Exact Auto Parts Privacy Policy
Effective Date: 11/03/2025
We at Exact Auto Parts (“we,” “our,” “us”) are committed to protecting and respecting your privacy. This Privacy Policy explains how we collect, use, store, and protect your personal data when you visit our website or interact with us in any way. It also informs you of your rights concerning your personal data under data protection laws, including the UK General Data Protection Regulation (GDPR).
1. Information We Collect
We collect the following personal data when you interact with our website or make a purchase:
Personal Information:
· Identity Data: Includes first name, last name, username, or similar identifiers.
· Contact Data: Includes billing address, shipping address, email address, and telephone numbers.
· Transaction Data: Includes details about payments to and from you, products and services you have purchased from us, and order history.
· Technical Data: Includes IP address, browser type and version, time zone setting, location, browser plug-in types, operating system, and platform.
· Profile Data: Includes your username, password, purchases or orders made by you, and your interests, preferences, feedback, and survey responses.
· Marketing and Communications Data: Includes your preferences in receiving marketing communications from us and third parties, and your communication preferences.
· Cookies and Browsing Data: Information about your browsing activity on our website, such as how long you stayed on a page and what products you viewed.
2. Lawful Basis for Processing
We rely on the following legal grounds to process your personal data:
· Performance of a Contract: When processing your personal data is necessary for the performance of a contract with you (e.g., to deliver the products you have purchased).
· Consent: When you have given us explicit consent to process your data, for example, for marketing communications.
· Legitimate Interests: When processing is necessary for our legitimate interests (or those of a third party) and your interests and fundamental rights do not override those interests (e.g., for fraud prevention or network security).
· Legal Obligations: When processing your personal data is necessary to comply with our legal obligations (e.g., tax reporting).
3. How We Use Your Data
We use your data for the following purposes:
· To Provide Services: Process your orders, manage your account, and deliver products.
· Payment Processing: We share your payment data with third-party payment providers (Woopayments, PayPal, AMEX, Stripe, Klarna) for processing transactions securely.
· Marketing Communications: With your consent, we may send you promotional materials, newsletters, and offers. You can opt-out at any time by following the unsubscribe link in our communications.
· Website Analytics: We use browsing data and cookies to improve our website performance and user experience.
· Customer Support: Respond to your inquiries, provide support, and resolve any issues related to your account or purchases.
4. Automated Decision-Making and Profiling
We do not use automated decision-making or profiling to process your personal data. If we introduce such processes in the future, we will inform you and provide you with the option to object to such processing.
5. Cookies
We use cookies on our website to:
· Track website usage and visitor behaviour through analytics cookies.
· Improve your user experience by remembering your preferences and browsing patterns.
The types of cookies we use are:
· Necessary cookies: Essential for website operation and enable core functionalities like security, network management, and accessibility.
· Performance cookies: Help us understand how visitors interact with the site by collecting and reporting information anonymously.
· Functional cookies: Allow the website to remember choices you make (such as your username or region) to provide enhanced, personalized features.
· Advertising cookies: Used to track visitors across websites to deliver relevant advertising.
You can manage your cookie preferences via your browser settings. However, disabling cookies may affect website functionality.
6. Sharing Your Information
We may share your personal data with:
· Payment Processors: Woopayments, PayPal, AMEX, Stripe, Klarna, to securely process transactions.
· Delivery services: Couriers such as Royal Mail, Yodel and Evri to deliver products to you.
· Marketing service providers: To manage our newsletters, email marketing, and promotional communications.
· IT Service Providers: Including web hosting, customer support, and data analysis companies to maintain and improve our website and services.
These third parties only process your personal data in accordance with our instructions and are required to take appropriate security measures to protect your data.
7. International Data Transfers
Currently, we do not transfer your personal data outside the UK or European Economic Area (EEA). If, in the future, this changes, we will ensure appropriate safeguards are in place in accordance with data protection laws, such as using Standard Contractual Clauses approved by the European Commission.
8. Data Retention
We will only retain your personal data for as long as necessary to fulfill the purposes we collected it for, including satisfying any legal, accounting, or reporting requirements.
Typically, we will retain:
· Customer account and transaction data: Retained for 6 years from the end of our relationship, in compliance with tax and accounting regulations.
· Marketing data: Retained until you unsubscribe from our marketing communications or request that we delete this information.
· Cookies and browsing data: Retained according to the cookie expiration settings on your browser.
When we no longer need your data for any legitimate purpose, we will securely delete or anonymize it.
9. Right to Withdraw Consent
Where you have given us consent to process your personal data, you have the right to withdraw that consent at any time. You can withdraw your consent by contacting us at info@exactautoparts.co.uk. Once we receive your request, we will stop processing your data for the purposes for which you originally consented.
10. Data Minimization and Accuracy
We only collect personal data that is relevant and necessary for the purposes outlined in this policy. We also make every effort to ensure that your personal data is accurate, complete, and up to date. If you believe that the information we hold about you is incorrect, please contact us to request rectification.
11. Data Anonymization and Pseudonymization
Where possible, we anonymize or pseudonymize personal data for analytics, research, or to improve our services. Anonymization ensures that the data can no longer be linked to a specific individual, while pseudonymization ensures that the data cannot be attributed to a specific individual without additional information, which is kept separately and subject to technical and organizational safeguards.
12. Handling Data Breaches
In the event of a personal data breach, we have procedures in place to mitigate the impact and notify the relevant supervisory authorities and affected individuals when legally required. If a breach occurs, we will contact you if there is a significant risk to your rights and freedoms.
13. Your Rights
Under the UK GDPR, you have the following rights regarding your personal data:
· Right to Access: You can request a copy of the personal data we hold about you.
· Right to Rectification: You can request that we correct any incomplete or inaccurate data we hold about you.
· Right to Erasure: You can request the deletion of your personal data when it is no longer necessary for the purposes for which it was collected.
· Right to Restrict Processing: You can request that we limit the processing of your personal data in certain situations.
· Right to Object: You can object to the processing of your personal data for direct marketing purposes at any time.
· Right to Data Portability: You can request the transfer of your personal data to another party in a commonly used electronic format.
To exercise your rights, please contact us at: info@exactautoparts.co.uk
14. Children’s Data
Our website and services are not intended for individuals under the age of 18, and we do not knowingly collect personal data from children. If we become aware that we have inadvertently collected personal data from a child, we will take steps to delete that information as soon as possible. If you believe we may have collected data from a child, please contact us at info@exactautoparts.co.uk.
15. Data Security
We take data security seriously and implement appropriate technical and organizational measures to protect your personal data from unauthorized access, alteration, or disclosure. Our website uses encryption protocols (such as TLS) to protect your personal data during transmission.
16. Changes to This Privacy Policy
We may update this privacy policy from time to time. Any changes will be posted on this page with an updated “Effective Date” at the top. We recommend that you review this page periodically to stay informed about how we are protecting your personal data.
17. Contact Us
If you have any questions, concerns, or requests regarding this privacy policy, please contact us at:
Exact Auto Parts
Email: info@exactautoparts.co.uk
Phone: 07553810742
Address: Havelock Hub, 14 Havelock Place, Harrow, HA1 1LJ
