Upto 30% OFF Sitewide - Free Shipping & Gift Wrap - Free Engraving - 30-Day Exchange - Lifetime Warranty

Privacy Policy

Atelier Diamonds

At Atelier Diamonds your privacy is important to us. We value your trust and are dedicated to safeguarding the personally identifiable information you have provided. We’ll never spam you, sell your info, or ruin anyone’s special surprises.

This privacy policy details the type of information we may collect, why we say that it’s necessary for us to do so, what we’ll do with that information and how long we will retain it, legislation claiming that a legitimate interest is a valid reason for processing personal data, and your rights over your personal data. This is in compliance with our Terms & Conditions as well as current UK data protection laws, including GDPR.

What Information Do We Collect?

In order to operate our business, we may receive and process certain personally identifiable information, including:

  • Customers
  • Suppliers
  • Business contacts
  • Employees and contractors
  • Job applicants

Personal information would include a person’s name, address, telephone number, e-mail address, financial or employment records or any other information that is required for the administration of business.

We only gather information that is necessary and relevant for business purposes.

Our Promise on Data Protection (GDPR)

The General Data Protection Regulation (GDPR) makes sure that organizations behave in the way they collect, handle and store personal data.

Personal information means any data that may identify an individual, either directly or indirectly.

Atelier Diamonds also adheres to the primary GDPR principles:

  • Legality, fairness and transparency – We process data lawfully and openly.
  • Purpose limitation – We collect data only for specified, legitimate purposes.
  • Minimization of data – We store only as much as we need.
  • Accuracy – We maintain data that is accurate and up to date.

(Storage restriction – We will not retain your information for longer than is necessary.)

Honesty and confidentiality – We ensure that information is not accessed, lost, or used without authorization.

Responsibility – We are accountable to prove GDPR compliance.”

Why This Policy Exists?

This policy helps us:

  • Comply with data protection laws.
  • Safeguard the interests of consumers, employees and business partners.
  • Be aboveboard about how we handle data.
  • Prevent data breaches and misuse.

It is relevant to all staff, contractors and approved users of our systems.

Lawful Use of Data

We will only hold personal data where the law allows it to, and we will process that data only when we have a lawful basis to do so.

Where has consent been given?

Processing is necessary for the performance of a contract.

Where are required by legal obligations?

To protect vital interests whenever it is deemed necessary

Where do legitimate business interests apply?

We do not sell or share personal data with third parties for marketing purposes.

Your Rights Under GDPR

You have the right to:

  • Subject Access Request for your personal data we hold about you
  • Correct inaccurate information.
  • Request that your data be erased (if this is jointly applicable).
  • Restrict or object to processing.
  • Withdraw consent at any time.

Complaint to the Information Commissioner’s Office (ICO).

Applications must be in writing. We try to respond within a month, but more complex cases can take longer.

Data We Hold and Why

Purpose of processing: What data do we collect?

  • Managing employment contracts and payroll
  • Communicating with customers regarding purchases
  • Processing supplier transactions
  • Recruitment and career development records
  • Marketing communications (only where consent has been provided)

We verify data, keep it secure and delete it when no longer needed.

Data Security

We use reasonable technical and organizational security measures to protect personal data, including:

  • Secure password-protected systems
  • Restricted access based on role
  • Regular security updates
  • Secure data backups
  • Restricted access to physical and digital records
  • Proper destruction of printed documents

Company data is never retained on personal devices without consent and should not be copied to non-authorized systems.

Data Breach Procedures

A data breach has to be reported to the Data Protection Officer (DPO) as soon as possible after it happens.

The ICO will be informed within 72 hours as required by law. Affected individuals will also be promptly informed if there is a high risk to subjects.

Accountability

Atelier Diamonds has recorded all internal processes associated with the collection, recording and use of documents. We are constantly reviewing our data protection policies and training all staff in their responsibilities.

Any third-party processors processing data on our behalf must be GDPR compliant and adhere to our internal policies.

Privacy by Design

Where required, we carry out Data Protection Impact Assessments for new systems or technology which include personal data. We make sure that every new process is privacy-by-design.

Contact Us

If you have any questions about this Privacy Policy or data treatment, please contact us at:

✉ info@atelierdiamonds.co.uk

📞 +44-7733635345

Policy Implementation

This Privacy Policy is dated as of March 2023 and applies to our processing of Personal Data on or after that date.