Robyn&Reg — Privacy & Cookies Policy
Last updated: 03/08/2026
Robyn&Reg ("we", "us", "our") is committed to protecting your privacy. This policy explains what personal data we collect, why we collect it, how we use it, and what rights you have over it, in line with the UK General Data Protection Regulation (UK GDPR), the Data Protection Act 2018, and the Privacy and Electronic Communications Regulations (PECR).
By using our website or placing an order with us, you agree to the practices described in this policy.
1. Who We Are
Robyn&Reg is a UK-based pet accessories brand.
Data Controller: Robyn&Reg
Address: Park View Business Centre, Combermere, Whitchurch SY13 4AL
Contact email: robynandregpetwear@gmail.com
If you have any questions about this policy or how we handle your data, please contact us using the details above.
2. What Personal Data We Collect
We collect personal data in the following ways:
Information you give us directly:
- Name, delivery and billing address, email address, and phone number when you place an order.
- Payment information when you make a purchase (processed securely by our payment provider — see Section 5; we do not store your full card details ourselves).
- Email address and preferences when you sign up to our mailing list or waitlist.
- Any information you provide when contacting us, including via email, social media, or contact forms.
Information collected automatically:
- Technical data such as your IP address, browser type, device type, and operating system.
- Usage data such as pages visited, time spent on our site, and how you arrived at our site.
- Cookie data (see Section 7 below).
Information from third parties:
- Order and delivery information from our e-commerce and shipping partners.
- Engagement data from our email marketing platform (e.g. whether you've opened or clicked an email).
3. How We Use Your Data
We use your personal data for the following purposes:
PurposeLegal BasisProcessing and fulfilling your order, including delivery and customer servicePerformance of a contractHandling returns, refunds, and warranty claimsPerformance of a contract / legal obligationSending order confirmations and delivery updatesPerformance of a contractSending marketing emails (if you've opted in)ConsentImproving our website and understanding how it's usedLegitimate interestsPreventing fraud and keeping our site secureLegitimate interests / legal obligationComplying with tax, accounting, and legal obligationsLegal obligation
You can withdraw your consent to marketing communications at any time by clicking "unsubscribe" in any email, or by contacting us directly. This won't affect emails relating to an order you've already placed.
4. Marketing Communications
If you sign up to our mailing list or tick a marketing opt-in at checkout, we may send you emails about new products, launches, offers, and updates from Robyn&Reg.
- We will only send marketing emails to those who have opted in, in line with PECR requirements.
- Every marketing email includes an easy way to unsubscribe.
- We do not sell, rent, or share your email address with third parties for their own marketing purposes.
5. Sharing Your Data
We share personal data with trusted third parties only where necessary to run our business, including:
- E-commerce platform (e.g. Shopify) — to process orders and payments.
- Payment processors — to securely handle payment transactions. We do not store full card details.
- Delivery partners (e.g. Royal Mail) — to deliver your order, which requires sharing your name and delivery address.
- Email marketing platform (e.g. Klaviyo) — to send marketing emails and manage our mailing list, where you've opted in.
- IT and website hosting providers — to keep our website running securely.
- Professional advisors (e.g. accountants, solicitors) — where necessary for legal or financial purposes.
- Law enforcement or regulators — where required by law.
We require all third parties to respect the security of your data and to treat it in accordance with the law. We do not sell your personal data to third parties.
6. International Data Transfers
Some of our third-party providers may store or process data outside the UK (for example, in the EU or US). Where this happens, we ensure appropriate safeguards are in place, such as the provider being covered by UK adequacy regulations or approved Standard Contractual Clauses, to ensure your data remains protected to UK standards.
7. Cookies
Cookies are small text files placed on your device when you visit our website. We use cookies to make our site work properly, understand how it's used, and (where you consent) to support marketing.
Types of Cookies We Use
Cookie TypePurposeRequires Consent?Strictly necessaryEssential for the site to function — e.g. keeping items in your basket, remembering login sessions, enabling secure checkoutNo — these cannot be switched offAnalytics/performanceHelp us understand how visitors use our site, e.g. which pages are popular, so we can improve itYesFunctionalRemember your preferences, e.g. currency or previously viewed itemsYesMarketing/advertisingUsed to show you relevant adverts on other sites, and measure the effectiveness of our marketingYes
Managing Cookies
When you first visit our site, you'll see a cookie banner allowing you to accept or manage non-essential cookies. You can change your preferences at any time via [insert cookie settings link/method, e.g. a "Cookie Preferences" link in the site footer].
You can also control cookies through your browser settings, including deleting existing cookies and blocking future ones — though doing so may affect how our site functions.
8. Data Retention
We keep your personal data only for as long as necessary for the purposes it was collected, including to satisfy legal, accounting, or reporting requirements. As a general guide:
- Order and transaction data: retained for [insert period, e.g. 6 years] to meet UK tax and accounting obligations.
- Marketing data: retained until you unsubscribe or request deletion.
- Website usage data: typically retained for [insert period, e.g. 12–26 months] depending on the analytics tool used.
9. Your Rights
Under UK GDPR, you have the right to:
- Access the personal data we hold about you.
- Correct inaccurate or incomplete data.
- Erase your data ("right to be forgotten"), in certain circumstances.
- Restrict processing of your data in certain circumstances.
- Object to processing based on legitimate interests or for direct marketing.
- Data portability — receive your data in a portable format, or have it transferred to another provider.
- Withdraw consent at any time, where processing is based on consent.
To exercise any of these rights, please contact us at [insert privacy email]. We'll respond within one month, as required by law.
If you're unhappy with how we've handled your data, you have the right to complain to the UK's data protection regulator:
Information Commissioner's Office (ICO)
Website: ico.org.uk
Helpline: 0303 123 1113
10. Children's Privacy
Our website and products are intended for adults. We do not knowingly collect personal data from children under 13. If you believe a child has provided us with personal data, please contact us so we can remove it.
11. Data Security
We use appropriate technical and organisational measures to protect your personal data against unauthorised access, loss, or misuse, including secure checkout processes and restricted access to customer data. However, no method of transmission over the internet is 100% secure, and we cannot guarantee absolute security.
12. Changes to This Policy
We may update this policy from time to time to reflect changes in our practices or legal requirements. Any changes will be posted on this page with an updated "last updated" date.
13. Contact Us
If you have any questions about this policy or how we handle your personal data:
Robyn&Reg
Park View Business Centre, Combermere, Whitchurch SY13 4AL
robynandregpetwear@gmail.com
This policy is provided as general guidance based on UK GDPR, the Data Protection Act 2018, and PECR, and is not a substitute for independent legal advice. Before publishing, we'd strongly recommend: (1) confirming your ICO registration, (2) listing the actual third-party tools and processors you use (e.g. specific Shopify apps, analytics tools, ad platforms) rather than the general examples given here, and (3) having a solicitor or data protection consultant review the final version, particularly the cookie consent mechanism, which needs to be technically implemented (not just described) to be compliant.