Privacy Policy

If you wish to accept our privacy terms, unless you haven't done so already, you may do so by clicking on the following link: Accept Privacy & GDPR

Data Controller

Pillow Creative Ltd (Registered address: 14 Netherbank, Galashiels, Scottish Borders, UK, Telephone: (0) 1896 751 577) is the Data Controller of the personal information you provide us. We are responsible for looking after this information in the way which you've agreed to.

Personal Information | Business Information

To enable us to conduct business with you, we will ask for your:

Furthermore, we will need access to your business website for which we will need the login credentials, and any special access via an existing File Transfer Protocol [FTP] server. In addition to this we may need third party access to any other services used in order to facilitate the running of your business. This may include: A website hosting service; a third party newsletter service; a payment processor like PayPal or a website domain registration service.

These details will be used to access your website and third party business services to build, develop, update, maintain, migrate or any other services to which we have been contracted.

By giving us access to your personal and business information we are able to undertake the processes of maintaining, building and developing your business website. If you chose NOT to allow us to retain this information, we would be UNABLE to access your website, back end services, third party services, and any or other service needed to complete our mandate.

If you choose to do so, we will keep your details for this purpose only. We would never, ever, pass on your personal details to a third party, other than to our payment processor (PayPal). Those details would be limited to an Email address, your name/business name and contact address.

We offer our business services to adults only. We would not entertain, nor engage, in offering our business services to children under 16 years of age, and as such, they are not permitted to enter personal information on our website.

Payment Information

We use a third party to process all payments (PayPal) and we do not have any access to credit card, your business or personal banking details or debit card details that you use at the payment stage whenever completing payment of an invoice sent by us. For their privacy policy information, please visit www.paypal.com.

Information We Collect

Due to the nature of our relationship, by accepting the terms of our service and agreeing to whichever business services requested, we would require that you would be opting-in to occasional contact Emails from us to facilitate ongoing updates, changes to billing procedures, emergent threat notifications due to attacks against your website, and other informative Emails to help develop and maintain your business website - We will NOT use your personal or business data for any other purpose.

How long do we keep your data?

We retain your data for as long as we have a business relationship with you. If you no longer wish to be a client, or we have decided to end the business relationship by our own prerogative, most data would be erased and deleted from our systems, other than invoicing or payment details, which need to be held for 5 years due to HMRC regulations.

Your rights

If you would like to know what personal data we hold on record for you, please contact us via email (dataretention@pillowcreative.com) or phone (0) 1 896 751 577. We will provide you with a copy of all your data free of charge within 30 days of the request. However, if subsequent requests are received to be sent further copies of your data, after the original request has been dealt with, then there is a charge based on our administrative costs.

You can learn more about your personal data rights, including how to complain about a suspected breach of your data handling by visiting https://ico.org.uk/for-the-public.

Breach Notification

In the unlikely event that we (the Data Controller) become aware of a data breach within the company, or at our Data Processors (PayPal), we will notify the ICO (Information Commissioners Office – The Regulator) and the data subjects within 72 hours.

Cookies

This site uses cookies which monitor usage, and control the operation of the site. A "cookie" is a small text file that may be used to collect information about web site activity like page visits. Most web browsers allow you to control cookies, whether or not to accept them and how to remove them.

Some cookies are necessary for the operation of our website, if you choose to block them some aspects of the site may not work properly. Non necessary cookies are set when you have given your explicit consent to their use.

There are browser extensions, for Chrome or FireFox, you may use to control script files and cookies from remote servers and block them if you wish. Please visit:

FireFox - Firefox Extensions

Chrome - Google Extensions

Our site uses session cookies, which are generally deleted from our server every few hours. These cookies may reside in your browser cache, which you can delete at any time. If you revisit our website then another session cookie is generated.

Your IP address, web browser used, and pages visited are stored in our web server log files. These log files are auto generated by our server and are used for security purposes. These log files are deleted every 30 days on a rotational basis.

We do not retain these log files long term. The only instance a log file may be retained for longer than 30 days, would be in the investigation of a security breach, which we would be required to retain such log files in pursuit of an investigative resolution. After any such investigation is completed these log files would be deleted.

Security

The personal and business information we collect and retain is stored cryptographically encrypted on a non Internet accessible web server. This information is not accessible by using the general Internet.

We retain, encrypt, and store this information that you have provided us with, in order to facilitate the functions of our business services. We manage this information and have policies in place to deal with how this information is accessed, and whom has access.

If you wish to accept our privacy terms, unless you haven't done so already, you may do so by clicking on the following link:

Accept Privacy & GDPR