Privacy Policy
Last Updated: October 2025
At Heaven Beds Ltd, your privacy matters to us. We are committed to protecting your personal data and being transparent about how we collect, use, and share it.
This Privacy Policy explains how we handle your personal information when you visit www.heavenbeds.com, make a purchase, or contact us.
If you have any questions, contact us at 📧 heavenbeds@gmail.com.
1. Who We Are
This website is operated by Heaven Beds Ltd (“we”, “us”, “our”).
We are the Data Controller responsible for your personal data under the UK General Data Protection Regulation (UK GDPR).
Contact Details:
📧 heavenbeds@gmail.com
🌐 www.heavenbeds.com
2. Information We Collect
We collect and process the following categories of personal data:
A. Information You Provide Directly
- Full name, email address, phone number, and billing/delivery address
- Payment details (processed securely by our payment provider; we do not store card data)
- Messages or enquiries submitted via contact forms or email
- Preferences, reviews, or feedback provided voluntarily
B. Information Collected Automatically
- IP address, browser type, device type, and operating system
- Pages visited, time spent on the site, and referring URLs
- Cookies and similar tracking technologies (see Section 9)
3. Lawful Basis for Processing
Under GDPR, we must have a lawful reason for processing your personal data. Heaven Beds Ltd relies on the following bases:
| Purpose | Lawful Basis |
|---|---|
| To process and deliver your order | Contractual necessity |
| To communicate about orders, deliveries, or support | Legitimate interest / Contract |
| To send marketing offers (if you’ve opted in) | Consent |
| To maintain website security and prevent fraud | Legitimate interest |
| To comply with tax and accounting obligations | Legal obligation |
4. How We Use Your Information
We use your personal data to:
- Process and fulfil your orders
- Manage payments, refunds, and warranties
- Communicate updates and respond to your enquiries
- Improve our website, products, and services
- Send you marketing messages (only with your consent)
- Detect and prevent fraud or misuse of our website
We do not sell your data to anyone — ever.
5. Sharing Your Information
We may share your data only with trusted third parties, including:
- Delivery and courier partners – to fulfil your order
- Payment processors – to securely handle transactions
- IT service providers – to operate our website and database
- Professional advisers – such as accountants or auditors, when required by law
All third-party processors are GDPR-compliant and only use your data for the specific purpose we contract them for.
6. International Data Transfers
We store and process your information within the United Kingdom or European Economic Area (EEA).
If data is transferred outside the EEA, we ensure appropriate safeguards (such as Standard Contractual Clauses) are in place.
7. Data Retention
We retain your personal data only as long as necessary for the purposes it was collected, including:
- Order and transaction records: up to 6 years (for accounting and tax purposes)
- Marketing data: until you unsubscribe or withdraw consent
- Website analytics: generally anonymized and retained for performance review
After this period, your data will be securely deleted or anonymized.
8. Data Security
We take appropriate technical and organizational measures to protect your data, including:
- SSL encryption for all website transactions
- Restricted access to customer information
- Secure servers and firewalls
If we ever experience a data breach that poses a risk to your rights, we will notify you and the UK Information Commissioner’s Office (ICO) as required by law.
9. Cookies & Tracking Technologies
Our website uses cookies to:
- Improve user experience
- Analyse website traffic
- Store preferences
- Deliver relevant content and promotions
You can manage or disable cookies in your browser settings. For more details, see our Cookie Policy (available on request).
10. Your Data Protection Rights
Under the UK GDPR, you have the right to:
- Access your personal data
- Rectify inaccurate or incomplete information
- Erase your data (“right to be forgotten”)
- Restrict processing under certain conditions
- Object to data processing (e.g. direct marketing)
- Data portability – request a copy of your data in a machine-readable format
- Withdraw consent at any time (for marketing or optional data uses)
To exercise your rights, contact us at 📧 heavenbeds@gmail.com.
We’ll respond to all valid requests within 30 days.
11. Marketing & Communications
If you subscribe to our mailing list or create an account, we may send occasional product updates, promotions, or offers.
You can unsubscribe anytime by clicking the “Unsubscribe” link in any email or by contacting us directly.
12. Children’s Privacy
Our website and services are not intended for children under 16.
We do not knowingly collect data from minors. If we learn that a child has provided personal data, we will delete it immediately.
13. Your Right to Complain
If you’re unhappy with how we handle your data, please contact us first so we can resolve the issue.
You also have the right to complain to the Information Commissioner’s Office (ICO):
Information Commissioner’s Office (ICO)
📍 Wycliffe House, Water Lane, Wilmslow, Cheshire, SK9 5AF
🌐 www.ico.org.uk
14. Updates to This Privacy Policy
We may update this policy from time to time to reflect changes in regulations or operations.
The updated version will always be posted on our website with a revised “Last Updated” date.
15. Contact Us
If you have any questions about how we collect or handle your data, contact us at:
📧 heavenbeds@gmail.com
🌐 www.heavenbeds.com