2UDirect Privacy policy - March 2018.

2udirect takes your privacy seriously and will only use your personal information to administer your account and to continue to provide the products and services we currently offer to you.

The Lawful Basis for Processing are

1) Contract, to fulfil contractual obligations.

2) Legal Obligation, to comply with a common law or statutory obligation.

3) Consent, by positive opt in.

 

However from time to time, and subject to your consent, we would like to contact you with details of other or new products and services that we provide. Your consent can be provided in writing by post, email or text.

Personal information may be shared with members of our European group of companies, subject to your consent, but will not be shared for marketing purposes outside of our group.

Personal information may include your full name, email address, contact telephone numbers, details of your employer, additional details to facilitate employment obtained directly or from correspondence which is required for the proper administration and performance of any subsequent contracts / transactions between you / your employer and us.

Personal data that we process for any purpose shall not be retained for longer than necessary; the maximum period will be that required for compliance with legal obligations.

In the future we may update this policy and publish a revised version on our website. Please continue to monitor our website in the future to ensure that you agree with revisions that are made.

You may request us to provide you with any personal information we hold about you subject to supply of appropriate evidence of your identity, justification for the request plus agreement to payment of actual costs incurred to provide this service.

Your principal rights under data protection law are:

(a)          the right to access;

(b)          the right to rectification;

(c)           the right to erasure;

(d)          the right to restrict processing;

(e)          the right to object to processing;

(f)           the right to data portability;

(g)          the right to complain to a supervisory authority; and

(h)          the right to withdraw consent.

In order to validate that data stored electronically is suitably protected, we have successfully passed the assessment and are certificated against the Cyber Essentials Scheme Test Specification. 

 

About cookies

The 2UDirect website uses cookies. Most websites do this. Our cookies are not used to identify you personally, they are used to make the site work better and allow us to analyse how it is being used. You can delete these cookies any time you want, but some aspects of this site may not work correctly without cookies.

A cookie is a file containing an identifier (a string of letters and numbers) that is sent by a web server to a web browser and is stored by the browser. The identifier is then sent back to the server each time the browser requests a page from the server.

Cookies may be either "persistent" cookies or "session" cookies: a persistent cookie will be stored by a web browser and will remain valid until its set expiry date, unless deleted by the user before the expiry date; a session cookie, on the other hand, will expire at the end of the user session, when the web browser is closed.

Cookies do not typically contain any information that personally identifies a user, but personal information that we store about you may be linked to the information stored in and obtained from cookies.

Cookies that we use

Here is a list of cookies that we use. We have listed them here so you that you can choose if you want to opt-out of cookies or not.

 _session_id, unique token, sessional, Allows Shopify to store information about your session (referrer, landing page, etc).

 _shopify_visit, no data held, Persistent for 30 minutes from the last visit, Used by our website provider’s internal stats tracker to record the number of visits

 _shopify_uniq, no data held, expires midnight (relative to the visitor) of the next day, Counts the number of visits to a store by a single customer.

_cart, unique token, persistent for 2 weeks, Stores information about the contents of your cart.

 _secure_session_id, unique token, sessional

 _storefront_digest, unique token, indefinite If the shop has a password, this is used to determine if the current visitor has access.

_PREF, persistent for a very short period, Set by Google and tracks who visits the store and from where

 

Your personal data might be collected and saved by us or 3rd parties, such as fullstory.com. To opt out of these follow the links below where you can view the policies and opt out of recorded sessions.

https://www.fullstory.com/optout/

 

Cookies used by our service providers

Our service providers use cookies and those cookies may be stored on your computer when you visit our website.

We use Google Analytics to analyse the use of our website.

__utma, __utmb, __utmc, __utmv, __utmz       Google Analytics cookies store anonymous visitor information about a visit to the site, such as what time the visit occurred, whether you’ve visited the site before and what site referred you to us. This data is anonymous, so we can’t trace this back to you as individual. The information gathered relating to our website is used to create reports about the use of our website. This information allows us to improve our website, our communications with our customers and to provide high quality service by on providing our visitors information that they’re looking for in a way which is useful to them.

_utmx   Google web optimizer cookie set to improve visitor satisfaction by continually testing different combinations of website content to serve to you. This is an anonymous process, and allows us to continually improve our website by making changes to the look, feel and content.

Google's privacy policy is available at: https://www.google.com/policies/privacy/

_Smartsupp.com, s.r.o., website product and events analytics. The following link is where you can opt out of recorded sessions. https://www.smartlook.com/opt-out

_fullstory.com. browser interaction analytics. The following link is where you can opt out of recorded sessions. https://www.fullstory.com/optout/

Our store is hosted on Shopify Inc. They provide us with the online e-commerce platform that allows us to sell our products and services to you.

Your data is stored through Shopify’s data storage, databases and the general Shopify application. They store your data on a secure server behind a firewall.

Payment:

If you choose a direct payment gateway to complete your purchase, then Shopify stores your credit card data. It is encrypted through the Payment Card Industry Data Security Standard (PCI-DSS). Your purchase transaction data is stored only as long as is necessary to complete your purchase transaction. After that is complete, your purchase transaction information is deleted.

All direct payment gateways adhere to the standards set by PCI-DSS as managed by the PCI Security Standards Council, which is a joint effort of brands like Visa, Mastercard, American Express and Discover.

PCI-DSS requirements help ensure the secure handling of credit card information by our store and its service providers.

For more insight, you may also want to read Shopify’s Terms of Service (https://www.shopify.com/legal/terms) or Privacy Statement (https://www.shopify.com/legal/privacy).

Security:

To protect your personal information, we take reasonable precautions and follow industry best practices to make sure it is not inappropriately lost, misused, accessed, disclosed, altered or destroyed.

If you provide us with your credit card information, the information is encrypted using secure socket layer technology (SSL) and stored with a AES-256 encryption.  Although no method of transmission over the Internet or electronic storage is 100% secure, we follow all PCI-DSS requirements and implement additional generally accepted industry standards.

 

Managing cookies

Most browsers allow you to refuse to accept cookies and to delete cookies. The methods for doing so vary from browser to browser, and from version to version. You can however obtain up-to-date information about blocking and deleting cookies via these links:

(a)       https://support.google.com/chrome/answer/95647?hl=en (Chrome);

(b)       https://support.mozilla.org/en-US/kb/enable-and-disable-cookies-website-preferences (Firefox);

(c)        http://www.opera.com/help/tutorials/security/cookies/ (Opera);

(d)       https://support.microsoft.com/en-gb/help/17442/windows-internet-explorer-delete-manage-cookies (Internet Explorer);

(e)        https://support.apple.com/kb/PH21411 (Safari); and

(f)         https://privacy.microsoft.com/en-us/windows-10-microsoft-edge-and-privacy (Edge).

To learn more about cookies and how to manage them, please visit Aboutcookies.org

Age of concent

By using this website, you represent that you are at least the age of 18.

Blocking all cookies will have a negative impact upon the usability of many websites.

If you block cookies, you will not be able to use all the features on our website.