MY SISTER SANDI Limited is the data controller of your personal data and is responsible for the collection, use, disclosure, retention and protection of your personal information in accordance with the General Data Protection Regulation.
We use the personal information we collect to: provide and improve our services, provide you with a personalised experience on our sites, contact you about your account, provide you customer service, provide you with personalised advertising and marketing, and detect, prevent, mitigate and investigate fraudulent or illegal activities.
We process personal data for purchases, payments, customer support and fulfilment to enable us to perform our contract with you; where your contact details and transactional information are processed.
We use and retain your personal information to provide, improve and personalise our service to:
Offer you site content that includes items and services that you may like and to keep track of your basket
Customize, measure and improve our services
Hold views between web and mobile sites, deep linking and device linking
Provide other services requested by you as described when we collect the information
Where we have the right to do so, we shall use and retain your personal information to personalise communications, to contact you, either via email, telephone, social media, text messages or postal mail in order to inform you of account activity, delivery fulfilment and marketing related activity.
We use and retain your personal information to prevent, detect, mitigate and investigate fraudulent or illegal activities. This will involve the machine learning based statistical analysis which permits the identification of buying patterns which allow us to further personalise your experience.
We retain your personal information as long as it is necessary and relevant for our operations. In addition, we may retain personal information from closed accounts to comply with legal requirements, prevent fraud and resolve disputes. After it is no longer necessary for us to retain your personal information, we dispose of it securely according to our data retention and deletion policies.
The General Data Protection Regulation provides for rights of access, modification and deletion of your personal information.
You can submit your rights servicing request by emailing
The GDPR provides you with the following rights:
WHAT THE RIGHT MEANS
The right of access
Your right to obtain confirmation as to whether or not personal data are being processed, and, where that is the case, access to the personal data along with details regarding the nature of processing.
The right of rectification
Your right to obtain the rectification of inaccurate personal data.
The right of portability
Your right to receive the personal data concerning provided to us, in a structured, commonly used and machine-readable format.
The right to be forgotten
Your right to erase your personal data.
The right to restrict processing
Your right for your data to be effectively ‘frozen’; stored and not further processed.
The right to object
Disclosure and security
We may disclose your personal information to legal entities within the MYSISTERSANDI.CO.UK group of undertakings, and to third authorised third parties. We do not disclose your personal information to third parties for marketing purposes.
We protect your information using measures that reduce the risks of loss, misuse, unauthorised access, disclosure and alteration. We minimise the amount of personal information we disclose to what is directly relevant and necessary to accomplish the specified purpose.
In so doing we may disclose your personal information to authorised third party service providers who help us to provide our services such as:
Payment providers to facilitate purchases
Fulfilment providers to facilitate order management, packaging and delivery
Marketing and advertising providers in order to personalise your experience
We do not disclose your personal information to third parties for marketing purposes.
Where legally compelling grounds exist, we may also disclose your personal information to governmental and law enforcement agencies, and otherwise in the defence of legal claims.
We protect your information using measures that reduce the risks of loss, misuse, unauthorised access, disclosure and alteration. We require all third parties to respect the security of your personal data and to treat it in accordance with the law. We do not allow our third-party service providers to use your personal data for their own purposes and only permit them to process your personal data for specified purposes and in accordance with our instructions.
or MY SISTER SANDI LTD. 31 South End Road, London, United Kingdom, NW3 2PY
You have the right to make a complaint at any time to the Information Commissioner's Office (ICO), the data protection supervisory authority in the UK (www.ico.org.uk).
It is important that the personal data we hold about you is accurate and current. Please keep us informed if your personal data changes during your relationship with us.