PRIVACY POLICY
1. Who We Are
Shadow Supplements
Hanwell Community Centre
Westcott Crescent, London, W7 1PD
Email: shadowsupps@gmail.com
Phone: 01923 882116
We are the data controller for the purposes of the UK GDPR.
2. Personal Data We Collect
We may collect and process the following categories of personal data:
- Identity Data – Name, date of birth (if provided)
- Contact Data – Email address, phone number, billing/delivery address
- Transaction Data – Payment details (via secure third-party processor), order history
- Technical Data – IP address, browser type, operating system, time zone, device type
- Usage Data – Information about how you use our website and services
- Marketing and Communication Data – Preferences in receiving marketing from us
We do not collect or store full payment card details. Payments are processed securely through third-party providers such as Stripe or PayPal.
3. How We Use Your Personal Data
We will only use your data when the law allows us to. Most commonly, we use your data:
- To process and deliver orders
- To manage payments, fees and charges
- To provide customer support and communicate with you
- To send service messages, order updates and delivery notifications
- To improve our website, services, and user experience
- To send marketing emails or offers (only where you have opted in)
Legal bases for processing:
- Performance of a contract with you
- Consent (for marketing)
- Legal obligations (e.g. tax, fraud prevention)
- Legitimate interests (e.g. to improve services, prevent fraud)
4. Marketing & Communications
You will only receive marketing communications if you have given explicit consent.
You can withdraw consent or unsubscribe at any time via the unsubscribe link in emails or by contacting us.
5. Who We Share Your Data With
We only share your data when absolutely necessary, and only with trusted third parties:
- Delivery providers (e.g. Royal Mail, DPD) – to deliver your order
- Payment processors (e.g. Stripe, PayPal) – to process secure payments
- IT and website services – for website hosting, analytics, and support
- Legal, regulatory or government authorities – if required by law
We do not sell or rent your personal data to third parties.
6. Data Security
We take appropriate security measures to protect your data:
- HTTPS encrypted website
- Secure servers and firewalls
- Regular security reviews
- Access controls and staff confidentiality agreements
If there is a personal data breach, we will notify you and the ICO if legally required.
7. How Long We Keep Your Data
We only retain your data for as long as necessary for the purposes we collected it for, including for legal, tax or accounting requirements:
- Customer order data: 6 years (for HMRC purposes)
- Email enquiries: 2 years
- Marketing consent records: until unsubscribed or request for deletion
8. Your Legal Rights
Under UK GDPR, you have the following rights:
- Access – Request a copy of the data we hold on you
- Rectification – Request corrections to incomplete or inaccurate data
- Erasure – Request deletion of your data ("right to be forgotten")
- Restriction – Request limited use of your data
- Portability – Request your data be transferred to another service
- Objection – Object to data processing based on our legitimate interests
- Withdraw consent – For marketing at any time
To exercise any of these rights, email: shadowsupps@gmail.com
You also have the right to complain to the Information Commissioner's Office (ICO) – www.ico.org.uk
9. Cookies
We use cookies and similar technologies to enhance your browsing experience. For more information, please see our
https://shadowsupps.co.uk/pages/cookie-policy
10. Changes to This Policy
We may update this privacy policy from time to time. Updates will be posted on this page and where appropriate notified to you by email.
Still Have Questions?
Email us: shadowsupps@gmail.com
Call: 01923 882116