top of page

Privacy Policy

Privacy Policy
Last updated: March 2026
Apothecary Guernsey (“we”, “our”, “us”) is committed to protecting your privacy.

This policy explains how we collect, use, share, and protect your personal information when you visit our website (https://www.apothecaryguernsey.com/), create an account, place an order, sign up for newsletters, or contact us. We act as the data controller under the Data Protection (Bailiwick of Guernsey) Law, 2017 (DPL 2017)

.1. Information We Collect
We collect personal information when you:

  • Create an account

  • Place an order

  • Sign up for newsletters

  • Contact customer support

This may include:

  • Name

  • Email address

  • Delivery address

  • Phone number

  • Payment details (handled securely by our payment provider; we do not store full card details)

  • Usage data via cookies and analytics (e.g., IP address, browser type, pages visited — see Cookies section)

2. How We Use Your Information and Legal Basis
We process your data on these lawful bases under DPL 2017:

  • Performance of a contract — To process and fulfil orders, send order updates, and handle returns/refunds.

  • Legitimate interests — To improve our website/products/services, analyse site performance (e.g., via Google Analytics), prevent fraud, and respond to queries (we balance this against your rights).

  • Consent — For sending marketing newsletters (you can withdraw consent anytime via unsubscribe link or by contacting us).

3. Cookies and Tracking Technologies
Our site uses cookies and similar technologies (including Google Analytics) to:

  • Enable essential functions (e.g., shopping cart)

  • Analyse usage and improve experience

  • Personalise content

Google Analytics collects anonymised data on site interactions. You can manage cookies via browser settings or our cookie banner. For details, see our separate Cookie Policy.

4. Sharing Your Information
We share data with:

  • Payment processors (e.g., Wix Payments)

  • Email providers (e.g., Mailchimp / Wix Email)

  • Delivery partners

  • Analytics provider: Google Analytics (US-based; see transfers below)

These third parties are contractually required to protect your data and only use it for the services they provide.

5. International Data Transfers
Some recipients (e.g., Google, Mailchimp, Wix) are outside the Bailiwick/UK/EEA. We ensure appropriate safeguards, such as UK International Data Transfer Agreements, Standard Contractual Clauses, or reliance on adequacy decisions/Google's commitments.

6. Data Retention
We keep data only as long as necessary:

  • Order/account data: Up to 6 years after last interaction (for tax/legal/accounting obligations).

  • Newsletter subscribers: Until you unsubscribe or withdraw consent.

  • Analytics data: Typically 14–26 months (configurable in Google Analytics).

7. Your Rights
Under DPL 2017, you have rights to:

  • Access your data

  • Correct inaccurate data

  • Erase data (in certain cases)

  • Restrict processing

  • Object to processing (e.g., for marketing)

  • Data portability

Contact us at chantelle@apothecaryguernsey.com to exercise these. We respond within one. month (extendable if complex)

8. Security
We use technical and organisational measures (e.g., encryption, secure hosting via Wix, access controls) to protect your data, though no transmission is 100% secure.

9. Automated Decision-Making
We do not carry out automated decision-making or profiling with legal/significant effects.

10. Children
Our products/services are not directed at children under 16. We do not knowingly collect data from children under 16.

11. Complaints
If unsatisfied with our response, contact the Office of the Data Protection Authority (ODPA): https://www.odpa.gg/ or dataprotection@gov.gg.

12. Changes to This Policy
We may update this policy. Significant changes will be notified via email or site notice.

Contact Us
Apothecary Guernsey
Email: chantelle@apothecaryguernsey.com 

bottom of page