Privacy Policy

Shape Colour Style
Last Updated: March 7, 2025

We at Shape Colour Style are committed to protecting your privacy and ensuring compliance with the UK General Data Protection Regulation (UK GDPR) and other applicable data protection laws. This Privacy Policy explains how we collect, use, store, and protect your personal data when you visit our website www.shapecolourstyle.co.uk, use our contact form, or sign up for our newsletter. It also outlines your rights regarding your personal data.

1. Who We Are

We are Shape Colour Style based in the United Kingdom. For the purposes of UK GDPR, we are the "data controller" responsible for the personal data we collect and process.

2. Personal Data We Collect

We collect and process the following types of personal data:

  • Contact Form: When you submit our contact form, we collect your name, email address, and any additional information you choose to provide in your message.
  • Newsletter Sign-Up: When you sign up for our newsletter, we collect your email address and, optionally, your name (if provided).
  • Website Usage: We use Google Search Console to monitor how our website appears in Google search results. This tool processes aggregated and anonymized data provided by Google (e.g., search queries, impressions) and does not collect personal data directly from our website visitors.
  • Automatically Collected Data: Our website may log technical information such as your IP address, browser type, and visit timestamps via server logs for security and troubleshooting purposes.

3. How We Use Your Personal Data

We process your personal data for the following purposes and lawful bases under UK GDPR:

  • Responding to Contact Form Inquiries: We use your name, email address, and message content to respond to your inquiries submitted via our contact form. This is based on our legitimate interest in providing you with the information or support you’ve requested.
  • Sending Newsletters: We use your email address, and your name, to send you newsletters. This is based on your consent, which you provide by opting in through the newsletter sign-up form.
  • Monitoring Website Performance: We use aggregated and anonymised data from Google Search Console (such as search queries and impressions) to understand and improve how our website performs in search results. This is based on our legitimate interest in maintaining and enhancing our online presence.
  • Ensuring Website Security: We use technical data like your IP address and server logs to protect our website from security threats and troubleshoot technical issues. This is based on our legitimate interest in maintaining a secure and functional website.

4. How We Share Your Personal Data

We do not sell or rent your personal data. We may share your data with the following third parties:

  • Google Search Console: Google provides aggregated and anonymised data about how our site appears in search results. Google acts as a data processor under its own UK GDPR-compliant terms. See Google’s Privacy Policy for more details.
  • Email Service Providers: We use the third-party service Mailchimp to manage our newsletter, your email address and name will be shared with them.
  • Legal Obligations: We may disclose your data if required by law or to protect our rights, safety, or property.

5. How Long We Keep Your Data

  • Contact Form: We retain your data for as long as necessary to respond to your inquiry and for a reasonable period afterward unless further communication is ongoing.
  • Newsletter: We keep your data until you unsubscribe.
  • Server Logs: Technical data (e.g., IP addresses) is retained for security purposes, then deleted.
  • Google Search Console: We do not control the retention of data in GSC; Google manages this per its policies.

6. Your Rights Under UK GDPR

You have the following rights regarding your personal data:

  • Access: Request a copy of the data we hold about you.
  • Rectification: Ask us to correct inaccurate or incomplete data.
  • Erasure: Request deletion of your data (e.g., unsubscribe from the newsletter).
  • Restriction: Ask us to limit how we process your data.
  • Objection: Object to processing based on legitimate interests.
  • Data Portability: Request your data in a structured, machine-readable format.
  • Withdraw Consent: Stop newsletter emails at any time by clicking the unsubscribe link or contacting us.

To exercise these rights, contact us. We will respond within one month, though this may be extended for complex requests.

7. How We Protect Your Data

We implement appropriate technical and organizational measures to safeguard your data, including:

  • Secure hosting with HTTPS encryption.
  • Limited access to personal data by authorised personnel only.
  • Regular reviews of our security practices.

8. International Data Transfers

If we use third-party services (e.g., newsletter providers) based outside the UK, we ensure they comply with UK GDPR through adequacy decisions. E.g., “Our newsletter provider, Mailchimp, is based in the US and complies via standard contractual clauses.

9. Cookies and Tracking

Our website does not currently use cookies or tracking technologies beyond server logs and Google Search Console (which does not deploy cookies on our site). If this changes, we will update this policy and, where required, seek your consent.

10. Complaints

If you are unhappy with how we handle your data, please contact us first.

11. Changes to This Policy

We may update this Privacy Policy to reflect changes in our practices or legal requirements.

We need your consent to load the translations

We use a third-party service to translate the website content that may collect data about your activity. Please review the details in the privacy policy and accept the service to view the translations.