the-littlest-thistle.com (“we,” “our,” or “us”) values your trust and is committed to protecting your privacy. This Privacy Policy explains in detail how we collect, use, store, and protect your personal information when you visit our website, engage with our content, or use our services.
By using this website, you agree to the terms of this Privacy Policy. If you do not agree, please discontinue use of our site.
1. Information We Collect
We collect personal and non-personal information to provide a better experience, improve our services, and fulfill our legal obligations.
1.1 Information you provide directly
- Personal identifiers: name, surname, username or nickname
- Contact information: email address, phone number (if provided), postal address (for purchases or subscriptions)
- Purchase information: billing address, order details, payment method (processed securely through third-party providers, we do not store card details)
- Communications: information shared when you contact us, submit forms, or leave comments
1.2 Information collected automatically
- Technical data: IP address, browser type and version, device type, operating system, screen resolution
- Usage data: pages visited, time spent, referral links, clicks, scrolling, and interaction with content
- Cookies and tracking: small files stored on your device to remember preferences, track behavior, and support analytics
1.3 Information from third parties
We may receive data from:
- Social media platforms (if you interact with us there)
- Analytics providers such as Google Analytics
- Advertising networks or affiliate partners
2. How We Use Your Information
We process your personal data for the following purposes:
- Service delivery: to operate and maintain the website and provide requested services
- Communication: to respond to inquiries, send updates, and provide newsletters (only if you’ve subscribed)
- Transactions: to process orders, payments, and deliver digital or physical products
- Personalization: to recommend content, articles, or products tailored to your interests
- Analytics: to measure performance, understand audience behavior, and improve the website
- Security: to detect and prevent fraud, spam, or unauthorized access
- Legal compliance: to meet obligations under applicable laws and regulations
3. Legal Basis for Processing (GDPR/UK GDPR)
If you are located in the EU, UK, or another GDPR-compliant region, we rely on the following lawful bases:
- Consent (Article 6(1)(a)): when you sign up for newsletters or marketing communications
- Contract (Article 6(1)(b)): when we need data to provide products or services you requested
- Legal obligation (Article 6(1)(c)): when required by law, tax, or regulatory authorities
- Legitimate interests (Article 6(1)(f)): for site analytics, fraud prevention, improving services
4. Cookies and Tracking Technologies
We use cookies, pixels, and similar technologies to:
- Enable essential website functionality
- Remember preferences (language, login, settings)
- Analyze usage patterns for performance improvement
- Deliver relevant advertising (where applicable)
You can control or disable cookies through your browser settings. Please note that disabling cookies may affect some website functionality.
5. Data Sharing and Disclosure
We do not sell or rent your personal data. However, we may share information with:
- Service providers: hosting companies, payment processors, email delivery systems, and analytics providers
- Business partners/affiliates: when promoting joint content, with your consent
- Legal authorities: if required to comply with a legal request, protect rights, or prevent fraud
- Successors in business: if we undergo a merger, acquisition, or sale of assets
All third parties are required to use your data responsibly and only for agreed purposes.
6. International Data Transfers
Your information may be stored and processed in countries outside your place of residence, including the United States and the European Union. We take steps to ensure adequate protection of your data, including using Standard Contractual Clauses (SCCs) where required.
7. Data Retention
We will keep your personal data only for as long as necessary:
- To provide services you requested
- To comply with legal, accounting, or tax obligations
- To resolve disputes and enforce agreements
When data is no longer required, it will be securely deleted or anonymized.
8. Your Rights
Depending on your location, you may have the following rights:
- Access: request a copy of your personal data
- Correction: update or correct inaccurate information
- Erasure (“Right to be forgotten”): request deletion of your data
- Restriction: limit processing under certain conditions
- Objection: object to processing based on legitimate interests or direct marketing
- Portability: request transfer of your data to another provider (where technically possible)
- Withdraw consent: stop processing where consent was the basis
To exercise your rights, please contact us using the details below. We may require verification of identity before processing requests.
9. Children’s Privacy
Our website is not directed at children under [insert age, e.g., 13 or 16 depending on jurisdiction], and we do not knowingly collect personal information from them. If we discover that we have collected data from a child, we will delete it immediately.
10. Data Security
We use appropriate technical, organizational, and administrative measures to safeguard your data against unauthorized access, loss, misuse, or disclosure. However, no system is 100% secure, and we cannot guarantee absolute security.
11. Third-Party Links
Our site may contain links to other websites. We are not responsible for their privacy practices and encourage you to review their privacy policies before providing personal information.
12. Changes to This Privacy Policy
We may update this Privacy Policy from time to time. Any changes will be posted on this page with an updated “Effective Date.” If changes are significant, we may notify you via email or a prominent notice on the website.