PRIVACY POLICY (UK GDPR & EU GDPR COMPLIANT)
2.0 Data Controller Identity
MARKS TWO LTD is the data controller responsible for your personal data.
Registered office: 79 Bowleymead, Swindon, England, SN3 3TE
Email: marek.luptovsky@hotmail.com
We process personal data in compliance with UK GDPR and EU GDPR where applicable.
2.1 Overview
We are committed to protecting your personal data and privacy.
2.2 Data We Collect
We may collect:
- Name
- Billing address
- Shipping address
- Email address
- Phone number
- Payment information
- IP address
- Device information
2.3 How We Use Your Data (GDPR Legal Basis)
We use your personal data only when legally permitted, including:
Contract performance:
- Processing orders
- Delivering products
- Handling returns and refunds
Legitimate interests:
- Fraud prevention
- Website security
- Business analytics
- Improving services
Legal obligations:
- Tax compliance
- Accounting requirements
- Law enforcement requests
Consent:
- Marketing communications
- Cookies where required
We do not sell personal data.
We use your data to:
- Process orders
- Provide customer support
- Improve our services
- Prevent fraud
- Comply with legal obligations
2.4 Legal Basis for Processing
We process personal data under the following lawful bases:
- Contract performance
- Legal obligation
- Legitimate interest
- Consent
2.5 Data Sharing
We may share your data with:
- Payment processors
- Shipping providers
- IT service providers
- Legal authorities when required
We do not sell personal data.
2.6 Data Retention
- 6 years for tax/legal compliance
- Marketing data until consent withdrawal
2.7 Your Rights
You have the right to:
- Access your data
- Correct your data
- Delete your data
- Restrict processing
- Object to processing
- Request data portability
- withdraw consent
- ICO for UK
- local DPA for EU
2.8 Security
We implement appropriate technical and organisational measures to protect your data such as SSL encryption, secure hosting, limited staff access, fraud monitoring.
