Costrick Ltd Privacy Policy

Introduction

Costrick Ltd, a price comparison platform for wholesalers (sellers) and shop owners (buyers), is committed to protecting your privacy. This Privacy Policy explains how we collect, use, and safeguard your personal data when you use our website or mobile application. It also outlines your rights under data protection laws.

Contact Details
Costrick Ltd
6 Ristol Rd, Glasgow G13 1UY
Email: contact@costrick.com

For data protection queries, contact our Data Protection Officer at the above email. You may also lodge complaints with the UK’s Information Commissioner’s Office (www.ico.org.uk), but we encourage you to contact us first.

1. Purpose and Scope

This policy applies to all personal data collected via our website or app, used by wholesalers and shop owners for price comparison, product sourcing, or transactions. It does not cover third-party websites linked from our platform. We do not knowingly collect data from individuals under 16.

2. Data We Collect

We collect the following personal data to facilitate our services:

  • Account Data: Name, email, phone number, business address, and login credentials.
  • Transaction Data: Payment details, purchase history, and product preferences.
  • Technical Data: IP address, device type, browser details, and app identifiers.
  • Usage Data: Interaction with our platform, search history, and preferences.
  • Marketing Data: Opt-in preferences for promotional communications.

We may also process anonymized, aggregated data (e.g., market trends) which is not personal data. Special categories of data (e.g., health, ethnicity) or criminal records are not collected.

3. How We Collect Data

  • Direct Input: When you register, place orders, or contact us.
  • Automated Collection: Via cookies, analytics, and server logs during platform use.
  • Third Parties: From payment processors or business partners, with your consent.

4. How We Use Your Data

We process personal data for:

  • Account setup and management.
  • Processing and fulfilling transactions.
  • Platform security and fraud prevention.
  • Personalized recommendations and price comparisons.
  • Marketing (with consent) and customer support.
  • Legal compliance (e.g., tax obligations).

Legal Bases:

  • Contract: To fulfill agreements (e.g., order processing).
  • Legitimate Interests: To improve services, ensure security, or analyze usage.
  • Consent: For marketing communications.
  • Legal Obligation: For regulatory compliance.

5. Data Sharing

We may share your data with:

  • Service Providers: Payment processors, IT support, and analytics providers.
  • Business Partners: Wholesalers or shop owners for transaction fulfillment.
  • Legal Authorities: If required by law.

All recipients are bound by strict confidentiality and data protection agreements. We do not sell your data.

6. International Data Transfers

Your data is primarily processed within the UK. If transferred outside the UK (e.g., to cloud providers), we ensure compliance with data protection laws through safeguards like Standard Contractual Clauses.

7. Data Security

We implement robust measures (encryption, access controls, and regular audits) to protect your data. In the unlikely event of a breach, we will notify you and regulators as required. We are not liable for consequential losses (e.g., loss of profits) unless mandated by law.

8. Data Retention

We retain data only as long as necessary:

  • Account data: Until account closure, plus 7 years for tax purposes.
  • Transaction data: 7 years for legal compliance.
  • Marketing data: Until you opt out.

You may request deletion of non-essential data at any time.

9. Your Rights

Under UK data protection law, you have the right to:

  • Access your personal data.
  • Correct inaccurate data.
  • Request deletion of data.
  • Restrict or object to data processing.
  • Data portability.
  • Withdraw consent for marketing.

To exercise these rights, email contact@costrick.com. We respond within 30 days, though complex requests may take longer. No fees apply unless requests are excessive. We may verify your identity for security.

10. Marketing and Opt-Out

We may send promotional offers based on your preferences. You can opt out at any time via email or account settings. Transactional communications (e.g., order confirmations) are unaffected.

11. Updates to This Policy

We may update this policy to reflect legal or operational changes. Significant updates will be communicated via email or app notifications. Please keep your contact details current.

12. Glossary

  • Personal Data: Information identifying an individual.
  • Legitimate Interests: Business needs (e.g., improving services) balanced against your rights.
  • Consent: Your explicit agreement to data processing.
  • Data Controller: Costrick Ltd, responsible for your data.

For further details, contact us at contact@costrick.com.