Privacy Policy & GDPR Compliance
Last Updated: 08 May 2025
Auctioneer: Bond Auctions
Registered Address: Nafferton Killerton Road Bude EX23 8EN
Company Registration Number: 02635172
1. Introduction
Bond Auctions (“we,” “us,” or “our”) is committed to protecting the privacy and security of our customers’ personal data. This Privacy Policy outlines how we collect, process, store, and protect personal data in compliance with the UK General Data Protection Regulation (UK GDPR) and other applicable data protection laws.
2. Scope
This policy applies to all users of our auction platform, including registered bidders and buyers. It governs the processing of personal data collected through our website and related services.
3. Data Controller
- Bond Auctions acts as the Data Controller, determining the purpose and means of processing personal data.
- We are responsible for ensuring compliance with UK GDPR when handling customer data.
4. Personal Data We Collect
We may collect and process the following types of personal data:
- Account Information: Name, email address, phone number, billing/shipping address.
- Transaction Data: Bidding history, purchase records, payment details.
- Technical Data: IP addresses, device information, login credentials, and usage analytics.
5. Legal Basis for Processing
We process personal data under the following legal bases:
- Contractual Necessity: To provide auction services and fulfill transactions.
- Legal Obligation: To comply with regulatory requirements, such as tax and financial reporting.
- Legitimate Interests: To improve platform functionality, security, and user experience.
- Consent: Where applicable, for marketing communications or optional data processing activities.
6. How We Use Personal Data
We use personal data for the following purposes:
- To facilitate auction transactions and process payments.
- To provide customer support and respond to inquiries.
- To improve website functionality and user experience.
- To comply with legal and regulatory obligations.
- To send marketing communications (only with explicit consent).
7. Data Security Measures
We implement robust security measures to protect personal data, including:
- Encryption & Secure Storage: Data is encrypted and stored securely.
- Access Controls: Restricted access to authorised personnel only.
- Regular Audits: Compliance checks and security assessments.
- Data Minimisation: Only necessary data is collected and retained.
8. Data Sharing & Third-Party Processors
We may share personal data with:
- Payment Processors: To facilitate transactions.
- Shipping Providers: To arrange delivery of purchased items.
- Regulatory Authorities: If required by law.
- Third-Party Integrations: Where users opt to use external services.
All third-party processors are contractually obligated to comply with UK GDPR standards.
9. Data Retention
- Personal data is retained only as long as necessary for the purposes outlined in this policy.
- Users may request deletion of their data, subject to legal and contractual obligations.
10. User Rights Under UK GDPR
Under UK GDPR, users have the following rights:
- Right to Access: Request copies of their personal data.
- Right to Rectification: Correct inaccurate or incomplete data.
- Right to Erasure: Request deletion of their data (subject to legal obligations).
- Right to Restriction: Limit processing of their data.
- Right to Data Portability: Transfer their data to another service provider.
- Right to Object: Object to processing based on legitimate interests.
Users can exercise these rights by contacting us at [Insert Contact Email].
11. Cookies & Tracking Technologies
We use cookies and similar tracking technologies to enhance user experience. Users can manage cookie preferences through their browser settings.
12. Data Breach Notification
In the event of a data breach:
- We will notify affected users promptly.
- Appropriate remedial actions will be taken to mitigate risks.
13. Changes to This Policy
We may update this policy periodically to reflect changes in regulations or business practices. Users will be notified of significant updates.
For privacy-related inquiries, users can contact:
Data Protection Officer (DPO)
Bond Auctions
[email protected]