Privacy Policy

Last Updated: April 19, 2026

1. Introduction

Petals & Stems ("we," "our," or "us") is committed to protecting your privacy. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you visit our website your-domain.com and use our services.

Please read this privacy policy carefully. If you do not agree with the terms of this privacy policy, please do not access the site.

2. Information We Collect

2.1 Personal Data

We may collect personal information that you voluntarily provide to us when you:

  • Place an order for flowers or related products
  • Register for an account
  • Subscribe to our newsletter
  • Contact us via email, phone, or contact form
  • Participate in surveys or promotions

This information may include:

  • Name and contact information (email address, phone number, billing address, delivery address)
  • Payment information (credit card details, billing information)
  • Order history and preferences
  • Account credentials (username and password)
  • Communication preferences

2.2 Automatically Collected Information

When you visit our website, we automatically collect certain information about your device, including:

  • IP address and browser type
  • Operating system and device information
  • Referring URLs and pages viewed
  • Date and time of visits
  • Clickstream data and website usage patterns

2.3 Cookies and Tracking Technologies

We use cookies, web beacons, and similar tracking technologies to enhance your experience. See our Cookie Policy section below for more details.

3. How We Use Your Information

We use the collected information for the following purposes:

  • Order Processing: To process and fulfill your flower orders, arrange deliveries, and send order confirmations
  • Customer Service: To respond to inquiries, provide customer support, and resolve disputes
  • Account Management: To create and manage your account, including authentication and security
  • Marketing Communications: To send newsletters, promotional offers, and updates (with your consent)
  • Website Improvement: To analyze usage patterns, improve our services, and enhance user experience
  • Legal Compliance: To comply with legal obligations and protect our rights
  • Fraud Prevention: To detect, prevent, and address fraudulent activities and security issues
  • Personalization: To provide personalized recommendations and content based on your preferences

4. Legal Basis for Processing (GDPR)

We process your personal data based on the following legal grounds:

  • Contract Performance: Processing necessary to fulfill our contract with you (order processing and delivery)
  • Consent: You have given explicit consent for specific processing activities (marketing emails)
  • Legitimate Interests: Processing necessary for our legitimate business interests (fraud prevention, website improvement)
  • Legal Obligation: Processing required to comply with legal obligations (tax records, accounting)

5. How We Share Your Information

We may share your information with the following third parties:

5.1 Service Providers

  • Payment Processors: To securely process transactions
  • Delivery Services: To fulfill flower delivery orders
  • Email Service Providers: To send transactional and marketing emails
  • Cloud Hosting Providers: To store and manage data
  • Analytics Services: To analyze website traffic and user behavior

5.2 Business Transfers

In the event of a merger, acquisition, or sale of assets, your information may be transferred to the acquiring entity.

5.3 Legal Requirements

We may disclose your information when required by law, court order, or to protect our rights, safety, or property.

5.4 With Your Consent

We may share your information with other parties when you provide explicit consent.

6. Cookie Policy

We use cookies and similar tracking technologies to improve your browsing experience.

6.1 Types of Cookies We Use

  • Essential Cookies: Required for website functionality (shopping cart, login sessions)
  • Performance Cookies: Collect anonymous data about site usage and performance
  • Functionality Cookies: Remember your preferences and settings
  • Marketing Cookies: Track your activity for targeted advertising (with consent)

6.2 Managing Cookies

You can control cookies through your browser settings. Please note that disabling cookies may affect website functionality. Most browsers allow you to:

  • View and delete cookies
  • Block third-party cookies
  • Block all cookies (may impair site functionality)
  • Delete cookies when closing the browser

7. Third-Party Services

Our website may contain links to third-party websites and integrate with external services. We are not responsible for the privacy practices of these third parties. We may use:

  • Google Analytics: For website traffic analysis
  • Social Media Platforms: For social sharing and marketing
  • Payment Gateways: For secure payment processing
  • Email Marketing Services: For newsletter distribution

Please review the privacy policies of these third-party services before using them.

8. Data Security

We implement appropriate technical and organizational security measures to protect your personal information, including:

  • SSL/TLS encryption for data transmission
  • Secure server infrastructure and firewalls
  • Regular security audits and updates
  • Access controls and authentication measures
  • Employee training on data protection

However, no method of transmission over the internet is 100% secure. While we strive to protect your information, we cannot guarantee absolute security.

9. Data Retention

We retain your personal information only as long as necessary to fulfill the purposes outlined in this Privacy Policy, unless a longer retention period is required or permitted by law.

  • Account Information: Retained while your account is active and for a reasonable period afterward
  • Order Data: Retained for accounting, tax, and legal compliance purposes (typically 7 years)
  • Marketing Data: Retained until you unsubscribe or withdraw consent
  • Website Analytics: Aggregated data retained indefinitely; individual data anonymized after 26 months

10. Your Privacy Rights

Depending on your location, you may have the following rights regarding your personal data:

10.1 GDPR Rights (EU Residents)

  • Right to Access: Request copies of your personal data
  • Right to Rectification: Request correction of inaccurate or incomplete data
  • Right to Erasure: Request deletion of your personal data ("right to be forgotten")
  • Right to Restrict Processing: Request limitation of data processing
  • Right to Data Portability: Receive your data in a structured, machine-readable format
  • Right to Object: Object to processing based on legitimate interests or direct marketing
  • Right to Withdraw Consent: Withdraw previously given consent at any time

10.2 CCPA Rights (California Residents)

  • Right to know what personal information is collected
  • Right to know if personal information is sold or disclosed
  • Right to opt-out of the sale of personal information
  • Right to deletion of personal information
  • Right to non-discrimination for exercising your rights

10.3 How to Exercise Your Rights

To exercise any of these rights, please contact us using the information provided in the "Contact Us" section. We will respond to your request within 30 days.

11. Children's Privacy

Our services are not intended for children under the age of 16. We do not knowingly collect personal information from children. If we become aware that we have collected data from a child without parental consent, we will take steps to delete that information promptly.

12. International Data Transfers

Your information may be transferred to and processed in countries other than your country of residence. We ensure appropriate safeguards are in place, including:

  • Standard Contractual Clauses approved by the European Commission
  • Privacy Shield certification (where applicable)
  • Other legally approved transfer mechanisms

13. Do Not Track Signals

Some web browsers have a "Do Not Track" feature. Currently, we do not respond to Do Not Track signals. We may adopt a standard for responding to such signals in the future.

14. Marketing Communications

With your consent, we may send you marketing emails about our products, special offers, and promotions. You can opt-out at any time by:

  • Clicking the "unsubscribe" link in our emails
  • Updating your account preferences
  • Contacting us directly

Please note that you will still receive transactional emails related to your orders even if you opt-out of marketing communications.

15. Changes to This Privacy Policy

We reserve the right to update this Privacy Policy at any time. We will notify you of any material changes by:

  • Posting the new Privacy Policy on this page
  • Updating the "Last Updated" date
  • Sending an email notification (for significant changes)

Your continued use of our website after changes are posted constitutes your acceptance of the updated policy.

16. Contact Us

If you have any questions, concerns, or requests regarding this Privacy Policy or our data practices, please contact us:

Petals & Stems

Email: [email protected]

Phone: +1 (555) 555-1234

Mailing Address:
Petals & Stems
Attn: Privacy Officer
123 Flower Street
Your City, ST 12345
United States

Response Time: We will respond to all privacy-related inquiries within 30 days.

17. Supervisory Authority

If you are located in the European Economic Area (EEA), you have the right to lodge a complaint with your local data protection supervisory authority if you believe we have not addressed your concerns adequately.