1. Introduction
CitaVital is committed to protecting your privacy. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you visit our website or purchase our products. Please read this policy carefully.
2. Information We Collect
We may collect the following types of information:
- Personal Information: Name, email address, phone number, and postal address when you contact us or place an order.
- Payment Information: Payment details processed securely through our payment processors.
- Usage Data: Information about how you use our website, including IP address, browser type, pages visited, and time spent on pages.
- Cookies: Data collected through cookies and similar technologies. See our Cookie Policy for details.
3. How We Use Your Information
We use the information we collect to:
- Process and fulfill your orders
- Communicate with you about your orders and inquiries
- Send you marketing communications if you have opted in
- Improve our website and customer service
- Comply with legal obligations
- Prevent fraud and enhance security
4. Legal Basis for Processing
Under UK GDPR, we process your personal data based on:
- Contract Performance: Processing necessary to fulfill our contract with you
- Consent: When you have given explicit consent for specific purposes
- Legitimate Interests: For business operations, fraud prevention, and improving our services
- Legal Obligation: To comply with applicable laws and regulations
5. Information Sharing and Disclosure
We do not sell your personal information. We may share your information with:
- Service Providers: Third-party companies that help us operate our business, such as payment processors, shipping companies, and email service providers
- Legal Requirements: When required by law or to protect our rights
- Business Transfers: In connection with a merger, sale, or acquisition
6. Data Security
We implement appropriate technical and organizational measures to protect your personal information against unauthorized access, alteration, disclosure, or destruction. However, no method of transmission over the internet is completely secure.
7. Your Rights
Under UK GDPR, you have the following rights:
- Right to Access: Request a copy of your personal data
- Right to Rectification: Correct inaccurate or incomplete data
- Right to Erasure: Request deletion of your personal data
- Right to Restrict Processing: Limit how we use your data
- Right to Data Portability: Receive your data in a portable format
- Right to Object: Object to processing based on legitimate interests
- Right to Withdraw Consent: Withdraw consent at any time
To exercise these rights, please contact us at [email protected].
8. Data Retention
We retain your personal information only for as long as necessary to fulfill the purposes outlined in this Privacy Policy, comply with legal obligations, resolve disputes, and enforce our agreements.
9. International Data Transfers
We primarily operate within the United Kingdom. If we transfer data outside the UK, we ensure appropriate safeguards are in place to protect your information in accordance with UK GDPR requirements.
10. Children's Privacy
Our website and products are not intended for individuals under 18 years of age. We do not knowingly collect personal information from children.
11. Changes to This Policy
We may update this Privacy Policy from time to time. The updated version will be indicated by an updated "Last Updated" date. We encourage you to review this policy periodically.
12. Contact Us
If you have questions or concerns about this Privacy Policy, please contact us:
CitaVital
36 Market Place, Kettering NN16 0AJ, United Kingdom
Phone: +44 1536 824 951
Email: [email protected]
13. Supervisory Authority
If you believe we have not addressed your concerns adequately, you have the right to lodge a complaint with the Information Commissioner's Office (ICO), the UK supervisory authority for data protection issues.