Privacy Policy
Cubicle Track Home > Privacy Policy
GDPR Privacy Notice
At Hospital Cubicle Track, a trading name of Haywoods Contracts (from now on referred to as Haywoods in this notice), we use modern methods to store and process your data in order to carry out our services to you, such as quoting, processing and delivering your orders.
We value your business and are deeply committed to looking after your personal and business data. In this privacy notice, we describe where and what types of information we collect, how we keep it safe, how you can request to see the information we hold about you, how you can update this data and how you can make a request to delete this data.
Your personal data includes information such as your name, your email address and postal address. You can use the Discount Electric Curtains website to get prices without giving us any of these details. We will only ask for these details when you place an order, and we only ask for the details needed to process your order.
In a nutshell, Haywoods only collects personally identifiable information that you provide to us, and is only used for the purposes that you provide it to us for. For example, if you give us your email address to send you a quote, we'll only use it to send you that quote, we won't then use your email address to send you offers.
All information we hold is kept securely, be it electronically or physically.
Types of Data We Might Collect and How we Collect It
Website Cookies
A cookie is simply a small piece of information that your computer saves when it visits a website.
Haywoods uses cookies in the following ways:
-
To tie your computer to the items you've worked out prices for and those you've placed into your shopping basket. This is how we know to show everyone only their own items they've priced or added to their shopping basket.
-
For statistical analysis purposes as described below in the Google Analytics section
PLEASE NOTE: A cookie in no way gives us access to your computer or any personal information about you, other than the data you choose to share with us.
Overall, without cookies many websites, including this one, simply wouldn't work properly. They are essential to the modern Internet.
Google Analytics
Our website collects anonymised (ie not personally identifiable) usage information to give us insights such as how many visitors our website receives, how long users spend on a page and how they got there.
We only use this information for statistical analysis purposes and there is no tie back to any personally identifiable details.
Contact Form
The Discount Electric Curtains website also has a contact form. Any information submitted to this is sent to Haywoods Contracts in the form of an email. Any personally identifiable information you submit in here will only be used to fulfil your request, ie to give you a quote or give you a call.
Email Correspondence
Haywoods will only use your information for the reason we tell you we're going to use it. For example, if you give us your name and email address for the express purpose of sending you a quote, we will only use it to send you that quote, we will not then start sending you offers to that email address.
If the email address was written down physically on a notepad at Haywoods it will be destroyed once its purpose has been fulfilled.
Your name and email address will stay in the Haywoods representative's email 'sent items' for future reference, unless you contact us with a data removal request (see below). Similarly, your name and email address may be present.
Online Payments
When you place an order on our website and pay securely online, the page where you input your card details, while it looks like it's within our website, is actually a direct link to our payment processor, Sagepay. (Technically, it uses an i-Frame, with the card input fields served directly from Sagepay over a secure connection.)
Your name, contact details, billing and delivery address (if different) are recorded by Sagepay and are used to carry out fraud checks, such as that the payment card being used is registered to the billing address.
Sage Pay is PCI DSS (Payment Card Industry Data Security Standard) compliant to the highest level and maintains regular security audits. They are also regularly audited by the banks and banking authorities to ensure that their systems are impenetrable.
Haywoods does not store payment card information in any form or at any time when you place your order online.
Card Receipts
When you pay by card over the telephone or in person, the 'card machine' prints two receipts, your customer copy and our merchant copy. The merchant copy is kept in a locked area for up to three months before being destroyed.
Your customer copy is either given to you if you pay in person, or attached to your invoice if you pay over the telephone. In this case, your customer receipt is also kept securely until you receive it. Your customer copy does not have your name or other personal details on, and only the last four digits of your payment card number.
Order Processing
When you place an order with Haywoods on our website, the personal details associated with your order, such as name, email address, telephone number, billing and delivery addresses will be used by us during processing and delivery.
Processing your order sees your data entered into our Sage Accounting software. At all times, your information is only used for the purpose of processing your order.
Delivery Companies
When Haywoods delivers your order, your name, address and contact details are shared with our trusted delivery companies for the sole purpose of delivering your order. These companies have their own commitment to GDPR and securing personal information.
Third Parties
Aside from delivery companies that require your information to deliver your order and Sagepay if you pay online as described above, Haywoods does not share or sell your personal information to any other third parties.
Access Your Personal Information
The General Data Protection Regulations allow individuals to perform a Subject Access Request. Should you need to do this, email gdpr@haywoodscontracts.co.uk
or call 01543 279996 with your request.
If you have emailed us and not heard anything within 5 days, please call us to ensure we've received your request.
Haywoods has 30 days to respond to a legitimate Subject Access Request.
Updating Your Personal Information
Should you wish to update any of the information we hold on you, such as if you move house and need to update your billing or delivery address, or change your telephone number, send an email to gdpr@haywoodscontracts.co.uk
detailing who you are, how we can identify you in the data we hold and which data you would like updating.
Deleting Your Personal Information and the Right to be Forgotten
The General Data Protection Regulations give individuals the right to make a request to have their personal data erased from our systems. Under the GDPR rules, we have 30 days to provide the data to a legitimate erasure request.
Please note we can't comply if the data is still necessary for the purpose in which you gave consent, such as to process an outstanding order.
To submit a “right to be forgotten” request, please email gdpr@haywoodscontracts.co.uk or call 01543 279996.
If you have emailed us and not heard anything within 5 days, please call us to ensure we've received your request.
Changes To This Privacy Notice
This privacy policy was last updated on 10/5/2018 in preparation for the GDPR regulations. We encourage you to periodically review this privacy notice to be informed of how Haywoodsis protecting your information.