Privacy Policy
Privacy Policy – BS Fixings
1. Who We Are
BS Fixings is a trading name of BS Stainless Limited ("we", "us", or "our"). This Privacy Policy explains how BS Fixings (operated by BS Stainless Limited) collects, uses, and protects your personal data when you use our website and services.
Legal Entity: BS Stainless Limited (Company No. if applicable)
Registered Office: 360 Leach Place, Walton Summit Centre, Preston, PR5 8AS
General Enquiries: [email protected] | [email protected]
Phone: +44 (0)333 011 7818
Note: For data protection compliance matters, please contact us using the details above. Our Data Protection Compliance contact is Rob Pierce via [email protected].
2. What Data We Collect
- Full name and company name (if applicable)
- Email address and phone number
- Billing and shipping addresses
- Order and payment information (processed via Takepayments)
- IP address, browser, and device type
- Website usage and interaction data (via Google Analytics and Hotjar)
- Live chat and enquiry content
- Marketing preferences
- Feedback and reviews (e.g., via Trustpilot)
3. Data Protection Principles
We process personal data in line with the UK General Data Protection Regulation (UK GDPR) and the Data Protection Act 2018. In accordance with the GDPR principles, we ensure that personal data is:
- Processed lawfully, fairly and transparently
- Collected for specific, explicit and legitimate purposes
- Adequate, relevant and limited to what is necessary
- Accurate and, where necessary, kept up to date
- Kept for no longer than is necessary
- Processed in a manner ensuring appropriate security
- Transferred internationally only in line with GDPR requirements
4. How We Use Your Data & Legal Bases
We rely on the following legal bases: Contract, Legal Obligation, Legitimate Interests, and Consent (where required, e.g., for marketing/analytics cookies).
Purpose | Example Activities | Legal Basis |
---|---|---|
Order Fulfilment | Processing payments; dispatching orders via DHL, DX, Royal Mail | Performance of Contract |
Customer Service | Responding via live chat, phone or email | Performance of Contract / Legitimate Interests |
Deciding who to enter into a contract with | Account checks, fraud screening | Legitimate Interests |
Marketing to Customers | Sending emails about similar products | Legitimate Interests |
Promotional Emails | Campaigns via Mailchimp to opted-in users | Consent |
Website Analytics | Usage tracking with Google Analytics and Hotjar | Legitimate Interests / Consent |
Ad Retargeting | Personalised advertising via Google Ads | Legitimate Interests / Consent |
Product Reviews | Collecting feedback via Trustpilot | Legitimate Interests |
Legal Compliance | Tax, fraud prevention, and record-keeping | Legal Obligation |
Preventing Fraud | Monitoring and detection activities | Legitimate Interests |
You may object to processing based on legitimate interests and withdraw consent where applicable.
5. Cookie Policy
Cookies and Tracking Technologies
We use cookies to enhance your experience, analyse traffic, and deliver personalised content and ads. Cookies help us:
- Remember your preferences and shopping cart contents
- Improve site speed, usability and performance
- Track anonymised user behaviour via Google Analytics and Hotjar
- Serve personalised ads through Google Ads
Cookie Categories We Use:
- Essential Cookies: Required for basic site functionality (e.g., cart, login)
- Performance Cookies: Help us understand how users interact with the site
- Functionality Cookies: Store user preferences to enhance usability
- Targeting/Advertising Cookies: Show ads relevant to your interests
Managing Your Preferences: We use a consent tool powered by CookieYes. You can opt in or out of non-essential cookies using the banner when you visit our website or via the “Cookie Settings” link in the footer at any time.
6. Sharing Your Data
We only share personal data with third-party providers where necessary to deliver our services, improve user experience, or fulfil legal obligations. This includes:
- Couriers (DHL, DX, Royal Mail): To deliver your orders
- Takepayments: Secure payment processing (we do not store card data)
- Mailchimp: Email communications to subscribed users
- Google Ads & Analytics: Site analytics and advertising
- Trustpilot: Inviting purchase review feedback
- Hotjar: UX insights (heatmaps/recordings). Opt out: Hotjar Do Not Track
- Live chat provider: To facilitate real-time support
- Web developers & IT service providers: To maintain and improve our systems
All processors are bound by data processing agreements and access is limited to what is necessary for their role. Where consent is required (e.g., marketing or analytics), we seek and record your preferences.
7. Data Retention Periods
- Customer Data: Account and order information retained for up to 7 years.
- Marketing Data: Retained until you unsubscribe or opt out.
- Recruitment Data: Retained for 6 months.
- CCTV Recordings: Retained for 30 days.
- Analytics Data: Typically retained up to 26 months (anonymised/aggregated where possible).
- Live Chat Records: Stored temporarily for service quality and follow-up, then deleted after a short period unless needed longer for support.
8. Protecting Your Data (Security)
We implement appropriate technical and organisational measures to protect your data against unauthorised access, unlawful processing, accidental loss, destruction or damage.
9. Special Categories of Data
We do not collect or process special category personal data (e.g., health, religious beliefs, ethnicity, political opinions, trade union membership, genetic/biometric data) via our website.
10. Automated Decision-Making
No decisions are made about you solely by automated means that produce legal or similarly significant effects.
11. Your Rights
Under UK GDPR, you have the rights to access, rectify, erase, restrict or object to processing, withdraw consent (where relied upon), and data portability.
12. Making a Request (SAR)
To exercise your rights or make a Subject Access Request, contact us at [email protected] or [email protected].
13. International Transfers
Some providers may process data outside the UK/EEA. Where this occurs, we use appropriate safeguards such as UK/EU Standard Contractual Clauses, adequacy decisions, and additional measures where required.
14. Complaints
If you are unhappy with how we handle your data, please contact us first. You also have the right to lodge a complaint with the UK Information Commissioner’s Office (ICO): Information Commissioner's Office, Wycliffe House, Water Lane, Wilmslow, Cheshire SK9 5AF. Tel: 0303 123 1113 or 01625 545 745.
15. Changes to This Policy
We may update this Privacy Policy periodically. Any material changes will be posted here and dated accordingly.
16. Contact Us
- Email (General & SARs): [email protected] | [email protected]
- Phone: +44 (0)333 011 7818
- Post: BS Fixings, 360 Leach Place, Walton Summit Centre, Preston, PR5 8AS
- Data Protection Compliance Contact: Rob Pierce – [email protected]