Privacy policy

PRIVACY POLICY

you buy goods from us, you are entering into a contract with us. You will need to set up your information, before ordering from us, so we can set this up we will ask you to provide some personal information such as;

full name, address (and previous addresses), date of birth, contact numbers, and email address.

As an existing customer if you have shopped with us using a credit or debit card, or we have taken these details for a payment authorisation, we will securely collect and store this payment card information. New customers and existing customers whose payment cards have expired will be asked if they would like to automatically store these details in order to speed up the payment process. If you set up a direct debit payment, we will also collect bank details from you.

When you apply for a credit account, we get information about you from credit reference agencies. This is covered in more detail in the section, Who we share your information with and why.

In order to undertake website personalisation, we will also gather information about the devices you use to access our sites (desktop and mobile), and this may include IP address. For further information on our use of cookies and tracking please see our Cookie Notice.

 

HOW DO WE USE YOUR INFORMATION

Data Protection says that we are allowed to use and share your personal data only where we have a proper reason to do so. The law says we must have one or more of these reasons and these are:

Contract – your personal information is processed in order to fulfil a contractual arrangement e.g. in order to send you your Directory catalogue

Consent – where you agree to us using your information in this way e.g. for storing your payment card details

Legitimate Interests – this means the interests of Next in managing our business to allow us to provide you with the best products and service in the most secure and appropriate way e.g. to transfer your data to certain Third Party’s such as delivery partners.

Legal Obligation – where there is statutory or other legal requirement to share the information e.g. when we have to share your information for law enforcement purposes.

 

Who we share your information with and why

Mirror Exhibit works with a number of trusted suppliers, agencies and businesses in order to provide you the high quality goods and services you expect from us such as delivery companies, credit reference agencies, fraud prevention agencies, product technicians visiting your home and market research companies amongst others.

 

Debt recovery and fraud prevention services

Before we provide services, goods or financing to you, we undertake checks for the purposes of preventing fraud and money laundering, and to verify your identity. These checks require us to process personal data about you.

The personal data you have provided, we have collected from you, or we have received from third parties will be used to prevent fraud and money laundering, and to verify your identity.

Details of the personal information that will be processed include, for example: name, address, date of birth, contact details, financial information, employment details, device identifiers including IP address and vehicle details.

We and fraud prevention agencies may also enable law enforcement agencies to access and use your personal data to detect, investigate and prevent crime.

We process your personal data on the basis that we have a legitimate interest in preventing fraud and money laundering, and to verify identity, in order to protect our business and to comply with laws that apply to us. Such processing is also a contractual requirement of the services or financing you have requested.

We process your personal data on the basis that it is necessary in the public interest or in exercising official authority for us to prevent fraud and money laundering, and to verify identity, in order to protect ourselves and to comply with laws that apply to us.

Fraud prevention agencies can hold your personal data for different periods of time, and if you are considered to pose a fraud or money laundering risk, your data can be held for up to six years.

Automated Decisions 

As part of the processing of your personal data, decisions may be made by automated means. This means we may automatically decide that you pose a fraud or money laundering risk if our processing reveals your behaviour to be consistent with money laundering or known fraudulent conduct, or is inconsistent with your previous submissions, or you appear to have deliberately hidden your true identity. You have rights in relation to automated decision-making: if you want to know more please contact us using the details above

Consequences of Processing 

If we, or a fraud prevention agency, determine that you pose a fraud or money laundering risk, we may refuse to provide the services or financing you have requested, or to employ you, or we may stop providing existing services to you. 

A record of any fraud or money laundering risk will be retained by the fraud prevention agencies, and may result in others refusing to provide services, financing or employment to you. If you have any questions about this, please contact us on the details above. 

Data Transfers 

Whenever fraud prevention agencies transfer your personal data outside of the European Economic Area, they impose contractual obligations on the recipients of that data to protect your personal data to the standard required in the European Economic Area. They may also require the recipient to subscribe to ‘international frameworks’ intended to enable secure data sharing. 

Your Rights 

Your personal data is protected by legal rights, which include your rights to object to our processing of your personal data; request that your personal data is erased or corrected; request access to your personal data. 

 

Transfers to third countries

Some of the information you provide to us may be transferred outside the European Economic Area to countries such as India and the US. This is a transfer to a “third country”.  

Mirror Exhibit also works with suppliers and partners who may make use of cloud and/or hosted technologies. We undertake data security due diligence on our partners and ensure that that these partners conform to appropriate accreditations.

Wherever transfers of data to third counties occurs Mirror Exhibit will put in place an appropriate contractual provisions to ensure that there are strict rules regarding both the confidentiality and security of your information. 

 

Keeping in touch with you.

We want to keep you up to date with information about new ranges, special offers and improvements to our website. When you set your account up, we will ask you if you want to receive this type of marketing information.

Mirror Exhibit will not share your information with companies outside Mirror Exhibit for their marketing purposes.

You may continue to receive mailings for a short period while your request is dealt with.

 

How long we keep your information

If we collect your personal information, the length of time we retain it is determined by a number of factors including the purpose for which we use that information and our obligations under other laws.

We may need your personal information to establish, bring or defend legal claims. For this purpose, we will always retain your personal information for 7 years after the date it is no longer needed by us for any of the purposes listed under How we use your information above. The only exceptions to this are where:

the law requires us to hold your personal information for a longer period, or delete it sooner; you exercise your right to have the information erased (where it applies) and we do not need to hold it in connection with any of the reasons permitted or required under the law;

we bring or defend a legal claim or other proceedings during the period we retain your personal information, in which case we will retain your personal information until those proceedings have concluded and no further appeals are possible; or

in limited cases, existing or future law or a court or regulator requires us to keep your personal information for a longer or shorter period.

 

What are your rights

Right of access –to request access to your personal information and information about how we process it

Right to rectification –to have your personal information corrected if it is inaccurate and to have incomplete personal information completed

Right to restriction of processing – to restrict processing of your personal information

Right to data portability – to electronically move, copy or transfer your personal information in a standard form

Right to object – to object to processing of your personal information

Rights with regards to automated individual decision making, including profiling –rights relating to automated decision making, including profiling

You have the right to lodge a complaint with a data protection regulator in Europe, in particular in a country you work or live or where your legal rights have been infringed. 

 

Cookie Notice

This notice is designed to help you understand what cookies are, how Mirror Exhibit uses them and the choices you have in regards to their use.

 

What are cookies?

Cookies are small text files that are stored on your browser or the hard drive of your computer or other device when you visit the Site. This allows the Site to recognise you as a user either for the duration of your visit (using a ‘session cookie’) or for repeat visits ( a ‘persistent cookie’). They are not harmful and do not contain any information such as your home address, date of birth or credit card details.

The cookies we use fall into four broad types:

Strictly Necessary Cookies

These cookies are essential in helping you to move around our Site and use its features, such as accessing secure areas of the website. Without these cookies, services you have asked for, such as setting up an account cannot be provided. These cookies do not gather information about you that could be used for marketing or remembering where you’ve been on the internet.

Analytical/Performance Cookies

In order to keep the Site, its services and products relevant, easy to use and up-to-date, we use web analytics services to help us understand how people use our Site. For example, we can see which parts of the Site and products are most popular, identify when errors occur, and test different versions of a page or feature to see which one works best.

Functionality Cookies 

These cookies allow websites and applications to remember choices you make (such as your user name, language or the region you are in) and provide enhanced, more personal features. The information these cookies collect is usually anonymised which means we can’t identify you personally. They do not gather any information about you that could be used for selling advertising or remembering where you’ve been on the internet, but do help us to serve you with advertising that is more relevant to you.

Targeted Marketing Cookies

We also use cookies to assist in targeted advertising. Without these cookies, online advertisements you encounter will be less relevant to you and your interests. We also use them to measure the effectiveness of our marketing communications, for example by telling us if you have responded to an advert that we have sent you.

 

What do we use Cookies for?

They enable you to transact, whilst other non-essential cookies enable us to give you an enhanced, personalised web experience and determine relevant products to show you.

To personalise and improve your customer experience.

To recognise the device that you are using.

To store the content of your online shopping bag whilst you browse the site and to complete an order.

To record the areas of the Site that you have visited, products you have viewed and time spent browsing, as well as the products you purchased. Mirror Exhibit uses this information to help make the website more user friendly, develop our Site design and to continuously improve the quality of the service we provide.

To distribute visitors to our Site evenly across platforms to ensure the content is served at the fastest possible speed.

For re-marketing purposes to determine relevant related products to show you when you’re browsing on other selected websites. These cookies can be associated with services provided by a third party such as an advertising network.

We also offer you the facility to share your experience on our Site through social media sites such as Facebook and Instagram. By using these features, you are consenting to allow cookies from these providers. More information about how these providers use cookies can be found at their websites.

 

Are cookies safe?

 

Yes. The information stored in cookies is safe and anonymous to any external third party, and your account security is never compromised.

 

Can I turn off cookies?

Yes – but if you choose not to allow the use of cookies, your experience of our Site will be limited and many integral aspects of the Site, including (but not limited to) adding items to your shopping bag and accessing your account, will not work at all.

To change your cookie settings, or if you want to be notified each time a cookie is about to be used, you should amend the settings provided in your web browser to prevent us from storing cookies on your computer hard drive. 

 

PRIVACY STATEMENT ---- 

SECTION 1 - WHAT DO WE DO WITH YOUR INFORMATION? 

When you purchase something from our store, as part of the buying and selling process, we collect the personal information you give us such as your name, address and email address. 

When you browse our store, we also automatically receive your computer’s internet protocol (IP) address in order to provide us with information that helps us learn about your browser and operating system. Email marketing (if applicable): With your permission, we may send you emails about our store, new products and other updates.  

SECTION 2 - CONSENT 

How do you get my consent? When you provide us with personal information to complete a transaction, verify your credit card, place an order, arrange for a delivery or return a purchase, we imply that you consent to our collecting it and using it for that specific reason only. If we ask for your personal information for a secondary reason, like marketing, we will either ask you directly for your expressed consent, or provide you with an opportunity to say no. How do I withdraw my consent? If after you opt-in, you change your mind, you may withdraw your consent for us to contact you, for the continued collection, use or disclosure of your information, at anytime, by contacting us at support@exhibitmirrors.com. 

SECTION 3 - DISCLOSURE 

We may disclose your personal information if we are required by law to do so or if you violate our Terms of Service.  

SECTION 4 - SHOPIFY 

Our store is hosted on Shopify Inc. They provide us with the online e- commerce platform that allows us to sell our products and services to you. Your data is stored through Shopify’s data storage, databases and the general Shopify application. They store your data on a secure server behind a firewall. Payment: If you choose a direct payment gateway to complete your purchase, then Shopify stores your credit card data. It is encrypted through the Payment Card Industry Data Security Standard (PCI-DSS). 

Your purchase transaction data is stored only as long as is necessary to complete your purchase transaction. After that is complete, your purchase transaction information is deleted. All direct payment gateways adhere to the standards set by PCI-DSS as managed by the PCI Security Standards Council, which is a joint effort of brands like Visa, MasterCard, American Express and Discover. PCI-DSS requirements help ensure the secure handling of credit card information by our store and its service providers. For more insight, you may also want to read Shopify’s Terms of Service (https://www.shopify.com/legal/terms) or Privacy Statement (https:// www.shopify.com/legal/privacy).  

SECTION 5 - THIRD-PARTY SERVICES 

In general, the third-party providers used by us will only collect, use and disclose your information to the extent necessary to allow them to perform the services they provide to us. However, certain third-party service providers, such as payment gateways and other payment transaction processors, have their own privacy policies in respect to the information we are required to provide to them for your purchase-related transactions. For these providers, we recommend that you read their privacy policies so you can understand the manner in which your personal information will be handled by these providers. In particular, remember that certain providers may be located in or have facilities that are located a different jurisdiction than either you or us. 

So if you elect to proceed with a transaction that involves the services of a third-party service provider, then your information may become subject to the laws of the jurisdiction(s) in which that service provider or its facilities are located. As an example, if you are located in Canada and your transaction is processed by a payment gateway located in the United States, then your personal information used in completing that transaction may be subject to disclosure under United States legislation, including the Patriot Act. Once you leave our store’s website or are redirected to a third-party website or application, you are no longer governed by this Privacy Policy or our website’s Terms of Service. Links When you click on links on our store, they may direct you away from our site. We are not responsible for the privacy practices of other sites and encourage you to read their privacy statements.  

SECTION 6 - SECURITY 

To protect your personal information, we take reasonable precautions and follow industry best practices to make sure it is not inappropriately lost, misused, accessed, disclosed, altered or destroyed. If you provide us with your credit card information, the information is encrypted using secure socket layer technology (SSL) and stored with a AES-256 encryption. Although no method of transmission over the Internet or electronic storage is 100% secure, we follow all PCI-DSS requirements and implement additional generally accepted industry standards. 

SECTION 7 - COOKIES

Here is a list of cookies that we use. We’ve listed them here so that you can choose if you want to opt-out of cookies or not. _session_id, unique token, sessional, Allows Shopify to store information about your session (referrer, landing page, etc). _shopify_visit, no data held, Persistent for 30 minutes from the last visit, Used by our website provider’s internal stats tracker to record the number of visits _shopify_uniq, no data held, expires midnight (relative to the visitor) of the next day, Counts the number of visits to a store by a single customer. cart, unique token, persistent for 2 weeks, Stores information about the contents of your cart. _secure_session_id, unique token, sessional storefront_digest, unique token, indefinite If the shop has a password, this is used to determine if the current visitor has access.  

SECTION 8 - AGE OF CONSENT 

By using this site, you represent that you are at least the age of majority in your state or province of residence, or that you are the age of majority in your state or province of residence and you have given us your consent to allow any of your minor dependents to use this site.  

SECTION 9 - CHANGES TO THIS PRIVACY POLICY 

We reserve the right to modify this privacy policy at any time, so please review it frequently. Changes and clarifications will take effect immediately upon their posting on the website. If we make material changes to this policy, we will notify you here that it has been updated, so that you are aware of what information we collect, how we use it, and under what circumstances, if any, we use and/or disclose it. If our store is acquired or merged with another company, your information may be transferred to the new owners so that we may continue to sell products to you.  

QUESTIONS AND CONTACT INFORMATION

Want more information contact our Privacy Compliance Officer at support@mirrorexhibit.com. 

BACK TO TOP