Privacy Policy
Last updated: 03/02/26
This Privacy Policy explains how Rebel Hearts (“we”, “us”, or “our”) collects, uses, and protects your personal information when you visit or make a purchase from our website (the “Site”).
We comply with the UK General Data Protection Regulation (UK GDPR) and the Data Protection Act 2018.
1. Information We Collect
We collect the following categories of personal data:
A. Information You Provide to Us
-
Name
-
Email address
-
Phone number
-
Billing and delivery address
-
Payment details (processed securely by third-party payment processors)
-
Order information
-
Account login information (if you create an account)
-
Any messages or communications sent to us
B. Information Collected Automatically
When you use our Site, certain information is collected automatically:
-
IP address
-
Browser type and version
-
Device type
-
Pages visited and actions taken on the Site
-
Cookies and similar tracking technologies
Wix-specific collection
Our website is hosted on Wix.com, which automatically collects technical data to ensure the Site functions properly. This may include:
Device and connection information
Site usage analytics
Security-related data (e.g., to detect suspicious activity)
Wix may store this data on secure servers located in the EU, USA, or Israel.
C. Information From Third Parties
We may receive personal information from:
-
Payment processors (e.g., Wix Payments, PayPal, Stripe)
-
Advertising platforms (e.g., Facebook/Instagram Ads, Google Ads)
-
Analytics providers
-
Delivery partners
2. How We Use Your Information
We use your information to:
-
Process and fulfil your orders
-
Provide confirmations, receipts, and delivery updates
-
Manage your customer account
-
Respond to enquiries and provide customer support
-
Improve our website and services
-
Send marketing communications (only with your consent)
-
Detect, prevent, and manage fraud or security issues
-
Comply with legal and financial obligations
3. Legal Bases for Processing (UK GDPR)
We process personal data under the following lawful bases:
-
Contract — to process orders and provide services
-
Consent — for marketing emails and non-essential cookies
-
Legitimate interests — website operation, fraud prevention, advertising
-
Legal obligation — tax, accounting, and consumer law requirements
4. Sharing Your Information
We do not sell your personal data.
However, we share information with trusted third parties that help us operate our business:
• Wix.com
We use Wix to host our website, store site data, process some customer information, facilitate orders, and provide security and analytics.
Wix may process data in the EU, USA, or Israel, using approved international safeguards.
• Payment processors
Examples include:
-
Wix Payments
-
Stripe
-
PayPal
These providers handle your payment details securely and never share full card information with us.
• Delivery/Courier Services
To ship your orders.
• Email Marketing Platforms
If you subscribe to our mailing list.
• Analytics and Advertising Partners
For website analytics and (if applicable) targeted advertising.
All third parties only receive the information required to perform their services.
5. International Data Transfers
Because we use Wix and other service providers, your data may be transferred outside the UK to countries including:
-
European Union
-
Israel (which has an adequacy decision)
-
United States
-
Other international locations where our providers operate
-
Transfers are protected by Standard Contractual Clauses or other legally approved safeguards.
6. Cookies
We use cookies to enable website functionality, performance monitoring, and personalised advertising.
Wix also uses its own essential, functional, and analytics cookies.
You can manage cookies through your browser or via our cookie banner.
A full Cookie Policy is available upon request.
7. Data Retention
We retain personal data only as long as necessary to:
Complete your orders
Meet legal, tax, and accounting obligations
Resolve disputes
Provide ongoing customer service
Marketing data is kept until you unsubscribe.
8. Your Rights
Under the UK GDPR, you have the right to:
-
Access your personal data
-
Rectify incorrect data
-
Request deletion (“right to be forgotten”)
-
Restrict or object to processing
-
Withdraw consent at any time
-
Request data portability
-
To exercise your rights, contact us using the details below.
9. Security
We implement appropriate technical and organisational security measures.
Wix also provides built-in security features, including encrypted storage, HTTPS, and threat monitoring.
10. Children’s Privacy
We do not knowingly collect data from individuals under 16.
If you believe a child has provided information, contact us and we will remove it.
11. Changes to This Policy
We may update this Privacy Policy from time to time.
The latest version will always be posted on our website.
12. Contact Us
If you have questions or want to exercise your data rights, contact us here:
Rebel Hearts
Email: therebelhearts@outlook.com
Address: 12 Duke Street, Tavistock - PL190BA


