GDPR Compliance
We are committed to protecting your personal data and respecting your privacy in compliance with the General Data Protection Regulation (GDPR). This policy explains how we collect, use, and safeguard your information when you use our website and services in the UK.
When We Collect Personal Data
- When you register for an account on our website
- When you place an order and provide billing/shipping details
- When you make payments and provide bank or card details
- When you contact us for support or inquiries
- When you subscribe to newsletters or marketing updates
Types of Personal Data We Collect
The types of information we may collect include:
- Full name, billing and shipping addresses
- Email address and phone number
- Bank details and payment card information (processed securely via third-party providers)
- Order history and transaction details
- Technical data such as IP address, browser type, and device information
Why We Collect and Use Your Data
We process your personal data for the following purposes:
- To process and deliver your orders
- To verify payments and prevent fraud
- To communicate with you regarding purchases, services, and support
- To comply with legal and regulatory requirements
- To send you marketing updates (if you have consented)
Cookies and Tracking Technologies
We use cookies to improve your browsing experience and ensure the website functions properly. Cookies are small files stored on your device that help us understand how you use our site.
Types of cookies we use:
- Strictly Necessary Cookies: Required for the website to function, e.g., login, cart management.
- Performance Cookies: Collect anonymous data on how visitors use our website, helping us improve user experience.
- Functional Cookies: Remember your preferences, such as language or region.
- Analytics & Marketing Cookies: (e.g., Google Analytics) Help us understand user behaviour and deliver relevant ads.
You can control or delete cookies through your browser settings. However, some site features may not function correctly if cookies are disabled.
How Long We Keep Your Data
We retain personal data only for as long as necessary to fulfil the purposes outlined in this policy, comply with legal obligations, resolve disputes, and enforce agreements. Financial data required by law may be retained for up to 6 years.
Your Rights Under GDPR
You have the right to:
- Access the personal data we hold about you
- Request correction of inaccurate or incomplete data
- Request deletion of your personal data (where legally possible)
- Restrict or object to processing of your data
- Request transfer of your data to another service provider
- Withdraw consent for marketing communications at any time
To exercise your rights, please contact us at: privacy@fortuneflog.com.
Data Security
We implement appropriate technical and organisational measures to protect your personal data against unauthorised access, loss, or misuse. Payment information is processed securely using industry-standard encryption.
Third-Party Services
We may share your personal data with trusted third-party providers such as payment gateways, courier companies, and analytics services, but only as necessary to deliver our services. These third parties are required to keep your information secure and process it under GDPR compliance.
Changes to This Privacy Policy
We may update this policy from time to time to reflect changes in our business practices, legal requirements, or service improvements. Updates will be published on this page with a revised "last updated" date.