Privacy Policy

Privacy Policy

Welcome to the privacy statement RallyRaiduk.

RallyRaiduk respects your privacy and is committed to protecting your personal data. This privacy statement explains how we handle your personal data if you:

  • visit our website (regardless of where you access the website from);

as well as your privacy rights and how you are protected by the law.

You are also requested to refer to the glossary to understand the meaning of some terms used in this privacy statement.

  1. Important information and who we are

THE PURPOSE OF THIS PRIVACY STATEMENT

This privacy statement is intended to provide you with information about how RallyRaiduk collects and processes your personal data in connection with your use of this website, including data you provide through these channels when you purchase a product or service.

This website is not intended for children and we do not knowingly collect data relating to children.

It is important that you read this privacy statement, as well as any other privacy statement or fair processing statement that we may provide to you in certain instances when we are collecting or processing your personal data, so that you are fully aware of how and why we are using your data . This privacy statement supplements other statements and does not affect the validity of these statements.

Controller

RallyRaiduk

RallyRaiduk is the controller of your personal data (collectively referred to as RallyRaiduk, “we”, “us” or “our” in this privacy statement).

We have established a GDPR team (AVG team) that is responsible for overseeing questions related to this privacy statement. If you have any questions regarding this privacy statement, please contact the GDPR team using the contact details below. Our GDPR team will be happy to assist you with any questions you may have.

CONTACT DETAILS

Our full contact details are:

Legal entity: RallyRaiduk

Contact person: GDPR Team

Unit 2 Nearbank Ind Est
Nearbank
Shelley
Huddersfield
England
HD8 8LS
United Kingdom

Email: [email protected]

CHANGES TO THE PRIVACY STATEMENT AND YOUR DUTY TO NOTIFY US OF CHANGES

This version was last updated on April 22, 2022.

It is important that the personal data we hold about you is correct and up to date. You are requested to inform us of any changes to your personal data during your relationship with us. You can update your information at any time by updating your personal information in the “Your Information” section within “My Account” on Rallyraid.co.uk.

LINKS TO THIRD PARTIES

This website may contain links to third party websites, plug-ins and applications. Clicking on these links or enabling these connections may allow third parties to collect or share information about you. We have no control over such third party websites and are not responsible for their privacy policies. When you leave our website, we recommend that you consult the privacy statement of every website you visit.

  1. The data we collect about you

Personal data, or personal data, means any information about an individual from which that person can be identified. This does not include data from which the identification option has been removed (anonymous data).

We have grouped the different types of personal data that we may collect, use, store and transfer about you as follows:

  • Identity data includes your first name, maiden name, last name, username or similar identifier, gender, marital status, title, date of birth, email address.
  • Contact information includes your billing address, shipping address, email address and phone number.
  • Financial information includes your bank account information and debit card information.
  • Transaction data includes data about payments made by and to you, as well as other data about products and services that you have purchased from us.
  • Technical data includes your IP address (Internet Protocol address), login data, browser type and version, time zone and location settings, browser plug-in types and versions, operating system and platform, cookie IDs, web log data, identifiers of your device and other technologies on the devices you use to visit this website.
  • Profile data includes your username and password, purchases or orders you have made, your interests, preferences, feedback, and survey responses.
  • Usage Data includes information about how you use our website, products and services, your browsing activities including intended purchases and unchecked shopping carts, filling out questionnaires, wish lists, connection information and statistics related to your visit to the site and the pages you view, the links you click and other actions you take regarding our services and our advertising or email content, and your participation in advertising activities. Marketing and Communications data includes your preferences regarding receiving marketing messages from us and our partners and your communication preferences.

We also collect, use and share aggregated data, such as statistical or demographic data for a variety of purposes. Aggregated data may be derived from your personal data, but is not considered as such by law as this data does not or does not directly reveal your identity. For example, we may aggregate your usage data to calculate the percentage of users who visit a specific part of the website. However, if we combine or link aggregated data with your personal data by which you can be directly or indirectly identified, we treat the combined data as personal data that will be processed in accordance with this privacy statement.

We do not collect any special categories of personal data about you (this includes information about your race or ethnicity, your religious or philosophical beliefs, your sex life, your sexual orientation, your political views, your trade union membership, information about your health, and genetic and biometric data) . Nor do we collect data on criminal convictions and offences.

IF YOU REFUSE TO PROVIDE YOUR PERSONAL DATA

Where we are required to collect personal information about you by law or an agreement we have with you, and you fail to provide this information to us when we request it, we may not be able to fulfill the agreement we have with you. entered into, or seek to enter into, to perform (this includes providing you with products or services). In some cases, we may be forced to cancel a product or service that you purchase from us. However, we will inform you of this in that case.

  1. How we collect your personal data

We acquire, process and retain your personal data, as well as personal information about devices you use to navigate to rallyraid.co.uk on your computer or mobile, that you provide to us by doing business with us, create an account with us or otherwise contact us.

Third parties or publicly available sources.

We may receive your personal data from various third parties as listed below:
Technical data from the following parties:
(a) web analytics providers such as Google Analytics and Google DoubleClick located outside the EU;
(b) advertising networks and Google Display Network, which is located outside the EU;
(c) social network providers such as Facebook, which is located outside the EU;
Contact, financial and transaction details of technical, payment and delivery service providers such as PayPal, which is located outside the EU;
Identity and contact details of data traders or trade information agencies such as Experian, which is based in the EU;
Identity and contact details of publicly accessible sources such as the Trade Register, located in the EU.

  • Direct interactions. You may provide us with your identity, contact and financial information by filling in forms, or by communicating with us by post, telephone, email or otherwise. This includes personal data you provide to us when you:
    • purchase our products or register for our services through the website;
    • create an account on our website;
    • sign up for our services or publications;
    • contact our customer service;
    • give us feedback.
  • Automated technologies or interactions. When you browse our website, we may automatically collect technical information about your equipment, browsing activities and patterns. We use this personal data by using cookies, server logs and other similar technologies. These machine learning algorithms generate content that they use to personalize your user experience, selecting in particular those items you are interested in, as well as to support the overall optimization of the service, including the automation of bids/price reductions . We may also receive technical data about you if you visit other websites that use our cookies. Please refer to our cookie policy (see below) for more information.

We may allow you to share information with social media sites, or use social media sites to create your account or link your account to the relevant social media site. These social media sites may automatically provide us with access to certain personal information they hold about you (e.g., content you have viewed, content you have liked, and information regarding the advertisements you have been shown or may have clicked on). Where we receive such information, we will use this information to further personalize your user experience with rallyraid.co.uk

  • Third parties or publicly available sources. We may receive your personal data from various third parties as listed below:
    Technical data from the following parties:
    (a) web analytics providers such as Google Analytics and Google DoubleClick located outside the EU;
    (b) advertising networks located in the EU, and Google Display Network, located outside the EU;
    (c) social network providers such as Facebook, which is located outside the EU;
    Contact, financial and transaction details of technical, payment and delivery service providers such as PayPal, which is located outside the EU;
    Identity and contact details of data traders or trade information agencies such as Experian, which is based in the EU;
    Identity and contact details of publicly accessible sources such as the Trade Register and the Electoral Register, located in the EU.
  1. How we use your personal data

We will only use your personal data if permitted by law. We will generally use your personal data in the following situations:

  • where we need to perform the agreement that we have concluded or are about to enter into with you;
  • where it is necessary for our legitimate interests (or those of a third party) and your interests and fundamental rights do not override those interests;
  • where we are required to comply with legal or regulatory obligations.

See point 5 below to learn more about the legal grounds we rely on when processing your personal data.

In general, we do not rely on consent as the legal basis for processing your personal data, except in connection with direct marketing communications from third parties that we send to you via email or text message. You have the right to withdraw your consent to marketing messages at any time by going to your account “My Account” or sending us an email.

We may contact you by email, telephone, text message, or SMS in connection with managing your account or executing the agreement we have with you, including:

  • fulfilling our delivery obligation, where we need additional information from you;
  • providing you with updates in connection with your account, order or delivery;
  • if you have not used your account within a period of twelve months, we would like to give you the opportunity to keep your account activated. If necessary, we can remind you of the major benefits that you may miss out on. If we do not receive a message from you after three email reminders, we will take steps to deactivate your account.
  1. Purposes for which we use your personal data

We have set out below in a table format a description of all the ways in which we intend to use your personal data, as well as the legal bases on which we rely. We have also identified our legitimate interests, where applicable.

In general, we use the personal data we collect to help rallyraid.co.uk better understand you and allow us to personalize your experience with rallyraid.co.uk, including offers, promotions and services that are tailored to your needs. We use your information to:

  • personalize our services, offers and promotions that we present to you and to provide you with a personalized user experience on our websites;
  • manage your online account;
  • process your online orders;
  • provide you with content on the website related to items that you may find interesting and to remember your shopping cart;
  • to contact you in connection with your account and to notify you of important changes at rallyraid.co.uk;
  • provide, develop and improve our products and services;
  • provide you with customer service;
  • verify and verify your identity, and to prevent, mitigate, detect and investigate criminal, fraudulent or illegal activities;
  • process purchases, payments, and orders and provide proper customer service.

Please note that we may process your personal data on multiple legal grounds, depending on the specific purposes for which we use your data.

Purpose/Activity

 Type of data

Legal basis for processing including legitimate interest

To register as a new customer

(a) Identity data
(b) Contact data
(c) Special categories of personal data*

(a) Execution of an agreement concluded with you
(b) *Consent (only for Healthbox users)

To process and deliver your order including:
(a) managing payments, fees and charges
(b) collecting and recovering money owed to us

(a) Identity data
(b) Contact data
(c) Financial data
(d) Transaction data
(e) Marketing and Communications

(a) Performance of a contract with you
(b) Necessary for our legitimate interests (to collect debts)

To manage our relationship with you, including:
(a) notifying you of changes to our terms and conditions or our privacy policy
(b) asking you to write a review or participate in a survey

(a) Identity Information
(b) Contact Information
(c) Profile Information
(d) Marketing and Communications

(a) Performing a contract with you
(b) Necessary to comply with a legal obligation
(c) Necessary for our legitimate interests (to keep our records up to date and to study how customers use our products/services)

     

To administer and protect our business and this website (including troubleshooting, data analysis, testing, system maintenance, support, reporting and hosting of data) and to prevent, detect, mitigate and mitigate fraudulent or illegal activities to investigate

(a) Identity data
(b) Contact data
(c) Technical data
(d) Financial data
(e) Usage data

(a) Necessary for our legitimate interests (to operate our business, provide administrative and IT services, network security, fraud prevention and in the context of a business reorganization or group restructuring)
(b) Necessary to comply with a legal obligation

To provide you with relevant website content and advertisements and to determine or understand their effectiveness

(a) Identity data
(b) Contact data
(c) Profile data
(d) Usage data
(e) Marketing and Communications
(f) Technical data

Necessary for our legitimate interests (to study how customers use our products/services, develop them, grow our business and determine our marketing strategy)

To perform web analytics for the purpose of improving our website, products/services, marketing communications, customer relationships and experiences

(a) Technical data
(b) Usage data

Necessary for our legitimate interests (to define customer types for our products and services, to keep our website current and relevant, to develop our business and define our marketing strategy)

To make suggestions and recommendations about products or services that may be of interest to you

(a) Identity data
(b) Contact data
(c) Technical data
(d) Usage data
(e) Profile data
(f) *Special categories of personal data

(a) Necessary for our legitimate interests (to develop our products/services and grow our business)
(b) In limited circumstances, our actions are based on consent (see “Marketing Communications from Us”, below)

MARKETING

We strive to provide you with choice regarding the use of your personal data for certain purposes, in particular marketing and advertising. You can view or modify to a limited extent the use of your personal data at any time in your account, by emailing, or by contacting customer service.

Summarizing:

  • change your preferences under the heading “Your details” of “My account” on the website;
  • click the “unsubscribe” link at the bottom of each of our emails to unsubscribe from email communications;
  • send a letter to Rallyraid.co.uk, Unit 2 Nearbank Ind Est
    Nearbank
    Shelley
    Huddersfield
    England
    HD8 8LS
    United Kingdom
  • or send an email to [email protected]

ADVERTISING OFFERS FROM US

We may use your identity, contact, technical, usage and profile information to help us understand what we think you may need or find interesting. In this way we decide which products, services and offers may be relevant to you (we call this marketing).

MARKETING COMMUNICATIONS FROM US

In general, you will receive marketing communications from us via email, text message, SMS, or social media, where you have requested information from us, purchased products or services from us, provided us with your details when you entered a competition , or you have registered for an offer and, in each case, you have not opted out of such marketing.

rallyraid.co.ukis committed to eventually converting the legal basis of its email marketing communications to “customer consent.” To achieve this we will gradually shift our legal basis for processing to consent and we will do this in a number of ways over time, depending on how you interact with us and whether you are a new customer or an existing customer or user of rallyraid.co.uk’s products or services.

THIRD PARTY MARKETING

We will ask for your explicit consent before sharing your personal data for marketing purposes with any company that is not part of the rallyraid.co.uk Group.

THIRD PARTY COOKIES FOR RETARGETING

We maintain relationships with carefully selected third parties who may also place cookies during your visit for remarketing purposes – in other words, to show you other products and services based on what appears to be your interests. This type of advertising aims to select products based on what you view on rallyraid.co.uk, which are then served to you by our partners when you visit certain other websites. The ads may draw attention to products that you have viewed, as well as other designs and colors, or to products of other categories that are deemed relevant based on your browsing history. The technology behind these advertisements is based on cookies.

Disable these ads.
We would like to continue to provide you with relevant content. However, you can choose to opt out of this type of advertising by permanently deleting our cookies. Please note that if you delete your cookies, we will no longer know that you have unsubscribed, and the banners will occasionally reappear when you visit certain websites.

You can use your web browser to:

  • delete all cookies;
  • block all cookies;
  • allow all cookies;
  • block third party cookies;
  • delete all cookies when you close the browser;
  • “Browse privately” / open an “incognito session”, which allows you to browse the Internet without saving local data;
  • install add-ons and plug-ins to extend the functionality of the browser.

For more information on how to manage cookies, please see our Cookie Policy below.

PUBLIC FORA

Our website features publicly accessible blogs, community forums, or reviews. You should be aware that any information you provide on these blogs, forums or reviews may be read, collected and used by other people on the website.

SIGN OUT

You can ask us or third parties to stop sending you marketing messages at any time by logging into the website and checking or unchecking the appropriate boxes in My Account to adjust your marketing preferences, or by following the unsubscribe links provided. are contained in every marketing message sent to you.

THE RIGHT TO OBJECT TO PROFILING

Where we process personal data related to your interaction (transactions, site visits, use of the app) with rallyraid.co.uk, in order to allow us to personalize your user experience with rallyraid.co.uk. This processing activity consists of profiling under the GDPR and we process your personal data in this way, as it is our legitimate interest to provide you with a personalized user experience on our websites and to provide you with personalized advertising and marketing messages.

You have the right to object to the way in which your personal data is processed, including your right to object to profiling as set out in this privacy statement. More information about this right to object and how you can exercise this right can be found in section 9. Your rights of this privacy statement.

In our view, profiling is a useful service, giving you easier and faster access to products, services and offers that are more specifically tailored to your interests. However, we respect the fact that not everyone shares this view and will be sorry to see you go.

COOKIES

You can set your browser to refuse cookies. If you disable or block cookies, please note that some parts of this website may become inaccessible or not function properly. For more information about the cookies we use, please refer to the Cookie Policy below.

CHANGE OF PURPOSES

We will only use your personal data for the purposes for which we collected it, unless we reasonably believe that we need to use your data for another reason and that reason is compatible with the original purpose.

If we need to use your personal data for an unrelated purpose, we will notify you and provide you with an explanation of the legal basis on which we rely.

Please note that we may process your personal data without your knowledge or consent, in accordance with the rules above, where required or permitted by law.

  1. Disclosure of data

We may be required to share your personal data with the parties listed below for the purposes set out in the table in section 4 above.

  • Internal third parties as listed in the Glossary.
  • Third Party Third Parties as listed in the Glossary.
  • Third parties to whom we decide to sell or transfer parts of our business or our assets, or with whom we decide to merge those parts. Conversely, we could also decide to purchase or merge other companies. If there is a change in control of our business, the new owners may use your personal data in the same way as stated in this privacy statement.

We require all third parties to respect the security of your personal data and to handle it in accordance with the law. We do not allow our third party service providers to use your personal data for their own purposes and only authorize them to process your personal data for specified purposes and in accordance with our instructions.

  1. International data transfer

Many of our external third parties are located outside the European Economic Area (EEA), so their processing of your personal data involves a data transfer outside the EEA.

In those cases where we transfer your personal data to a third party outside the EEA, we ensure a similar level of protection for your data by ensuring that at least one of the following security measures is in place:

  • We will only transfer your data to countries that the European Commission has determined to provide adequate protection for personal data. For more information, see European Commission: Adequacy of the protection of personal information in non-EU countries.
  • Where we use certain service providers, we may use specific agreements approved by the European Commission under which personal data is protected in the same way as in Europe. For more information, see European Commission: Model contracts for the transfer of personal information to third countries.
  • Where we use US-based providers, we may transfer data to them if they are part of the EU-US Privacy Shield, under which they are expected to similarly protect personal data that the EU and US share . For more information, see European Commission: EU-US Privacy Shield.
  1. Data security

We have taken appropriate security measures to prevent your personal data from being accidentally lost, used or accessed in an unauthorized manner, altered or disclosed. In addition, we limit access to your personal data to those employees, agents, contractors and other third parties who have a business need to access it. They will only process your personal data if we instruct them to do so and they are subject to a duty of confidentiality.

We have procedures in place to act on any suspected breach of the confidentiality of your personal information and we will notify both you and the applicable regulatory authority of a breach where we are legally required to do so.

SSL SECURITY

We follow generally accepted industry standards to protect the personal information provided to us, both during transmission and after we receive it. When you enter sensitive information (such as a credit card number) on our order forms, we encrypt the transmission of that information using so-called Secure Socket Layer technology (SSL).

  1. Data retention

HOW LONG WE USE YOUR PERSONAL DATA

We will not keep your personal data for longer than necessary to achieve the purposes for which we collected it, including to comply with legal, accounting and reporting obligations. This also means that we may retain personal data from closed accounts to comply with legal requirements, prevent fraud and resolve disputes. After we are no longer obliged to keep your personal data, we will delete it in a secure manner.

When determining the maximum retention period of personal data that we keep, we assume our legitimate interests to retain data; our obligation under the GDPR to keep as little data as possible; the amount, nature and sensitivity of the personal data; the potential risk of harm from unauthorized use or disclosure of your personal information; the purposes for which we process your personal data and whether we can achieve these purposes by other means; the applicable legal regulations.

We use a retention period of 3 years for data if you have not logged into the online account during this period or if no online order has been placed within this period. We use a retention period of 2 years for data if there has been no interaction as a result of an e-mail sent from rallyraid.co.uk. Exceptions to this are the data that we have to keep for longer because the law obliges us to do so, such as data for the tax authorities.

We are required by law to retain basic information about our customers (including contact, identity, financial and transaction data) for tax purposes for seven years after they cease to be customers.

In some cases, you can ask us to delete your data: see Erasure requests below for more information.

In some cases, we may anonymize your personal data (so that it can no longer be associated with you) for research or statistical purposes, in which case we may use this data indefinitely without further notice to you.

  1. Your legal rights

Under certain circumstances, you have certain rights under data protection law in relation to your personal data.

  • Request access to your personal data
  • Request correction of your personal data.
  • Request erasure of your personal data.
  • Object to the processing of your personal data.
  • Request restriction of processing of your personal data.
  • Request transfer of your personal data.
  • Right to withdraw your consent.

If you wish to exercise one of the rights mentioned above, you are requested to contact rallyraid.co.uk via the contact options mentioned.

USUALLY NO FEE REQUIRED

You do not have to pay a fee for accessing your personal data (or to exercise any of the other rights). However, we may charge a reasonable fee if your request is manifestly unfounded or excessive, or if you repeatedly make the same request. In this case, we may also decide not to comply with your request.

WHAT WE MAY REQUEST OF YOU

We may ask you for specific information that allows us to identify you and your right to access your personal data (or to exercise any of your other rights). This is a security measure that ensures that your personal data is not disclosed to persons who are not entitled to it. We may also contact you to obtain more information in relation to your request in order to provide you with a faster service.

REPLY TIME

We aim to fulfill all legitimate requests within one month. This period may be exceeded if your request is particularly complex or if you have submitted several requests. Where appropriate, we will notify you and keep you informed.

  1. Glossary

LEGAL BASIS

Legitimate interest means the interest of our business in being able to provide you with the best possible services/products and the best and most secure customer experience in conducting and managing our business. We ensure that we consider and weigh up all possible impacts on you (both positive and negative) and your rights before processing your personal data for our legitimate interests. We will not use your personal information for activities where the impact on you outweighs our interests (unless we have your consent or are otherwise permitted or required by law).

Performance of an agreement means processing your data where this is necessary for the performance of an agreement to which you are a party, or for taking steps at your request before entering into such an agreement.

Complying with a legal or regulatory obligation means processing your personal data where this is necessary for compliance with a legal or regulatory obligation to which we are subject.

THIRD PARTIES

INTERNAL THIRD PARTIES

Other companies in the rallyraid.co.ukGroup that act as joint controllers or processors within the borders of the EEA and that provide IT and system administration services and have an obligation to inform management.

EXTERNAL THIRD PARTIES

  • Service providers acting as processors established in the EEA, providing IT and system administration services; payment service providers that facilitate purchases; fulfillment providers that fulfill the orders; providers of packaging, shipping, marketing and communications services to personalize your customer experience and communicate with you.
  • Professional advisers including lawyers, bankers, accountants, and insurers domiciled in the EEA who provide consultancy, banking, law, insurance and accountancy services.
  • Tax and Customs authorities, regulatory authorities, law enforcement agencies and other authorities acting as processors or joint controllers, established in the Netherlands, who in certain circumstances require reporting of processing activities, or otherwise in defense of legal claims.
  • Market researchers, fraud prevention agencies and web analytics providers.

YOUR LEGAL RIGHTS

You can exercise the following rights:

Requests for access to your personal data (commonly referred to as “data subject access requests.” This enables you to receive a copy of the personal data we hold about you and to check that we are processing it lawfully .

Request correction of the personal data we hold about you. This will enable you to correct any incomplete or inaccurate information we hold about you, although we may need to verify the accuracy of this new information you provide. You can update your data at any time by changing it in “My Account” or by contacting rallyraid.co.uk.

Request erasure of your personal data. This enables you to ask us to delete or remove your personal data where there is no valid reason for us to continue processing it. You also have the right to ask us to delete or remove your personal data where you have successfully exercised your right to object (see below), where we have unlawfully processed your data or where we are required to process your personal data to comply with local law. Please note, however, that we may not always be able to comply with your request for erasure for specific legal reasons of which you will be notified, where appropriate, at the time of your request. You can request erasure of your data at any time.

Object to the processing of your personal data where we are relying on a legitimate interest (or those of a third party) and your particular situation gives rise to you object to processing on this legal ground as you believe that it infringes on your fundamental rights and freedoms. You also have the right to object where we process your personal data for direct marketing purposes. In some cases, we may be able to demonstrate that we have compelling legitimate grounds to process your data that override your rights and freedoms. You can update your marketing preferences at any time by amending them in “My Account” and/or object to further processing by contacting rallyraid.co.uk.

Request restriction of processing of your personal data. This enables you to ask us to suspend the processing of your personal data in the following situation: (a) if you want us to establish the accuracy of the data; (b) where our use of the data is unlawful but you do not want us to erase it; (c) where you would like us to keep the data even though we no longer need it, as you need it to establish, exercise or defend legal claims; or (d) you have objected to our use of your information, but we need to verify whether we have overriding legitimate grounds to use it. You can request restriction of processing of your data at any time by contacting rallyraid.co.uk.

Request transfer of your personal data to you or to a third party. We will transfer your personal data to you or to a third party chosen by you, in a structured, commonly used and machine-readable format. Please note that this only applies to automatically collected data for which you initially gave us permission, or for data that we have used to perform a contract with you. You can request the transfer of your personal data at any time by contacting rallyraid.co.uk.

Withdraw your consent at any time where we rely on this consent for the processing of your personal data. This is without prejudice to the lawfulness of the processing of your data before you withdraw your consent. If you withdraw your consent, we may not be able to provide you with certain products or services. We will notify you, where appropriate, at the time you withdraw your consent. You can withdraw your consent at any time by contacting rallyraid.co.uk