Last updated: July 2026
Section One
Privacy Policy
1. Who We Are
Maxphar LTD (“Maxphar”, “we”, “us”, “our”) is a company registered in England and Wales under Company Registration Number 13205415. This Privacy Policy explains how we collect, use, store, and protect your personal data when you visit maxphar.co.uk or place an order with us, in accordance with the UK General Data Protection Regulation (UK GDPR) and the Data Protection Act 2018.
2. What Personal Data We Collect
We collect the following categories of personal data:
- Contact details: name, email address, phone number, delivery and billing address.
- Order and account information: order history, products purchased, account login details.
- Payment information: we do not store your full card details. Payments are processed securely by Stripe, our third-party payment processor.
- Technical and browsing data: IP address, browser type, device information, pages visited, and time spent on site, collected via cookies and similar technologies.
- Marketing preferences: whether you have opted in to receive our newsletter and communications.
- Customer service records: details of any enquiries, complaints, or correspondence with us.
3. How We Use Your Data
We use your personal data to:
- Process and fulfil your orders, including payment, delivery, and returns.
- Create and manage your account.
- Respond to customer service enquiries.
- Send you order confirmations and essential service communications.
- Send you marketing emails via Mailchimp, where you have given your consent, which you may withdraw at any time.
- Analyse website traffic and improve our site’s performance and content.
- Run and measure advertising campaigns via Google Ads and Meta (Facebook/Instagram), where you have consented to marketing cookies.
- Comply with our legal and regulatory obligations, including tax and consumer protection law.
4. Legal Basis for Processing
We rely on the following legal bases under UK GDPR:
- Contract: to process your orders and provide the products and services you have requested.
- Consent: for marketing emails and non-essential cookies (analytics and advertising).
- Legitimate interests: to improve our website, prevent fraud, and operate our business efficiently.
- Legal obligation: to comply with tax, accounting, and consumer protection requirements.
5. Who We Share Your Data With
We only share your personal data with third parties where necessary to operate our business:
- Stripe — to securely process your payment. Stripe processes your card details directly; Maxphar does not store your full payment card information.
- Wise Business — our company’s business banking provider, used for receiving payouts and managing company finances. Wise Business does not have access to your browsing activity or marketing preferences.
- Delivery and fulfilment partners — to dispatch your order to you, we share the minimum necessary delivery details (name and address) with our shipping and fulfilment suppliers.
- Google Analytics and Google Ads — to understand website usage and measure the effectiveness of our advertising, where you have consented to analytics/advertising cookies.
- Meta (Facebook/Instagram) Pixel — to measure and improve our social media advertising, where you have consented to marketing cookies.
- Mailchimp — to send our email newsletter, only to those who have opted in.
We do not sell your personal data to any third party.
6. International Data Transfers
Some of our service providers (including Stripe, Google, Meta, and Mailchimp) may process data outside the UK. Where this happens, we ensure appropriate safeguards are in place, such as Standard Contractual Clauses or the provider’s own UK/EU adequacy arrangements, to protect your data to UK GDPR standards.
7. How Long We Keep Your Data
We retain personal data only for as long as necessary: order and transaction records are typically kept for 6 years to meet UK tax and accounting obligations; marketing data is kept until you withdraw consent; account data is kept while your account remains active.
8. Your Rights
Under UK GDPR, you have the right to:
- Access the personal data we hold about you.
- Request correction of inaccurate data.
- Request deletion of your data (“right to be forgotten”), subject to legal retention requirements.
- Restrict or object to certain processing, including direct marketing.
- Request a copy of your data in a portable format.
- Withdraw consent at any time, without affecting past processing.
- Lodge a complaint with the Information Commissioner’s Office (ICO) at ico.org.uk if you believe your data has been mishandled.
To exercise any of these rights, contact us using the details below.
9. Children’s Privacy
Our website and products are intended for adults. We do not knowingly collect personal data from anyone under the age of 18.
10. Changes to This Policy
We may update this Privacy Policy from time to time. Any changes will be posted on this page with an updated revision date.
Contact us: If you have any questions about this Privacy Policy or wish to exercise your data rights, please contact us at [insert contact email] or write to Maxphar LTD, [insert registered office address].
