Privacy policy

Last updated: 07/03/2025

This Privacy Policy explains how Vino Gusto Ltd ("we", "us", or "our") collects, uses, shares, and protects your personal data when you interact with us through our website at www.vinogusto.co.uk or in-store via our Point of Sale (POS) system.

We are committed to safeguarding your privacy and complying with the UK General Data Protection Regulation (UK GDPR) and the Data Protection Act 2018.


1. Who We Are

Vino Gusto Ltd
27 Hatter Street
Bury St Edmunds
Suffolk, IP33 1NE
📧 hello@vinogusto.co.uk
📞 01284 771831


2. Personal Data We Collect

We collect different types of personal data depending on how you interact with us:

A. Website & Device Data

  • IP address, browser type, time zone, device type, browsing activity

  • Collected automatically through cookies, pixels, and tags

  • Purpose: Analytics, fraud detection, performance optimisation

  • Legal basis: Legitimate interests

B. Order & Purchase Data (Online and In-Store)

  • Name, email, phone, billing and shipping address, payment details, order history

  • Source: You directly or automatically via Shopify POS

  • Purpose: Fulfilling orders, customer service, legal compliance

  • Legal basis: Contract performance, legal obligation

C. Shopify POS and Shop Account Integration

  • If you have a Shop account (Shopify's customer-facing app), we may automatically obtain your email address and limited order history when you make an in-store purchase via our Shopify POS system

  • Purpose: Faster checkout, accurate receipts, personalised service

  • Legal basis: Legitimate interests (streamlined service), Consent (via your Shop account settings)

D. Customer Support Interactions

  • Any data you provide in enquiries, returns, or complaints

  • Legal basis: Contractual necessity, legitimate interests

E. Marketing and Email Communications

  • Name, email, preferences, engagement data (opens, clicks)

  • Managed via Klaviyo (a secure, UK GDPR-compliant platform)

  • Legal basis: Consent (you may withdraw at any time)


3. How We Use Your Data

We use your personal data to:

  • Process and fulfil orders

  • Provide customer support

  • Improve and optimise our services

  • Send marketing communications (with your consent)

  • Detect and prevent fraud or misuse

  • Comply with legal and financial regulations


4. Lawful Basis for Processing

We process your data under the following lawful bases:

  • Consent – for email marketing and optional cookies

  • Contractual necessity – to fulfil purchases or respond to your requests

  • Legal obligation – for accounting, tax, and regulatory purposes

  • Legitimate interests – to operate and improve our services, including POS efficiency and analytics


5. Sharing Your Personal Data

We only share your data with trusted third parties where necessary:

  • Shopify – to power our online and in-store POS system
    Shopify Privacy Policy

  • Klaviyo – for email marketing communications
    Klaviyo Privacy Policy

  • Payment processors – to process secure transactions

  • Delivery providers – to fulfil your orders

  • Legal authorities – where required by law or regulation

All data sharing is subject to appropriate data protection safeguards and contracts.


6. International Data Transfers

Some of our service providers (e.g. Shopify, Klaviyo) may process data outside the UK, including in the United States and Canada. Where this occurs, we ensure compliance through:

  • Adequacy decisions

  • Standard Contractual Clauses (SCCs)

  • Supplementary security measures


7. Data Retention

We retain personal data only as long as necessary for its original purpose or to meet legal obligations:

  • Orders and transactions: 6 years

  • Marketing data: Until you unsubscribe or withdraw consent

  • Support queries: Up to 2 years

You may request deletion of your data at any time (see Your Rights).


8. Your Rights (UK GDPR)

You have the right to:

  • Access – Request a copy of the personal data we hold

  • Rectify – Request corrections to inaccurate data

  • Erase – Request deletion ("right to be forgotten")

  • Restrict – Limit certain processing of your data

  • Object – To direct marketing or processing based on legitimate interests

  • Data portability – Receive your data in a transferable format

  • Withdraw consent – At any time where consent is the lawful basis

To exercise your rights, email: hello@vinogusto.co.uk

If you are dissatisfied, you may lodge a complaint with the Information Commissioner’s Office (ICO):
https://ico.org.uk/make-a-complaint


9. Cookie Policy

Cookies are small files stored on your device that help us:

  • Operate the website

  • Remember your preferences

  • Track performance and usage

  • Deliver targeted advertising (if permitted)

Types of Cookies We Use

Cookie Type Purpose
Essential Cookies Required for site operation, e.g. shopping cart, login, checkout
Performance & Analytics Understand how users interact with the site (via Shopify & Google Analytics)
Functional Cookies Store preferences and enhance user experience
Advertising & Targeting Deliver relevant ads and measure their effectiveness

Managing Cookies

You can:

  • Adjust your preferences in our site’s cookie banner

  • Modify your browser settings to block or delete cookies

  • Visit www.allaboutcookies.org for more guidance

Blocking cookies may limit your experience on our Site.


10. Behavioural Advertising

With your consent, we use services such as Google Ads, Facebook Ads, and Klaviyo to deliver personalised ads based on browsing and purchasing activity.

You can opt out of targeted ads here:


11. Do Not Track Signals

We do not currently respond to "Do Not Track" signals, as there is no industry-wide standard on how to interpret them.


12. Automated Decision-Making

We do not make decisions based solely on automated processing that produce legal or similarly significant effects.

Shopify may use limited automated tools for fraud prevention (e.g. temporarily blocking IPs or cards after failed payments), but these do not have significant effects on your rights.


13. Changes to This Policy

We may update this Privacy Policy to reflect changes in technology, legislation, or our business practices. The latest version will always be posted here.


14. Contact Us

For any privacy-related questions, concerns, or rights requests:

Vino Gusto Ltd
📍 27 Hatter Street, Bury St Edmunds, Suffolk, IP33 1NE
📧 hello@vinogusto.co.uk