Privacy policy

Last updated: 10 November 2025

Thank you for visiting COTTON & LOOM LTD (“we”, “us”, “our”).
We respect your privacy and are committed to protecting your personal information.
This Privacy Policy explains how we collect, use, and share information when you visit or make a purchase from www.cottonandloom.com.

By using our website, you agree to the terms of this policy.

 


 

1. Who We Are

COTTON & LOOM LTD is a company registered in England and Wales (Company No. 12656098).
We operate an online retail store providing home and lifestyle products.
For the purposes of the UK General Data Protection Regulation (UK GDPR) and the Data Protection Act 2018, we are the data controller of your personal data.

Contact details:
📧 Email: hello@cottonandloom.com
🌐 Website: www.cottonandloom.com

 


 

2. Information We Collect

We collect and process the following types of information:

a. Information you provide directly

  • Identity and contact details: your name, billing and delivery address, email address and phone number.

  • Order details: products purchased, order numbers, and purchase history.

  • Payment details: payment method and transaction information (note: full card details are processed securely by our payment provider and never stored by us).

  • Communications: emails or messages you send to us.

b. Information collected automatically

When you browse our website, Shopify automatically collects certain information, including:

  • Device type, IP address, browser type, and time zone.

  • How you interact with our site (for example, pages viewed or products added to cart).
    This information helps us improve your shopping experience and site performance.

c. Cookies

Our website uses cookies to enable essential site functions (such as shopping cart and checkout) and to analyse site performance.
You can manage or disable cookies via your browser settings. See our Cookies Policy for more details if available.

 


 

3. How We Use Your Information

We use your personal data to:

  • Process and deliver your orders.

  • Communicate with you about your purchase, account or enquiries.

  • Manage returns and customer service.

  • Improve and optimise our website and product offering.

  • Comply with legal and accounting obligations.

  • Send marketing emails (only with your consent; you can unsubscribe at any time).

 


 

4. Lawful Bases for Processing

We process personal data under the following lawful bases:

  • Contract: to fulfil your order or provide a requested service.

  • Consent: when you opt in to marketing emails or newsletters.

  • Legal obligation: for record-keeping and compliance with tax and accounting laws.

  • Legitimate interests: to operate, improve, and secure our website and services.

 


 

5. Sharing Your Information

We only share your data where necessary to operate our business:

  • Shopify: our e-commerce platform that hosts the website and processes data on our behalf.

  • Payment providers: such as Shopify Payments, Stripe, or PayPal, to process secure transactions.

  • Delivery partners: including Royal Mail and courier services, to deliver your orders.

  • Service providers: for analytics, marketing, or technical support (for example, Google Analytics or email platforms).

These partners process your data securely and only in accordance with our instructions.

International transfers

Shopify and some of our third-party providers may store or process data outside the UK (for example, in Canada or the US).
When this happens, Shopify ensures that appropriate safeguards (such as Standard Contractual Clauses) are in place to protect your personal information in line with UK law.

 


 

6. Data Retention

We keep your personal information only for as long as necessary:

  • To complete your transactions and manage your account.

  • To comply with legal and tax obligations (usually up to 7 years for financial records).
    After this period, your data will be securely deleted or anonymised.

 


 

7. Your Rights

Under the UK GDPR, you have the following rights:

  • Access: to request a copy of your personal data.

  • Correction: to update or correct inaccurate data.

  • Erasure: to request deletion of your data (“right to be forgotten”).

  • Restriction: to limit how we process your data.

  • Objection: to certain processing, including direct marketing.

  • Data portability: to receive your data in a commonly used, machine-readable format.

  • Withdraw consent: for marketing communications at any time.

To exercise your rights, contact us at hello@cottonandloom.com.
If you are unhappy with how we handle your data, you can lodge a complaint with the Information Commissioner’s Office (ICO):
👉 www.ico.org.uk

 


 

8. Security

We use appropriate technical and organisational measures to protect your data, including encrypted connections (SSL/TLS) and Shopify’s secure servers.
While no online system is completely secure, we take all reasonable steps to safeguard your information.

 


 

9. Marketing & Communications

If you subscribe to our newsletter or marketing emails, we will use your email address to send occasional updates, offers or news about our products.
You can unsubscribe at any time by clicking the “unsubscribe” link in any email or by contacting us directly.

 


 

10. Children

Our website is not intended for individuals under the age of 16, and we do not knowingly collect personal information from minors.

 


 

11. Changes to This Policy

We may update this Privacy Policy from time to time to reflect operational, legal, or regulatory changes.
The latest version will always be posted on this page with the updated date.

 


 

12. Contact Us

If you have questions about this Privacy Policy or your personal information, please contact us:
Email: hello@cottonandloom.com
Website: www.cottonandloom.com