the same standards.
Your Rights Over Your Information
You have the following rights over your personal data:
- Access – You can request access to the personal data we hold on you.
- Correction – You can ask us to update or correct your inaccurate or incomplete data.
- Deletion – You can request we delete your personal data, subject to legal obligations.
- Restriction – You can ask us to restrict the processing of your data in certain cases.
- Objection – You can object to the processing of your data for marketing, analytics, or other purposes.
- Portability – You can ask for a machine-readable copy of your data to transfer it elsewhere.
To exercise any of these rights, please contact our Data Protection Officer using the contact details in the Contact Us section below. For security reasons, we may verify your identity before fulfilling your request. There may be circumstances where we cannot comply with certain requests, e.g if it would impact the duty of confidentiality we owe to others.
Data Retention
We retain your personal information for as long as needed to provide our products and services, and comply with legal obligations. For example:
- Orders are retained for 7 years as required by HMRC.
- Accounts remain active until you choose to close your account or we deactivate dormant accounts. Closed account info is retained for 1 year to comply with regulations.
- Marketing data is kept until you opt-out or unsubscribe.
- Website usage data is anonymized every 12 months.
Cookies
Our website uses cookies – small text files placed on your device – to collect usage statistics, enable features and enhance your browsing experience. Our cookies policy provides full details on the cookies we use.
Security & Safeguards
We employ appropriate technical and organizational safeguards to protect your personal information. Examples include:
- Encryption of data in transit and at rest
- Strict access controls to our servers with need-to-know access only
- Vulnerability testing and regular security audits
- Anonymization and aggregation of data where possible
While we follow industry best practices to secure your data, no method of transmission or storage can be guaranteed 100% secure. If you have any concerns that your data may have been put at risk, please contact us immediately.
Use of Services by Minors
Our website and services are intended for users aged 16 and over. If you are under 16, you must not provide us with personal information without consent from a parent or guardian.
Changes to this Policy
We may occasionally make changes to this Privacy Policy to reflect updates in our services, legal obligations, or data handling practices. We will notify you of significant changes by placing a notice on our website and/or sending you an email.
Contact Us
If you have any questions about our Privacy Policy or data handling practices, please contact us:
Data Protection Officer
Loretta Shoes Ltd
27 Shoe Lane
Northampton
NN1 2BT
Email: [email protected]
You also have the right to lodge a complaint with the Information Commissioner’s Office if you believe we are not compliant with data protection laws.
Effective Date
This Privacy Policy was last updated on 6th June 2022.