Privacy Policy
1. Introduction
At Breathz.co.uk ("we," "our," "us", or the "Company"), we respect your privacy and are committed to protecting your personal data. This privacy policy explains how we collect, use, and safeguard your information when you visit our website or make a purchase.
This policy applies to both UK and EU residents and complies with both UK GDPR and EU GDPR requirements.
2. Data Controller
Breatz.co.uk is the data controller responsible for your personal data.
Contact Details:
- Company Name: Breathz Ltd
- Email: info@breathz.co.uk
- Telephone: +44 (0)7845 29 1333
3. Data Protection Officer
We have not appointed a formal Data Protection Officer, but queries regarding data protection can be sent to privacy@breathz.co.uk.
4. Information We Collect
4.1 Personal Data
We may collect the following types of personal data:
Category |
Examples |
Legal Basis for Processing |
Identity Data |
Name, username, or similar identifiers |
Performance of contract, Legitimate interests |
Contact Data |
Billing address, delivery address, email address, telephone numbers |
Performance of contract, Legitimate interests |
Financial Data |
Payment card details (processed securely through our payment processors) |
Performance of contract |
Transaction Data |
Details of products purchased and payment history |
Performance of contract, Legitimate interests, Legal obligation |
Technical Data |
IP address, browser type, time zone setting, operating system |
Legitimate interests |
Profile Data |
Purchases, preferences, feedback, and survey responses |
Legitimate interests, Consent (for surveys) |
Usage Data |
Information about how you use our website and products |
Legitimate interests |
Marketing Data |
Preferences in receiving marketing from us |
Consent |
4.2 Cookies
We use cookies and similar tracking technologies to enhance your browsing experience. For detailed information, please see our separate Cookie Policy. For EU residents, we obtain explicit consent before placing non-essential cookies, in accordance with the ePrivacy Directive.
5. How We Use Your Information
Purpose |
Data Categories Used |
Legal Basis |
To register you as a customer |
Identity, Contact |
Performance of contract |
To process and deliver your order |
Identity, Contact, Financial, Transaction |
Performance of contract, Legitimate interests |
To manage our relationship with you |
Identity, Contact, Profile |
Performance of contract, Legal obligation, Legitimate interests |
To administer and protect our business |
Identity, Contact, Technical |
Legitimate interests, Legal obligation |
To deliver relevant content and ads |
Identity, Contact, Profile, Usage, Marketing |
Consent, Legitimate interests |
To improve our website and products |
Technical, Usage |
Legitimate interests |
To make recommendations to you |
Identity, Contact, Technical, Profile, Usage |
Legitimate interests, Consent |
6. Retention Periods
We will only retain your personal data for as long as necessary to fulfill the purposes we collected it for. Retention periods vary depending on the type of data:
-
Transaction Data: 7 years (to comply with tax regulations)
-
Marketing Preferences: Until you withdraw consent or after 2 years of inactivity
-
Account Information: For the duration of your customer relationship plus 2 years
-
Technical & Usage Data: 26 months
7. Data Sharing
We may share your personal data with:
- Service providers acting as processors who provide IT, system administration, and payment processing services
- Professional advisers including lawyers, bankers, auditors, and insurers
- Tax authorities, regulators, and other authorities who require reporting of processing activities
- Third parties to whom we may choose to sell, transfer, or merge parts of our business
We require all third parties to respect the security of your personal data and to treat it in accordance with the law.
8. International Transfers
Some of our external third parties may be based outside the UK/EEA. When transferring your data outside these regions, we ensure protection through one or more of these safeguards:
- Transferring to countries deemed to provide an adequate level of protection by the UK and/or EU Commission
- Using Standard Contractual Clauses (SCCs) approved by the UK and/or EU Commission
- (For US transfers) Ensuring providers comply with approved data protection frameworks
You can request a copy of the specific mechanisms used for any particular transfer by contacting us.
9. Data Security
We have implemented appropriate security measures to prevent your personal data from being accidentally lost, used, or accessed in an unauthorized way, including:
- Encryption of sensitive data
- Regular security assessments
- Access controls and authentication procedures
- Staff training on data protection
10. Automated Decision Making
We do not make any decisions about you based solely on automated processing, including profiling, that produce legal effects or similarly significant impacts.
11. Your Legal Rights
Under both UK and EU data protection laws, you have the following rights:
-
Right to Access: Request access to your personal data
-
Right to Rectification: Request correction of inaccurate data
-
Right to Erasure: Request deletion of your personal data (subject to certain conditions)
-
Right to Object: Object to processing of your personal data
-
Right to Restriction: Request restriction of processing
-
Right to Data Portability: Request transfer of your data
-
Right to Withdraw Consent: Withdraw consent at any time where we rely on consent
To exercise any of these rights, please contact us at info@breathz.co.uk. We will respond to all legitimate requests within one month.
12. Complaints
You have the right to make a complaint to a supervisory authority:
-
UK Residents: Information Commissioner's Office (ICO) - www.ico.org.uk
-
EU Residents: Your local data protection authority in your EU member state
We would, however, appreciate the chance to address your concerns before you approach a supervisory authority, so please contact us in the first instance.
13. Changes to This Privacy Policy
We may update this privacy policy from time to time. The updated version will be indicated by an updated "Last Updated" date and will be available on our website.
14. Contact Us
If you have any questions about this privacy policy or our privacy practices, please contact us:
- Email: info@breathz.co.uk
- Phone: +44 (0)7845 29 1333
Last Updated: March 19, 2025