Privacy Policy

About us

Mumbles Brewery Limited is a Private Limited Company registered in England that manufactures beer and wholesales wine, beer, spirits and other alcoholic beverages. Our company number is Company number 07777525 and our registered office address is Unit 14 Mannesman Close, Swansea Enterprise Park, Swansea, Wales, SA7 9FD. Our website address is https://mumblesbrewery.co.uk.

What personal data we collect and why we collect it

Our Online Shop

We collect information about you during the checkout process at our store. While you visit our site, we’ll track:

  • Products you’ve viewed: we’ll use this to, for example, show you products you’ve recently viewed
  • Location, IP address and browser type: we’ll use this for purposes like estimating taxes and shipping
  • Shipping address: we’ll ask you to enter this so we can, for instance, estimate shipping before you place an order, and send you the order!

We’ll also use cookies to keep track of basket contents while you’re browsing our site.

When you purchase from us, we’ll ask you to provide information including your name, billing address, shipping address, email address, phone number, credit card/payment details and optional account information like username and password. We’ll use this information for purposes, such as, to:

  • Send you information about your account and order
  • Respond to your requests, including refunds and complaints
  • Process payments and prevent fraud
  • Set up your account for our store
  • Comply with any legal obligations we have, such as calculating taxes
  • Improve our store offerings
  • Send you marketing messages, if you choose to receive them

If you create an account, we will store your name, address, email and phone number, which will be used to populate the checkout for future orders.

We generally store information about you for as long as we need the information for the purposes for which we collect and use it, and we are not legally required to continue to keep it. For example, we will store order information for 5 years for tax and accounting purposes. This includes your name, email address and billing and shipping addresses.

We may also store comments or reviews if you choose to leave them. We do not store your credit card or bank details.

Contact form

Our contact form will generate an email to the user and to our company and a copy of the submission is stored on the webserver.  We do not store information about the IP of the submission. You are required to submit your name, email address and nature of your enquiry. Mumbles Brewery Ltd. needs to store this information in email software for a reasonable time in order to respond to your enquiry. We generally store information from the contact form for 2 years, or for as long as we need the information for the purposes for which we collect and use it, and we are not legally required to continue to keep it.

Cookies

You can read all about the cookies we use on this website and how they affect your privacy at our Cookie Policy page.

Analytics

We use Google Analytics on this website to store information like the number of visitors to the website, the number of unique visitors, which pages of the website have been visited, the source of the visit, etc. This data helps us understand and analyse how well the website performs and where it needs improvement. Read how they affect your privacy at our Cookie Policy page.

How long we retain your data

Customer orders are kept for 5 years. Contact form enquiries are kept for 2 years.

What rights you have over your data

  1. If you are currently subscribed to or an existing customer and receive administrative or marketing emails from Mumbles Brewery Ltd., you can prevent receiving these in future by using the ‘unsubscribe‘ link at the bottom of such emails.
  2. If you currently receive administrative or marketing emails from Mumbles Brewery Ltd., you can update your email address using the ‘update preferences link at the bottom of such emails.
  3. You have the right to ask for a copy of your personal Data held by Mumbles Brewery Ltd. (where such Data is held) within a reasonable timeframe. Such Data access requests should be sent via email here.
  4. You have the right to request a modification of your personal Data held by Mumbles Brewery Ltd. (where such Data is held) within a reasonable timeframe. Such Data modification requests should be sent via email here.
  5. You have the right to request deletion of all of your personal Data held by Mumbles Brewery Ltd. (where such Data is held), also known as the ‘right to be forgotten’. Such Data removal requests should be sent via email here.

Contact information

If you wish to contact Mumbles Brewery Ltd. regarding a Privacy or data protection issue, please use our contact form.

How we protect your data

  1. Customer login and password access are required for certain parts of the Website. The customer is responsible for keeping this password strong and confidential. Mumbles Brewery Ltd ensures the setting of a weak password is not possible. 
  2. Password resets are the responsibility of the customer and passwords cannot be reset by staff members from Mumbles Brewery Ltd.
  3. We endeavour to do our best to protect your Personal Data, but cannot guarantee it. Transmission of information over the internet from the user’s browser to our web server is encrypted via a Secure Socket Layer Certificate and the HTTPS protocol. 
  4. This website is further protected from malicious agents by means of various added security features, including protection from brute force attacks and SQL injections.
  5. Encrypted Backup zip files are stored remotely with hashed file names to prevent filename guessing and directory browsing is disabled.

Who on our team has access

Members of our team have access to the information you provide us. For example, both Administrators and Shop Managers can access:

  • Order information like what was purchased, when it was purchased and where it should be sent, and
  • Customer information like your name, email address, and billing and shipping information.

Our team members have access to this information to help fulfil orders, process refunds and support you.

What we share with others

Unless we are obliged or permitted by law to do so, and subject to any third party disclosures specifically set out in this policy, your Data will not be disclosed to or shared with any third parties for the purposes of third party marketing or advertising. 

We share information with a small number of third parties who help us provide our orders and store services to you. Any Data used by such parties is used only to the extent required by them to perform the services that we request of them. Any use for other purposes is strictly prohibited. Furthermore, any Data that is processed by third parties will be processed within the terms of this privacy policy and in accordance with the Data Protection Act 1998 and the General Data Protection Regulation 2018.

Stripe Payments

We use Stripe Payments to take and process payments via our online store. When processing payments, some of your data will be passed to the Stripe payments platform, including information required to process or support the payment, such as the purchase total and billing information. Information shared with Stripe to process payments includes:

Name
Email
Address
Phone
City/Postcode
Unique payment identifier
Payment provider identifier

To better understand how Stripe uses and stores the data shared with them, check their privacy policy directly here.

Mailchimp

We use Mailchimp (The Rocket Science Group, LLC) to manage our email marketing subscriber list and send emails to our subscribers. To comply with GDPR and in order to be considered as valid, the consent we collect (to send marketing materials)  meets specific requirements including that of fully and correctly informing our users’ of the purposes, methods, and parties involved in the processing of their data. Also, we record relevant details of the individual consent including date, time and method of collection.

When shopping, we keep a record of your email and the basket contents for up to 30 days on our server. This record is kept to repopulate the contents of your basket if you switch devices or needed to come back another day.

Read Mailchimp’s privacy policy here.

Backups

Per the functionality of this website feature, backups of website files and/or databases are created and stored remotely on 3rd party servers in London, UK. Archives can include but are not limited to, file and database assets, including hashed passwords, 3rd party data, uploads and user information. These backups are stored to provide critical functionality of this plugin.

Backup retention is 30 days on the web hosting partner servers and 90 days at Amazon S3 cloud storage. 

Backups are stored by our hosting partner for 30 days. Additionally, encrypted backups are sent automatically to Amazon S3 cloud storage and retained for 90 days.

Changes To This Privacy Policy

Mumbles Brewery Ltd. reserves the right to change this privacy policy as we may deem necessary from time to time or as may be required by law. Any changes will be immediately posted on this website and you are deemed to have accepted the terms of the privacy policy on your first use of the Website following the alterations. 

Dated 03 March 2022