What personal information do you collect?
When you use any of our services here at Bluestep, the personal information gathered will be stored on our secure database. Please be assured that we do not share your personal details with any other company without your consent.
Usually if you choose to use our services or visit our website we only collect your personal information in relation to your capacity at the organisation you work for. This would include the following:
- Email address
- Contact Phone number (including mobile number if necessary)
In some situations, it may also be necessary to collect the following information to provide you with our products or services:
- Postal, billing and delivery addresses (if not business address)
- Purchase and order history made by you and your organisation.
The above information is collected directly, for example when placing an order with one of our account managers either over the phone or via email.
Your personal information will also be collected if you use the contact form or live chat facility on our website.
What is the legal basis for processing personal information you collect?
If you are an individual from the European Economic Area (EEA), please note that our legal basis for collecting and using your personal information will depend on the personal information collected and the specific context in which we collect it. We normally will collect personal information from you only where: (a) we have your consent to do so, (b) where we need your personal information to perform a contract with you (e.g. to deliver Bluestep services you have requested), or (c) where the processing is in our legitimate interests. Please note that in most cases, if you do not provide the requested information, Bluestep will not be able to provide the requested service to you.
In some cases, we may also have a legal obligation to collect personal information from you.
Where we rely on your consent to process your personal information, you have the right to withdraw or decline consent at any time. Where we rely on our legitimate interests to process your personal information, you have the right to object.
How long do you keep my personal information for?
We retain personal information we collect from you where we have an ongoing legitimate business need to do so. If you place an order or request a quotation from us we will keep your information for six years – this is so that we are compliant with HMRC Tax regulations.
When we have no ongoing legitimate business need to process your personal information, we will either delete or anonymise it or, if this is not possible (for example, because your personal information has been stored in backup archives), then we will securely store your personal information and isolate it from any further processing until deletion is possible.
Can you remove my personal information?
You can request to have your personal information removed by contacting us and requesting your data be removed. Once you have made a request we then have 28 days to comply. When we have removed your data, we will contact you to confirm that this has been done.
How can I access personal information you hold about me?
We want you to know that you are entitled to view, amend or delete the personal information that we hold anytime. Please email your request to our Office Manager at firstname.lastname@example.org.
How do you secure my personal information?
Bluestep is committed to protecting your personal information. To do so, we employ a variety of security technologies and measures designed to protect information from unauthorized access, use, or disclosure. The measures we use are designed to provide a level of security appropriate to the risk of processing your personal information.
What third parties do you share personal information with?
When processing some of our client orders we may need to share personal information with other organisations, particularly our courier services. We provide them with your contact name and address information for delivery purposes only. They can’t contact you or share your personal information. Below is a list of all the organisations we share data with.
|Organisation||Description||Data we share|
|Speedpack||Packaging and fulfilment||Name
|Live Chat||Interactive online chat provider||Name
|Typeform||Online form provider||Name
|Mailchimp||Email marketing provider||Name
Do you send email marketing?
Bluestep uses email marketing provider MailChimp to manage and send newsletters and other marketing communications.
Should you sign up to our newsletter, the email address you submit will be added to our database on our MailChimp account. This account is password protected and only accessible to approved users within Bluestep.
The following information is stored on our database within MailChimp:
- Email address
- First Name
- Last Name
Bluestep will only use this information for the following reasons:
- Create, send and manage marketing emails, updates and offers
- Measure campaign performance
- Compile reports on marketing activity
You can opt out of our email marketing at any time. Each email we send via MailChimp contains an ‘unsubscribe’ option.
Neither Bluestep nor Mailchimp will share your email address with any other party, unless we are legally obliged to do so.
If you contact Mailchimp directly regarding your subscription to our newsletter, Mailchimp may contact you directly; otherwise, Mailchimp will never contact you.
Do you send email marketing on behalf of anyone else?
As a marketing agency, we sometimes send email marketing as part of the campaigns we run on behalf of our clients.
At present, the third-party email marketing provider we use to do this is MailChimp. The following information is stored within the database(s):
- Email Address
- First Name
In this instance, we act as the data processor, delivering email marketing to the desired audience on behalf of our clients. Bluestep do not store any data on behalf of clients on our company computers or servers. Only in MailChimp is the information stored, in a password protected account.
We only ever access the data held within the account when we are requested to make changes by our client known, they are the Data Controller.
You can opt out of email marketing at any time. Each email we send via MailChimp contains an ‘unsubscribe’ option.
- Google Analytics
- Live Chat
What is Google Analytics?
What is Typeform?
What is Live Chat?
When do you update this policy?
Bluestep review our policies and make changes as and when required. This policy was last reviewed on 2018-05-10.
What if I have more questions?
Please email your request to our Office Manager at email@example.com.
|Reviewed by||Carlene Macfarlane|
|Next review date||2019-05-10|
|Version||Description of Version||Date Completed|
|1.0||Completely new document to comply with changes to data protection law, GDPR.||10-05-2018|