Privacy Policy

Vape Lady's Maid Ltd is an online retail vape company established in the UK. We are a controller under data protection laws. This means we have a legal responsibility to ensure that we, and other companies with whom we share your personal data, process your personal data securely and lawfully in accordance with the General Data Protection Regulations (GDPR).

We are required to provide you with the information in this Privacy Policy in order to comply with our legal obligations as a controller.

Vape Lady's Maid Ltd ("us", "we", or "our") operates the www.vapeladysmaid.com and www.vapeladysmaid.co.uk website and the Lady's Maid mobile application (the "Service").

This page informs you of our policies regarding the collection, use, and disclosure of personal data when you use our Service and the choices you have associated with that data.

We use your data to provide and improve the Service. By using the Service, you agree to the collection and use of information in accordance with this policy. Unless otherwise defined in this Privacy Policy, terms used in this Privacy Policy have the same meanings as in our Terms and Conditions.

We process personal information to facilitate our business activities. Our legal basis for processing this information is detailed below:

  • Legal Obligation: As a supplier of e-liquids that contain Nicotine we are legally required to check that our customers are aged 18 and over. We use a third party (detailed below under Third Parties) to perform these checks.
  • Contract: By ordering from us and by us subsequently confirming acceptance of your order we are entering into a contract to supply goods. To enable us to fulfil this contract we require details such as name, address, email and phone numbers.
  • Consent: As part of our account registration process you have the option to sign up for our marketing emails. By providing your consent this gives us the right to email you about products or services that we think may be of interest. You have the option to opt out of these emails at any time.

Personal data, or personal information, means any information about an individual from which that person can be identified. It does not include data where the identity has been removed (anonymous data).

Types of Data Collected

While using our Service, we may ask you to provide us with certain personally identifiable information that can be used to contact or identify you ("Personal Data"). Personally, identifiable information may include, but is not limited to:

Personal Data

  • The first name, middle name and last name
  • Maiden Name
  • Username or similar identifier
  • Date of birth and gender
  • Address, post code, city, and country

Contact Data

  • Billing address and delivery address
  • Email address and telephone numbers

Financial Data

  • Bank account and payment card details

Transaction Data

  • Details about payments to and from you and other details of products and services you have purchased from us

Technical Data

  • Internet protocol (IP) address
  • Your login data, browser type, and version
  • Time zone setting and location
  • Browser plug-in types and versions
  • Operating system and platform and other technology on the devices you use to access our website

Profile Data

  • Username and password
  • Purchases or orders made by you
  • Interests, preferences, feedback and survey responses

Marketing and Communications Data

  • Preferences in receiving marketing from us and our third parties and your communication preferences
  • Subscribing to our newsletter will mean we will provide you with marketing and promotional materials, you will have the option to unsubscribe from the newsletter at any time

Where we need to collect personal data by law, or under the terms of a contract we have with you and you fail to provide that data when requested, we may not be able to perform the contract we have or are trying to enter into with you. In this case, we may have to cancel a product or service you have with us but we will notify you if this is the case at the time.

We may also collect information that your browser sends whenever you visit our Service or when you access the Service by or through a mobile device ("Usage Data").

This Usage Data may include information such as your computer's Internet Protocol address (e.g. IP address), browser type, browser version, the pages of our Service that you visit, the time and date of your visit, the time spent on those pages, unique device identifiers and other diagnostic data.

When you access the Service by or through a mobile device, this Usage Data may include information such as the type of mobile device you use, your mobile device unique ID, the IP address of your mobile device, your mobile operating system, the type of mobile Internet browser you use, unique device identifiers and other diagnostic data.

We use cookies and similar tracking technologies to track the activity on our Service.

Cookies are files with small amount of data which may include an anonymous unique identifier. Cookies are sent to your browser from a website and stored on your device. Tracking technologies also used are beacons, tags, and scripts to collect and track information and to improve and analyse our Service.

You can instruct your browser to refuse all cookies or to indicate when a cookie is being sent. However, if you do not accept cookies, you may not be able to use some portions of our Service.

Please refer to our Cookie Policy for further information and guidance.

We will only use your personal data in accordance with the data protection laws. Most commonly, we will use your personal data in the following circumstances:

  • To provide and maintain the Service
  • To notify you about changes to our Service
  • To allow you to participate in interactive features of our Service when you choose to do so
  • To provide customer care and support
  • To provide analysis or valuable information so that we can improve the Service
  • To monitor the usage of the Service
  • To detect, prevent and address technical issues
  • Where we need to perform the contract, we are about to enter into or have entered into with you
  • Where it is necessary for our legitimate interests (or those of a third party) and your interests and fundamental rights do not override those interests
  • Where we need to comply with a legal or regulatory obligation

Generally, we do not rely on consent as a legal basis for processing your personal data other than in relation to sending third-party direct marketing communications to you via email or text message. You have the right to withdraw consent to marketing at any time by contacting us.

We will take all steps reasonably necessary to ensure that your data is treated securely and in accordance with this Privacy Policy and no transfer of your Personal Data will take place to an organisation or a country unless there are adequate controls in place including the security of your data and other personal information.

Outside the European Economic Area (EEA)

Your information, including Personal Data, may be transferred to and maintained on computers located outside of your state, province, country or other governmental jurisdiction where the data protection laws may differ than those from your jurisdiction.

If you are located outside the United Kingdom and choose to provide information to us, please note that we transfer the data, including Personal Data, to the United Kingdom and process it there.

Your consent to this Privacy Policy followed by your submission of such information represents your agreement to that transfer.

Inside the European Economic Area (EEA)

Your information, including Personal Data, will not be transferred outside the EEA if you are located inside the United Kingdom or within the EEA.

We will only transfer your personal data to countries that have been deemed to provide an adequate level of protection for personal data by the European Commission.

Where we use certain service providers, we may use specific contracts approved by the European Commission which give personal data the same protection it has in Europe.

Where we use providers based in the US, we may transfer data to them if they are part of the Privacy Shield which requires them to provide similar protection to personal data shared between Europe and the US.

Legal Requirements

We may have to disclose your Personal Data in good faith that such action is necessary to:

  • To comply with a legal obligation
  • To protect and defend the rights or property of Vape Lady's Maid
  • To prevent or investigate possible wrongdoing in connection with the Service
  • To protect the personal safety of users of the Service or the public
  • To protect against legal liability

Security of Data

The security of your data is important to us, but remember that no method of transmission over the Internet, or method of electronic storage is 100% secure. We have put in place appropriate security measures to prevent your personal data from being accidentally lost, used or accessed in an unauthorised way, altered or disclosed. In addition, we limit access to your personal data to those employees, agents, contractors and other third parties who have a business need to know. They will only process your personal data on our instructions and they are subject to a duty of confidentiality.

We have put in place procedures to deal with any suspected personal data breach and will notify you and any applicable regulator of a breach where we are legally required to do so.

Third Party Service Providers 

We may employ third party companies and individuals to facilitate our Service ("Service Providers"), to provide the Service on our behalf, to perform Service-related services or to assist us in analysing how our Service is used.

These third parties have access to your Personal Data only to perform these tasks on our behalf and are obligated not to disclose or use it for any other purpose.

Internal Third Parties

  • Internal Third Parties include other companies in the Vape Lady’s Maid acting as joint controllers or processors and who are based in the EEA and provide IT and system administration services and undertake leadership reporting

External Third Parties

  • Service providers acting as processors based in the EEA who provide IT and system administration services.
  • Professional advisers acting as processors or joint controllers including lawyers, bankers, auditors and insurers based in the EU who provide consultancy, banking, legal, insurance and accounting services.
  • HM Revenue & Customs, regulators and other authorities acting as processors or joint controllers based in the United Kingdom who require reporting of processing activities in certain circumstances.
  • Third parties to whom we may choose to sell, transfer, or merge parts of our business or our assets. Alternatively, we may seek to acquire other businesses or merge with them. If a change happens to our business, then the new owners may use your personal data in the same way as set out in this Privacy Policy.

We require all third parties to respect the security of your personal data and to treat it in accordance with the law. We do not allow our third-party service providers to use your personal data for their own purposes and only permit them to process your personal data for specified purposes and in accordance with our instructions.

Analytics

We may use third-party Service Providers to monitor and analyse the use of our Service.

  • Google Analytics

Google Analytics is a web analytics service offered by Google that tracks and reports website traffic. Google uses the data collected to track and monitor the use of our Service. This data is shared with other Google services. Google may use the collected data to contextualize and personalize the ads of its own advertising network.

For more information on the privacy practices of Google, please visit the Google Privacy & Terms web page: https://policies.google.com/privacy?hl=en

Our Service may contain links to other sites that are not operated by us. If you click on a third-party link, you will be directed to that third party's site. We strongly advise you to review the Privacy Policy of every site you visit.

We have no control over and assume no responsibility for the content, privacy policies or practices of any third-party sites or services.

Our Service does not address anyone under the age of 18 ("Children").

We do not knowingly collect personally identifiable information from anyone under the age of 18. If you are a parent or guardian and you are aware that your Children has provided us with Personal Data, please contact us. If we become aware that we have collected Personal Data from children, we will take steps to remove that information from our servers.

We may update our Privacy Policy from time to time. We will notify you of any changes by posting the new Privacy Policy on this page.

We will let you know via email and/or a prominent notice on our Service, prior to the change becoming effective and update the "effective date" at the top of this Privacy Policy.

You are advised to review this Privacy Policy periodically for any changes. Changes to this Privacy Policy are effective when they are posted on this page.

The law gives you the right to access information held about you. You may request a subject access request (SAR). A charge or fee of £10 will be invoiced to you to meet our costs in providing you with the information.

If you have any questions about this Privacy Policy, please contact us:

  • By visiting this page on our website: 'Contact Us' form
Sale

Unavailable

Sold Out