Sessùn's Privacy and Personal Data Processing Policy

 

1. Important information about this Privacy Policy

This privacy policy applies to Sessùn Ltd (“we”, “us”, “our”), a company registered in England and Wales under company number 11950028. Our registered office is at Becket House c/o CCFGB, 1 Lambeth Palace Road, London SE1 7EU, England. To contact us, please send an email to: hello@sessun.com

We are committed to safeguarding the privacy of our website visitors, customers and all those whose data we process. We may collect personal data about you via our website https://www.sessun.co.uk (the “Site”), stores or sales department.

This policy applies where we are acting as a “data controller” with respect to the personal data of such persons; in other words, where we determine the purposes and means of the processing of that personal data.

This Site is not intended for children and we do not knowingly collect data relating to children.

This Site may include links to third-party websites, plug-ins and applications. Clicking on those links or enabling those connections may allow third parties to collect or share data about you. We do not control these third-party websites and are not responsible for their privacy statements. When you leave our website, we encourage you to read the privacy policy of every website you visit.

You have the right to make a complaint at any time to the Information Commissioner's Office (ICO), the UK regulator for data protection issues (www.ico.org.uk). We would, however, appreciate the chance to deal with your concerns before you approach the ICO so please contact us in the first instance.

We keep our privacy policy under regular review. This version was last updated on 6th December 2023.

2. What information do we collect about you?

Personal data, or personal information, means any information about an individual from which that person can be identified. It does not include data where the identity has been removed (anonymous data).

We may collect, use, store and transfer different kinds of personal data about you which we have grouped together as follows:

Identity Data includes first name, last name, marital status, title, date of birth and gender. Contact Data includes billing address, delivery address, email address and telephone numbers. Financial Data includes bank account and payment card details.

Transaction Data includes details about payments to and from you and other details of products and services you have purchased from us.

Technical Data includes internet protocol (IP) address, your login data, browser type and version, time zone setting and location, browser plug-in types and versions, operating system and platform, and other technology on the devices you use to access this Site.

Profile Data includes your username and password, purchases or orders made by you, your interests, preferences, feedback and survey responses.

Usage Data includes information about how you use our website, products and services.

Marketing and Communications Data includes your preferences in receiving marketing from us and our third parties and your communication preferences.

We also collect, use and share Aggregated Data such as statistical or demographic data for any purpose. Aggregated Data could be derived from your personal data but is not considered personal data in law as this data will not directly or indirectly reveal your identity. For example, we may aggregate your Usage Data to calculate the percentage of users accessing a specific website feature. However, if we combine or connect Aggregated Data with your personal data so that it can directly or indirectly identify you, we treat the combined data as personal data which will be used in accordance with this privacy policy.

We do not collect any Special Categories of Personal Data about you (this includes details about your race or ethnicity, religious or philosophical beliefs, sex life, sexual orientation, political opinions, trade union membership, information about your health, and genetic and biometric data). Nor do we collect any information about criminal convictions and offences.

3. How is your personal data collected?

We may collect your personal data in several ways:

(a) When you create your customer account, online or via our sales department.
(b) When you place an order.
(c) When you contact customer service, e.g. to give us feedback or regarding a complaint.
(d) While you are browsing and using this website, through the use of cookies such as Google Analytics.
(e) When you subscribe to the Sessùn Newsletter.
(f) When you request marketing to be sent to you.
(g) When you interact with our Site, we will automatically collect Technical Data about your equipment, browsing actions and patterns. We collect this personal data by using cookies, server logs and/or other similar technologies.

4. Why do we collect personal information and how is it used?

We may collect, store and process your personal data and combine it with other personal data that you may have previously provided through other means, strictly for the following purposes:

(a) To communicate with users of the Site.
(b) To fulfil a customer's order and manage customer contact.
(c) To carry out market research by email and on social networks.
(d) To inform customers about our products and services and personalise the products offered on social networks.
(e) To analyse the visitor traffic on our Site.

The processing of your personal data is carried out for the following purposes:

(a) For the fulfilment of orders and the management of the customer relationship (placing an order, purchasing, exercising your right of withdrawal, processing your complaints etc).
(b) For the fulfilment of pre-contractual measures taken at your request (creation of a customer account).
(c) For the performance of our contract with you
(d) For our legitimate interest (for traffic analysis and market research, to keep our records updated and to study how customers use our products/services, to recover debts due to us, to keep our website updated and relevant, to develop our business and to inform our marketing strategy).

Your personal data is required for the communication, conclusion and/or fulfilment of any contracts with you.

Any personal data required in this respect is marked with an asterisk next to the type of data concerned when creating a customer account and placing an order. Failure to provide the required data will prevent us from communicating with you or concluding the contract.

We will only use your personal data for the purposes for which we collected it, unless we reasonably consider that we need to use it for another reason and that reason is compatible with the original purpose. If you wish to get an explanation as to how the processing for the new purpose is compatible with the original purpose, please contact us.

If we need to use your personal data for an unrelated purpose, we will notify you and we will explain the legal basis which allows us to do so.

Please note that we may process your personal data without your knowledge or consent, in compliance with the above rules, where this is required or permitted by law.

5. Disclosures of personal data

We may share your personal data with the parties set out below:

(a) The authorised staff of the marketing department, the sales department, the departments responsible for handling customer relations and market research, the administrative departments, the logistics and IT departments as well as their line managers.
(b) The authorised staff of the departments involved in control (auditors, departments responsible for internal control procedures, etc.).
(c) The subcontractors ' authorised personnel whenever the contract signed between the subcontractors and Sessùn specifies the obligations of the subcontractors with regard to protecting the security and confidentiality of data, together with the security objectives to be fulfilled.

We require all third parties to respect the security of your personal data and to treat it in accordance with the law. We do not allow our third-party service providers to use your personal data for their own purposes and only permit them to process your personal data for specified purposes and in accordance with our instructions.

6. How long do we keep your information for?

We will only retain your personal data for as long as reasonably necessary to fulfil the purposes we collected it for, including for the purposes of satisfying any legal, regulatory, tax, accounting or reporting requirements. We may retain your personal data for a longer period in the event of a complaint or if we reasonably believe there is a prospect of litigation in respect to our relationship with you.

To determine the appropriate retention period for personal data, we consider the amount, nature and sensitivity of the personal data, the potential risk of harm from unauthorised use or disclosure of your personal data, the purposes for which we process your personal data and whether we can achieve those purposes through other means, and the applicable legal, regulatory, tax, accounting or other requirements.

The personal data collected is kept for the following periods of time:

(a) Customers who are physical persons: 6 years following the expiry of the contractual relationship with the customer in question.
(b) Prospective customers: 3 years from the date of collection or our last communication with you.
(c) Browsing data and website use: the IP address identified by the Google Analytics cookie is stored for a period of 38 months from the time the cookie is stored.

7. Cookies Policy

Our website https://www.sessun.co.uk (“Site”) uses cookies to distinguish you from other users of our website. This helps us to provide you with a good experience when you browse our website and also allows us to improve our Site.

7.1 What is a cookie?

A cookie is a small text file stored by your web browser on your computer, tablet or mobile device. Some cookies are essential for a website to work and help us provide you with relevant information. They also allow us to recognise your computer (but not specifically who is using it) when you access our site and to improve the usability and performance of our site. Some cookies are used to store user data in order to make browsing easier and to enable certain functions.

7.2 What do we use cookies for?

When you use our website, information about your browsing habits may be stored in files known as cookies. We use cookies to compile anonymous, aggregated statistics that allow us to understand how people use our Site and to help us improve their structure and content. We cannot identify you personally from this information.

We use different types of cookies:

  • Strictly necessary cookies: These cookies are necessary for the website to function and cannot be deactivated in our systems. They are generally set up in response to your actions requesting services, such as setting your privacy preferences, logging in or filling in forms. They include, for example, cookies that enable you to log into secure areas of our website, use a shopping cart or make use of e-billing services. You can configure your browser to block or be informed of the existence of these cookies, but certain parts of the website may be affected. These cookies do not store any personally identifying information.
  • Analytical/performance cookies: These cookies enable us to measure the number of visits, to see how visitors move around our website when using it, and to see the sources of traffic so that we can measure and improve our Site's performance. They also help us to identify the most and least visited pages and to assess how visitors navigate the website. All the information collected by these cookies is aggregated and therefore anonymised. If you do not accept these cookies, we will not be informed of your visit to our site.
  • Functionality cookies: These cookies are used to recognise you when you return to our Site. This enables us to personalise our content for you, greet you by name and remember your preferences (for example, your choice of language or country).
  • Targeting cookies: These cookies record your visit to our website, the pages you have visited and the links you have followed. They may be set on our website by our advertising partners. They may be used by these companies to establish a profile of your interests and to offer you relevant advertising on other websites. They do not store personal data directly, but are based on the unique identification of your browser and internet device. If you do not authorise these cookies, your advertising will be less targeted.
7.3 Turning off and deleting cookies

When you visit our Site, we’ll give you the opportunity to accept or reject cookies, or manage which types you will allow (except for essential cookies). You can also refuse cookies by activating the relevant settings on your browser.

If you use different devices to view and access our sites (for example, your computer, smart phone, tablet) you’ll need to ensure that each browser on each device is adjusted to suit your cookie preferences.

If you disable cookies, this may negatively impact upon your experience and you may be unable to access certain parts of the site.

Cookies may only be deposited with your prior consent. You can configure your cookie settings at any time using our cookie configuration tool, which is available by clicking on the link in our website footer or directly on your browser by clicking on the links below.

  • Internet Explorer : https://support.microsoft.com/en-us/windows/delete-and-manage-cookies-168dab11-0753-043d-7c16-ede5947fc64d
  • Safari : https://support.apple.com/en-us/HT201265
  • Chrome : https://support.google.com/chrome/answer/95647?hl=en&hlrm=fr&hlrm=en&sjid=3964142418551235003-EU
  • Firefox : https://support.mozilla.org/en-US/kb/cookies-information-websites-store-on-your-computer
7.4. More information

For more detailed information about cookies and how to control them please visit https://allaboutcookies.org/

7.5. Changes to this policy

We may revise this cookies policy from time to time. Any changes we may make to our cookies notice in the future will be posted on this page.

8. Your legal rights

In accordance with the applicable regulations, you may, at any time, request information on your personal data held by Sessùn, request its correction if it is inaccurate or incomplete and its deletion or restrictions on its processing, if applicable, by writing to hello@sessun.com.

In this section, we have listed the rights that you have under data protection law.

Your principal rights under data protection law are:

(a) the right to access - you can ask for copies of your personal data;
(b) the right to rectification - you can ask us to rectify inaccurate personal data and to complete incomplete personal data;
(c) the right to erasure - you can ask us to erase your personal data;
(d) the right to restrict processing - you can ask us to restrict the processing of your personal data;
(e) the right to object to processing - you can object to the processing of your personal data;
(f) the right to data portability - you can ask that we transfer your personal data to another organisation or to you;
(g) the right to complain to a supervisory authority - you can complain about our processing of your personal data; and
(h) the right to withdraw consent - to the extent that the legal basis of our processing of your personal data is consent, you can withdraw that consent.

These rights are subject to certain limitations and exceptions. You can learn more about the rights of data subjects by visiting https://ico.org.uk/for-organisations/guide-to-data-protection/guide-to-the-general-data-protection-regulation-gdpr/individual-rights/.

You may exercise any of your rights in relation to your personal data by written notice to us.

You will not have to pay a fee to access your personal data (or to exercise any of the other rights). However, we may charge a reasonable fee if your request is clearly unfounded, repetitive or excessive. Alternatively, we could refuse to comply with your request in these circumstances.

You can also provide Sessùn with instructions on storing, deleting and transmitting your data after your death, which can also be registered with a "certified and trusted digital third party". These instructions, considered as a form of a "digital will", may specify a person to implement them; otherwise, the person's heirs will be deemed responsible.