Privacy policy
Privacy Policy
Last Updated: 7 October 2025
Your privacy matters to us – we never sell your data, and we only collect what’s necessary to serve you better.
Privacy Policy – Quick Summary
Your Data: We collect only the information needed to process your orders, improve your experience, and communicate with you.
How We Use It: Your data is used for payments, shipping, and customer support. We may also send marketing (if you’ve opted in) and use analytics to improve our site.
Your Rights: You can request access, correction, or deletion of your data at any time. We respect GDPR and UK GDPR laws.
1. Collecting Personal Information
When you visit our Site, we collect certain information to process your purchases and improve your experience.
Types of Personal Information we collect:
Device Information:
Examples: IP address, browser type, time zone, cookie data, pages/products viewed, search terms.
Purpose: To display the Site properly and analyse traffic for optimisation.
Source: Automatically collected via cookies, log files, tags, or pixels.
Shared with: Shopify, Google, Facebook, Instagram.
Order Information:
Examples: Name, email, phone number, billing/shipping address, payment information.
Purpose: To process payments, arrange delivery, provide order confirmations, and detect fraud.
Shared with: Shopify and secure payment providers (we do not store raw credit card details).
Customer Support Information:
Purpose: To assist with enquiries and resolve issues.
Shared with: Shopify, Gmail.
2. Minors
Our Site is not intended for individuals under 13 in the UK (or 16 where applicable in the EU). We do not knowingly collect data from children. If you believe a child has provided personal data, contact us to request deletion.
3. Sharing Personal Information
We share your information only with trusted service providers, for example:
-
Shopify: To power our store. Shopify Privacy Policy
-
Legal Compliance: We may disclose information to comply with legal obligations or lawful requests.
When Shopify Network Intelligence is enabled, Shopify securely uses data from interactions with our store and other Shopify merchants to provide Enhanced Services. These services help detect fraud, improve shopping experiences, and enhance business operations across Shopify stores.
Shopify may process this data in aggregated or anonymised form to power these features. You can learn more in the Shopify Consumer Privacy Policy and exercise your rights via the Shopify Privacy Portal.
4. Behavioural Advertising
We use your data for targeted advertising and site analytics:
-
Google Analytics: Helps us understand customer behaviour. Google Privacy.
Opt-out of personalised ads:
Or use the Digital Advertising Alliance Opt-out.
When Shopify Network Intelligence is active, some advertising features may use aggregated data from customer interactions across Shopify merchants. Customers in the UK and EEA will only see such ads if they have given consent via our cookie banner, and can withdraw consent at any time.
5. Using Personal Information
We use your information to:
-
Provide products and services.
-
Process payments and arrange delivery.
-
Send order confirmations and updates.
-
Share marketing communications (only if you consent).
-
Improve and optimise our website.
Shopify may also process your information to help provide Enhanced Services, such as fraud prevention and analytics, based on aggregated interactions across Shopify merchants.
6. GDPR & UK GDPR Compliance
If you are a resident of the UK or EEA, we process your data under the following legal bases:
-
Your consent.
-
Performance of a contract with you.
-
Legal obligations (e.g., tax and accounting).
-
Legitimate business interests (e.g., improving services).
Data Transfers:
Your data may be transferred to Shopify servers in Canada or the USA. Shopify ensures GDPR-compliant safeguards.
You can review how Shopify safeguards and processes your data, and exercise your rights, through the Shopify Privacy Portal.
7. Data Retention
We keep personal information only as long as necessary or as required by law (e.g., up to 6 years for tax purposes). You can request data deletion at any time.
When data is deleted from our systems, any associated data stored by Shopify Network Intelligence will also be deleted.
8. Your Rights (UK & EEA)
You have the right to:
-
Access the data we hold about you.
-
Request correction, updates, or deletion of your data.
-
Receive a copy of your data (data portability).
-
Object to specific processing, including marketing.
To exercise these rights, contact privacy@herbharmony.co.uk or visit the Shopify Privacy Portal.
9. Cookies
We use cookies to improve your browsing experience.
-
Essential cookies: Enable checkout, login, and basic site functions.
-
Analytics cookies: Track how visitors use the site.
-
Advertising cookies: Enable personalised ads (with consent).
You can manage cookies in your browser settings or visit www.allaboutcookies.org.
Our cookie banner allows you to consent or withdraw consent for analytics and advertising cookies. If consent is not given, your device data will not be used by Shopify Network Intelligence for non-essential purposes.
10. Do Not Track
We do not respond to browser-based Do Not Track signals, but we respect cookie consent choices made on our Site.
11. Changes
We may update this policy to reflect changes to our practices or legal requirements. The most recent version will always be posted here.
12. Contact
For privacy-related questions or complaints:
Herb Harmony
Email: hello@herbharmony.co.uk
Address: 71-75 Shelton Street, Covent Garden, London, WC2H 9JQ, United Kingdom