This policy explains what personal information we collect when you visit thenewkits.com, how we use it, who we share it with, and your rights over your own data. We try to keep this in plain English — if anything is unclear, ask us.
Who we are
The New Kits is operated from the United Kingdom. When this policy says “we”, “us”, or “our”, it means The New Kits. When it says “you” or “your”, it means the person visiting our site or buying from us.
For data-protection purposes, we are the data controller of the information you provide.
What we collect
We only collect information that helps us run the business. There are three categories:
Information you give us
- Name, email, phone, and shipping address — required to fulfil your order
- Billing address and payment method — processed by our payment provider, not stored on our servers
- Any message you send us via contact form, email, or chat
- Newsletter subscription email (if you opt in)
- Account password (stored encrypted, we never see it in plain text)
Information we collect automatically
- Browser type, device type, operating system, screen size
- IP address (which we anonymise after 30 days)
- Pages you visit, links you click, time spent on each page
- Referring website (how you found us)
- Cookies and similar technologies — details in our cookies policy
Information from third parties
- Payment processors share confirmation that your payment cleared (but never your full card number)
- Shipping carriers share tracking events
- If you sign in via a social account, the provider shares your name and email with us
How we use your information
We use your data for:
- Order fulfilment — processing payments, shipping kits, sending tracking updates
- Customer support — responding to questions, handling returns and refunds
- Account management — if you create an account, we save your order history and addresses
- Marketing — only if you opt in. Unsubscribe in one click any time.
- Fraud prevention — flagging suspicious orders, protecting against chargebacks
- Site improvement — understanding which pages and products perform well, fixing broken ones
- Legal compliance — tax records, anti-money-laundering checks, court orders
Who we share data with
We don’t sell or rent your data. We share it only with:
- Payment processors (Stripe, WooCommerce Payments) — to process your payment
- Shipping carriers — to deliver your order
- Email service providers (Omnisend, our transactional email system) — to send order confirmations and (if opted in) newsletters
- Analytics services — for anonymised traffic data
- Government authorities — if legally required (e.g. tax records, court order)
Every third party we share data with is bound by a written agreement to protect your information and use it only for the purpose we shared it for.
How long we keep your data
- Order records — 7 years (UK tax law)
- Customer accounts — until you delete it or 3 years of inactivity, whichever comes first
- Marketing data — until you unsubscribe
- Server logs / IP addresses — anonymised after 30 days
- Customer support emails — 2 years for quality assurance
Your rights under UK / EU data protection law
You have the right to:
- Access — ask us for a copy of the data we hold about you
- Correct — ask us to fix anything inaccurate
- Delete — ask us to remove your data (with limits where we’re legally required to keep it)
- Restrict — ask us to stop processing your data in certain ways
- Object — tell us to stop using your data for marketing
- Portability — receive your data in a machine-readable format to transfer elsewhere
- Complain — lodge a complaint with the UK Information Commissioner’s Office (ICO) at ico.org.uk
To exercise any of these rights, email support@thenewkits.com. We respond within 30 days.
Security
We use HTTPS encryption site-wide, encrypted password storage, restricted database access, and regular security audits. No system is ever 100% secure, but we treat your data the way we’d want our own treated.
If a data breach occurs that affects your information, we’ll notify you within 72 hours as required by law.
Children
Our site is not directed at children under 16. We don’t knowingly collect data from anyone under 16. If you believe a child has provided us with personal information, contact us and we’ll delete it.
Changes to this policy
We may update this policy from time to time. Material changes will be announced on this page with an updated date at the top. Continued use of the site after a change means you accept the revised policy.
Contact
For any data-related question, email support@thenewkits.com or use our contact page. We aim to respond within one business day.