©2017 by wishbox illustrations 

Proudly created with Wix.com

GDPR -PRIVACY POLICY FOR WISHBOX ILLUSTRATIONS 23/05/2018

1.Introduction.

1.1 What data does Wishbox Illustrations collect?

When an order is placed through our WEBSITE we ask for the following information to process your items and dispatch them to you:- FULL NAME,ADDRESS and EMAIL ADDRESS.

We also ask for a photo and any additional wording you may wish to include sent to us by email.

1.2 How do we collect this DATA?

This data is supplied to Wishbox Illustrations at the checkout process through PAYPAL. We receive the details you select/supply at the time of ordering. Information is then stored on our website account, so we can dispatch your parcel to the correct address with the correct details.

We also receive an email from PAYPAL confirming a purchase has been made and the address you have requested we send the items to.

1.3 Why do we collect this DATA.

We require your FULL NAME and FULL ADDRESS so we can send your parcel to the correct place of residence once it has been completed. We also ask for your EMAIL ADDRESS so we can get in touch with you should there be a problem or to send design approvals of items should you require them.

1.4 Why do we share this DATA?

Your DATA is not shared with or sold to any outside individuals. WE share your FULL NAME and DELIVERY ADDRESS to the delivery company you choose at the checkout process. For example Royal Mail or another delivery agent. This is so your parcel can be delivered to you.

2. Using your DATA for marketing services.

2.1 Opting in.

We require your permission to send any marketing or promotional emails. People must subscribe to our mailing list of their own volition in order for us to use the DATA you supply. If you do not your email address will never be used for this purpose.

2.2 Opting out.

If you subscribe to our mailing list but decide you would like to opt out of receiving further marketing emails you can unsubscribe at anytime. There is a link on our newsletters and promotional emails that will allow you to remove yourself from the mailing list. Once you have done so you will no longer receive marketing emails from Wishbox Illustrations unless you choose to resubscribe at a time in the future.

3. How do we keep your DATA secure?

3.1 DATA stored digitally.

The information collected during the checkout process is stored on our website server. Wishbox Illustrations website is hosted through WIX and they employ the following security measures to ensure all of the DATA collected is secure:

WIX employ full time security consultants, dedicated to the security of customer information.

WIX is  payment card industry DATA Security Standard (PCI DSS) Compliant and  is accredited as a Level 1 service provider and merchant. This standard creates a secure envoirement by increasing cardholder DATA, thus reducing credit card fraud. They regularly perform internal security audits to maintain our ISO/PCI security specifications.

WIX'S sign up and login services are completed through a secure server (HTTPS/SSL).

WIX use cryptography hash functions to protect information. Passwords are stored as a hash digest and, in the event of a security breach, original passwords cannot be recovered from our servers.

WIX.COM is certified under the EU - US Privacy Shield Framework and the Swiss - US Privacy Shield Framework as set forth by the US Department of Commerce, regarding the collection, use, and retention of personal information transferred from the European Union and Switzerland to the United States, and therefore adheres to the Privacy Shield principles.

WIX is currently developing the tools to allow the right to access the right to be forgotten, which will meet GDPR requirements.

Secure equipment used within Wishbox illustrations is the following:

IMAC - password protected.

Macbook Pro - password protected and finger print authentication.

Iphone 7 - password protected and finger print authentication.

We employ security measures on all of our equipment to ensure DATA is stored securely.

3.2 Data stored as hard copy.

We do not print any documents with your information present. The only thing printed is a shipping label which is then placed on your parcel and then sent to you. Second copies are not produced.

4. Requesting a copy of the DATA we hold.

4.1 The Process.

You can request a copy of all the data we currently hold on file for you. We are legally required to provide this to you free of charge and within a month of original request.

5. Request to delete all the DATA we hold.

5.1 The Process.

If you want us to delete all the information we have on file we are legally required to do so should you request it.

Useful links to third party policies:

Please find the links below for all the websites we use:

 

https://www.facebook.com/about/privacy/update

https://www.paypal.com/uk/webapps/mpp/ua/privacy-prev

https://www.policies.google.com/privacy?h1=en

https://www.royalmail.com/privacy-policy

https://www.wix.com/dashboard/6ade6522-4ae2-b6b7-bb5074954b5d/store/settings?refferal1info=sidebar

 https://stripe.com/guides/general-data-protection-regulation#stripe-and-the-gdpr

We reserve the right to update this policy at anytime and would advise that it is viewed frequently to be aware of any updates. We will endeavour to update you on changes. All changes take effect immediately.

Last updated 23/05/2018 WEBSITE V1