Last updated: August 2025

1. Introduction
Fizz & Aura (“we”, “us”, “our”) is committed to protecting the privacy and security of your personal data. This Privacy Policy explains how we collect, use, disclose and safeguard your information when you visit our website (www.fizzandaura.co.uk) or make a purchase from us. We comply with the UK General Data Protection Regulation (UK GDPR) and the Data Protection Act 2018.

2. Who We Are
Fizz & Aura
124 City Road
London EC1V 2NX
Email: hello@fizzandaura.co.uk
Phone: 01952 375 852

3. What Personal Data We Collect

  • Account & Order Information: name, billing & delivery address, email, phone number, order history.
  • Payment Data: card details processed via our secure payment provider (we never store full payment details).
  • Website Usage: IP address, device/browser type, pages viewed, referring URL, time/date stamps (via cookies and analytics).
  • Marketing Preferences: whether you have signed up for our newsletter or promotional emails.

4. How We Use Your Data

  • Order Fulfilment: to process and deliver your purchases, handle returns and refunds.
  • Customer Service: to respond to your enquiries, provide support and resolve issues.
  • Marketing & Newsletters: with your consent, to send promotional offers, product news and blog updates. You can unsubscribe at any time.
  • Site Improvement: to analyse website usage and preferences, so we can improve our products, layout and content.
  • Legal Compliance: to comply with our legal obligations (e.g. tax, accounting, fraud prevention).

5. Legal Basis for Processing

  • Performance of a contract: processing orders and providing customer service.
  • Consent: for marketing communications and certain cookie uses.
  • Legitimate interests: to improve our website and prevent fraud, provided this does not override your rights.
  • Legal obligations: to comply with UK law.

6. Data Sharing & Disclosure
We may share your data with:

  • Service providers: delivery partners, payment processors, email platforms, IT support.
  • Professional advisers: legal, accounting or insurance services.
  • Regulatory authorities: if required by law (e.g. HMRC, ICO).
    We never sell your personal data to third parties for marketing purposes.

7. Cookies & Tracking
We use cookies to enhance your browsing experience and for analytics. You can manage cookie preferences via the banner on first visit or through your browser settings. Essential cookies are required for site functionality; non-essential cookies (e.g. analytics, marketing) require your consent.

8. International Transfers
All data is stored and processed within the UK or EU. Where we use third-party services outside the UK/EU, we ensure appropriate safeguards (e.g. Standard Contractual Clauses).

9. Data Retention
We retain your personal data only as long as necessary for the purposes set out above, generally:

  • Order & payment records: up to 7 years (for tax and accounting).
  • Marketing data: until you withdraw consent or unsubscribe.
  • Support enquiries: up to 3 years.

10. Your Rights
Under UK GDPR you have the right to:

  • Access the personal data we hold about you.
  • Rectify any inaccurate or incomplete data.
  • Erase your data (the “right to be forgotten”).
  • Restrict or object to our processing of your data.
  • Portability of your data (to another provider).
  • Withdraw consent at any time (for marketing).
    To exercise these rights, please contact us at hello@fizzandaura.co.uk.

11. Security Measures
We implement appropriate technical and organisational measures to protect your data, including secure hosting, encryption of sensitive information, regular security reviews and staff training.

12. Changes to This Policy
We may update this policy periodically. The “Last updated” date at the top will indicate when changes were made. Continued use of our site after an update signifies acceptance of the revised policy.

13. Complaints
If you have a complaint about our data practices, please contact us at hello@fizzandaura.co.uk. You also have the right to lodge a complaint with the Information Commissioner’s Office (ICO) at ico.org.uk.