Last Updated: October 2025

At Heaven Beds Ltd, your privacy matters to us. We are committed to protecting your personal data and being transparent about how we collect, use, and share it.
This Privacy Policy explains how we handle your personal information when you visit www.heavenbeds.com, make a purchase, or contact us.

If you have any questions, contact us at 📧 heavenbeds@gmail.com.


1. Who We Are

This website is operated by Heaven Beds Ltd (“we”, “us”, “our”).
We are the Data Controller responsible for your personal data under the UK General Data Protection Regulation (UK GDPR).

Contact Details:
📧 heavenbeds@gmail.com
🌐 www.heavenbeds.com


2. Information We Collect

We collect and process the following categories of personal data:

A. Information You Provide Directly

  • Full name, email address, phone number, and billing/delivery address
  • Payment details (processed securely by our payment provider; we do not store card data)
  • Messages or enquiries submitted via contact forms or email
  • Preferences, reviews, or feedback provided voluntarily

B. Information Collected Automatically

  • IP address, browser type, device type, and operating system
  • Pages visited, time spent on the site, and referring URLs
  • Cookies and similar tracking technologies (see Section 9)

3. Lawful Basis for Processing

Under GDPR, we must have a lawful reason for processing your personal data. Heaven Beds Ltd relies on the following bases:

PurposeLawful Basis
To process and deliver your orderContractual necessity
To communicate about orders, deliveries, or supportLegitimate interest / Contract
To send marketing offers (if you’ve opted in)Consent
To maintain website security and prevent fraudLegitimate interest
To comply with tax and accounting obligationsLegal obligation

4. How We Use Your Information

We use your personal data to:

  • Process and fulfil your orders
  • Manage payments, refunds, and warranties
  • Communicate updates and respond to your enquiries
  • Improve our website, products, and services
  • Send you marketing messages (only with your consent)
  • Detect and prevent fraud or misuse of our website

We do not sell your data to anyone — ever.


5. Sharing Your Information

We may share your data only with trusted third parties, including:

  • Delivery and courier partners – to fulfil your order
  • Payment processors – to securely handle transactions
  • IT service providers – to operate our website and database
  • Professional advisers – such as accountants or auditors, when required by law

All third-party processors are GDPR-compliant and only use your data for the specific purpose we contract them for.


6. International Data Transfers

We store and process your information within the United Kingdom or European Economic Area (EEA).
If data is transferred outside the EEA, we ensure appropriate safeguards (such as Standard Contractual Clauses) are in place.


7. Data Retention

We retain your personal data only as long as necessary for the purposes it was collected, including:

  • Order and transaction records: up to 6 years (for accounting and tax purposes)
  • Marketing data: until you unsubscribe or withdraw consent
  • Website analytics: generally anonymized and retained for performance review

After this period, your data will be securely deleted or anonymized.


8. Data Security

We take appropriate technical and organizational measures to protect your data, including:

  • SSL encryption for all website transactions
  • Restricted access to customer information
  • Secure servers and firewalls

If we ever experience a data breach that poses a risk to your rights, we will notify you and the UK Information Commissioner’s Office (ICO) as required by law.


9. Cookies & Tracking Technologies

Our website uses cookies to:

  • Improve user experience
  • Analyse website traffic
  • Store preferences
  • Deliver relevant content and promotions

You can manage or disable cookies in your browser settings. For more details, see our Cookie Policy (available on request).


10. Your Data Protection Rights

Under the UK GDPR, you have the right to:

  • Access your personal data
  • Rectify inaccurate or incomplete information
  • Erase your data (“right to be forgotten”)
  • Restrict processing under certain conditions
  • Object to data processing (e.g. direct marketing)
  • Data portability – request a copy of your data in a machine-readable format
  • Withdraw consent at any time (for marketing or optional data uses)

To exercise your rights, contact us at 📧 heavenbeds@gmail.com.
We’ll respond to all valid requests within 30 days.


11. Marketing & Communications

If you subscribe to our mailing list or create an account, we may send occasional product updates, promotions, or offers.
You can unsubscribe anytime by clicking the “Unsubscribe” link in any email or by contacting us directly.


12. Children’s Privacy

Our website and services are not intended for children under 16.
We do not knowingly collect data from minors. If we learn that a child has provided personal data, we will delete it immediately.


13. Your Right to Complain

If you’re unhappy with how we handle your data, please contact us first so we can resolve the issue.
You also have the right to complain to the Information Commissioner’s Office (ICO):

Information Commissioner’s Office (ICO)
📍 Wycliffe House, Water Lane, Wilmslow, Cheshire, SK9 5AF
🌐 www.ico.org.uk


14. Updates to This Privacy Policy

We may update this policy from time to time to reflect changes in regulations or operations.
The updated version will always be posted on our website with a revised “Last Updated” date.


15. Contact Us

If you have any questions about how we collect or handle your data, contact us at:
📧 heavenbeds@gmail.com
🌐 www.heavenbeds.com