The Off Grid Shop is the data controller for the personal information we collect through theoffgridshop.co.uk.
[PLACEHOLDER — company name, registration number, registered address, data protection contact email]
We collect the following personal information:
When you place an order: your name, email address, delivery address, billing address, phone number, and payment details (processed securely by Stripe — we do not store your full card number).
When you create an account: your name, email address, and a password (stored encrypted).
When you use our website: we collect technical data including your IP address, browser type, device type, and pages visited. This is collected through cookies and similar technologies.
When you contact us: your name, email address, phone number, and the content of your message.
When you use the design tool: the appliance and system data you enter. This data is used to generate your system design and may be retained to improve the tool.
We use your personal information to:
We will only send you marketing emails if you have opted in at checkout or through our website. You can unsubscribe at any time by clicking the unsubscribe link in any marketing email, or by contacting us directly.
We share your personal information with the following third parties, only to the extent necessary to fulfil your order and operate our business:
We do not sell your personal information to any third party.
Our website uses cookies to:
You can manage your cookie preferences through your browser settings. Disabling cookies may affect the functionality of our website.
[PLACEHOLDER — will need a cookie consent banner and more specific cookie list before launch]
We retain your personal information for as long as necessary to fulfil the purposes described above. Specifically:
Under UK data protection law, you have the right to:
To exercise any of these rights, please contact us at [PLACEHOLDER — data protection email address].
We will respond to your request within 30 days. If we need more time, we will let you know within 30 days and explain why.
[SOLICITOR — Confirm this section meets UK GDPR requirements for informing data subjects of their rights.]
We take appropriate technical and organisational measures to protect your personal information. Payment processing is handled by Stripe, which is PCI DSS compliant. Our website uses HTTPS encryption for all data transmitted between your browser and our servers.
We may update this privacy policy from time to time. The date of the last update is shown at the top of this page. We encourage you to review this policy periodically.
If you have any questions about this privacy policy or how we handle your personal data, please contact us:
If you are not satisfied with our response, you have the right to complain to the Information Commissioner’s Office (ICO): ico.org.uk