This notice sets out the basis on which any personal data we collect from you, or that you provide to us, will be processed by us. We are users too, and now more than ever share your zeal in wanting to keep what is private, private.
Please read the following carefully to understand our views and practices regarding your sensitive information and how we will deal with it. For the purposes of the Data Protection Act (‘the DPA’) and the EU General Data Protection Regulation (‘the GDPR’), sensitive information includes what is defined as your ‘personal data’.
By visiting https://www.glamourbeautyclub.com (the ‘Website’) you accept and provide explicit consent to the practices described in this Privacy Notice including the processing of your personal data under this lawful basis. In this Privacy Notice, we seek to abide by the letter and spirit of the guidelines laid out by the UK Information Commissioner’s Office in the document ‘Privacy Notices, Transparency and Control’.
Glamour Beauty Club is powered by SoPost Limited. We are a company registered in England and Wales with Company number 08216668 and our registered office is at Suite 206, The Record Hall, 16-16A Baldwin's Gardens, London, EC1N 7RJ, United Kingdom.
We are registered with the Information Commissioner’s Office under registration number Z343508X and you can view our registration in full here.
For the purposes of the DPA and in-line with the GDPR, SoPost Limited is the Data Controller.
If you have any concerns about the way we use your information or any questions about this Privacy Notice, please let us know. We can be contacted via email at firstname.lastname@example.org, or you can write to us at the address above.
We will use your information to:
We compile statistics about user trends on our Website, which are used by third party organisations to understand how users interact with businesses, brands and one another online and to advise about these things. These statistics are drawn from a dataset which does not contain any information from which you can be identified.
We will collect and process the following information about you:
Information you give us - this is information about you that you give us by filling in forms on our Website or by corresponding with us by phone, email or otherwise. It includes information you provide when you request a product through our Website. We only request from you the minimum data required for you to access our Glamour Beauty Club service.
The tailored service that we deliver involves us asking for what the GDPR defines as your ‘Sensitive Personal Data’ (SPD). We use your Sensitive Personal Data to deliver products suitable to your skin tone and other cosmetic preferences. This information will NEVER be shared with any third parties under any circumstances and will be stored and processed in accordance with your explicit consent to this Privacy Notice.
When signing up to Glamour Beauty Club we will ask for your name, date of birth, postal address and email address. We will also ask you to complete your ‘Beauty Profile’ which will involve the collection of your:
Your Beauty Profile is an essential part of the service that we deliver. We use it to select samples that we think you will like, based on the recommendations made by our brand partners (who never see your Beauty Profile themselves).
SoPost does not collect or store any of your financial information. Where access to your financial information such as credit or debit card is required, this information will be processed through secure payment pages of our chosen third party service providers (e.g. PayPal, Stripe).
Information we collect about you – Whenever you visit our Website we will automatically collect the following information:
technical information - including the Internet protocol (IP) address used to connect your computer to the Internet, your login information, browser type and version, time zone setting, browser plug-in types and versions, operating system and platform;
information about your visit - this includes the full Uniform Resource Locators (URL), clickstream to, through and from our Website (including date and time), pages you have visited, page response times, download errors, length of visits to certain page and page interaction information (such as scrolling, clicks, and mouse-overs).
Information we receive from other sources - This is information we receive about you if you use any of the other websites we operate or the other services we provide. In this case we will have informed you when we collected that data if we intend to share those data internally and combine it with data collected on this Website. We will also have told you for what purpose we will share and combine your data. We are working closely with third parties (including, for example, business partners, sub-contractors in technical, payment and delivery services, advertising networks, analytics providers, search information providers, credit reference agencies). We will notify you when we receive information about you from them and the purposes for which we intend to use that information.
The information and content held on our Website is deployed geographically to maximise user experience. All information that could identify individuals within the European Union is stored exclusively within the European Union. We will never share your user information with third parties for promotional purposes.
Our production databases are stored in Google Cloud which is contracted by use for the provision of technical services. We remain responsible at all times for the security of your information, but if you want to know more about how we interact with Google Cloud you can view their Privacy Notice, amongst their other policies here.
We use Postmark to send email from our platform. In order to do this, we have to supply Postmark with your email address and a body for the email. If you want to know more about how we interact with Postmark you can view their Privacy notice, amongst other policies here.
With your consent during the sign up process, we will share your name and contact details with Condé Nast, publishers of Glamour Magazine, so they can send you newsletters, special offers and other information about that publication. You can unsubscribe from those mailings at any time.
We may also disclose your information to third parties to whom we may choose to sell, transfer, or merge parts of our business or our assets. Alternatively, we may seek to acquire other businesses or merge with them. If a change happens to our business, then the new owners may use your personal data in the same way as set out in this Privacy Notice.
We take the security of your personal data very seriously. Our approach to information security is constantly evolving and continually reviewed.
We have adopted industry best practices from both technological and business process perspectives in order to make the security of your data a key part of the way we do business.
We have policies and practices in place that not only ensure our compliance under the DPA but also the GDPR, including training and adequate procedures put in place for any staff that handle or have access to sensitive information.
We may contact you via email with updates about the services that we offer or any changes that we have made to our Website.
You can opt in or out at any time by clicking the ‘Unsubscribe’ link in our emails.
Our Website may, from time to time, contain links to and from the websites of our partner networks, advertisers and affiliates (including, but not limited to, websites on which our service may be advertised). If you follow a link to any of these websites, please note that these websites and any services that may be accessible through them have their own privacy policies and that we are not responsible or liable for these policies or for any personal data that may be collected through these websites or services, such as contact and location data. Please check these policies before you submit any personal data to these websites or use these services.
You have the right to find out what information we hold about you. You can exercise that right by contacting us and we will send you any request for information in a suitable electronic form within 20 working days. To make a request for information please contact email@example.com and a member of our team will be in touch.
If your personal data is incorrect then you have the right to rectify this information and ensure that it is accurate and up to date. If your data is incorrect then please contact us at the email address above and a member of the SoPost team will rectify this on your behalf.
You have the right ‘to be forgotten’ and to have your personal identifiable information permanently deleted from our systems. To exercise this right and have your data deleted, visit our unsubscribe page. This process will permanently delete your data from our systems.
There will be no charge made for reasonable electronic access to your information, your right to rectification or for your right to be forgotten from our systems.
At SoPost we have procedures in place to regularly review what personal data we hold. If you have not interacted with us or accessed our services for an extended period then we may delete your personal data from our systems, but will send you an email first informing you of our intention to do so. Of course, you have the right to forgotten at any point and can find out more about this in the ‘Your Rights’ section above.
Any changes we may make to our Privacy Notice in the future will be posted on this page. The new terms may be displayed on-screen and you will be required to read and accept them to continue your use of our services.
Information about the Cookies we use can be found here.
If you consider we have not addressed your problem, you can contact the UK Information Commissioner’s Office for assistance. Further information can be found here.