MT’S LDN LTD PRIVACY POLICY

PRIVACY POLICY

Last updated: [09/12/25]

Company Name: MT’S LDN LTD
Company Number: 16884471
Registered Address: 4th Floor, Silverstream House, 45 Fitzroy Street, Fitzrovia, London, W1T 6EB, GB
Email: mtsldnlogin@gmail.com

1. Introduction

MT’S LDN LTD (“we”, “us”, “our”) is committed to protecting your personal data.
This Privacy Policy explains what information we collect, how we use it, how we share it, how we protect it, and the rights you have under UK GDPR.

This policy applies to all customers, visitors, and users of our website and services.

2. Data Controller

MT’S LDN LTD is the data controller responsible for your personal data.

Contact us at: mtsldnlogin@gmail.com

3. Data We Collect

Identity Information
Name, title, date of birth.

Contact Information
Email address, telephone number, billing address, shipping address.

Account Information
Login details, saved items, order history, preferences.

Payment & Transaction Data
Order details, billing/shipping details, payment method.
We do not store full card details.
Payments are processed by Stripe, PayPal, Klarna, Clearpay, Apple Pay, Google Pay, Link by Stripe, and other payment services.

Technical & Usage Data
IP address, device info, browser, pages viewed, cookies, analytics.

Location Data
IP-based or voluntarily shared.

Images/Uploads
For custom orders, competitions, or social media interactions.

Marketing & Profile Data
Preferences, survey responses, behaviours and interests.

We do not intentionally collect sensitive data.

4. How We Collect Data

Directly from you: account creation, purchases, forms, uploads, communication.
Automatically: cookies, built-in analytics, Google Analytics.
From third parties:

  • Google Analytics

  • Google Ads

  • Meta (Facebook/Instagram) Pixel

  • Payment providers

  • Delivery partners

  • Advertising platforms

5. Legal Bases for Processing

  • Contract (order fulfilment, customer service)

  • Legitimate Interests (analytics, marketing, fraud prevention)

  • Consent (marketing, advertising cookies)

  • Legal Obligation (tax, accounting, compliance)

  • Vital Interests (rare emergency cases)

6. How We Use Your Data

  • Process and deliver orders

  • Manage your account

  • Provide customer service

  • Personalise your experience

  • Run analytics and website improvements

  • Send marketing (with consent or legitimate interest)

  • Prevent fraud and maintain security

  • Run competitions or promotions

  • Comply with legal requirements

We never sell personal data.

7. Marketing

We may send marketing communications when:

  • You have given consent, or

  • We rely on legitimate interests

You can opt out anytime via:

  • Email unsubscribe link

  • Account settings

  • Emailing us directly

Service/transaction emails will always be sent.

8. Cookies & Tracking

We use cookies for functionality, analytics, and advertising.
This includes Google Analytics, Google Ads, and the Meta Pixel.

See our Cookie Policy for full details.

9. Sharing Personal Data

We may share data with:

  • Payment providers (Stripe, PayPal, Klarna, Clearpay, Apple Pay, Google Pay)

  • Website hosting and security providers

  • Delivery and logistics partners

  • Analytics providers (Google Analytics)

  • Advertising partners (Google Ads, Meta Pixel)

  • IT and support services

  • Regulators or authorities when required

We do not sell personal data.

10. International Transfers

We transfer data outside the UK/EEA, including to the United States.
We use legally approved safeguards such as:

  • Standard Contractual Clauses

  • Adequacy decisions

Contact us for further details.

11. Data Retention

  • Account data: duration of account + 7 years

  • Transaction data: minimum 6 years

  • Customer service data: up to 3 years

  • Marketing preferences: until withdrawn or 3 years inactivity

  • Analytics logs: up to 12 months

  • Uploaded images/content: until removed or 12 months inactivity

12. Security

We use technical and organisational methods including:

  • Encryption

  • Secure servers

  • Firewalls

  • Access controls

  • Staff confidentiality procedures

We will notify you and the ICO of any breach where legally required.

13. Your Rights

You have the right to:

  • Access your data

  • Correct inaccurate data

  • Request deletion

  • Restrict processing

  • Object to processing

  • Object to marketing

  • Data portability

  • Withdraw consent

  • Request human review of automated decisions

Contact: mtsldnlogin@gmail.com

14. Children’s Data

Our services are not intended for children under 13.
We do not knowingly collect data from children.

15. Complaints

You may lodge a complaint with:

Information Commissioner’s Office (ICO)
ico.org.uk
0303 123 1113

16. Changes

We may update this Privacy Policy. The latest version will always be available on this page.

END OF PRIVACY POLICY

COOKIE POLICY


Last updated: [09/12/25]

MT’S LDN LTD uses cookies and similar technologies to improve your browsing experience, analyse site traffic, personalise content, and deliver targeted advertisements.

1. What Are Cookies?

Cookies are small text files stored on your device when you visit our website.

2. Types of Cookies We Use

Strictly Necessary Cookies
Required for security, checkout, cart, and basic website functionality.

Performance & Analytics Cookies
Used to measure site usage and performance.
Includes:

  • Google Analytics

  • Built-in platform analytics

Advertising & Targeting Cookies
Used for personalised ads and remarketing.
Includes:

  • Google Ads

  • Meta (Facebook/Instagram) Pixel

Functionality Cookies
Remember preferences such as region, currency, and account settings.

3. Examples of Cookies We Use

  • _ga, _gid (Google Analytics)

  • _gcl_au (Google Ads)

  • _fbp (Meta Pixel)

  • Checkout/session cookies

4. Third-Party Cookies

Third parties may place cookies when:

  • Using analytics services

  • Making payments

  • Viewing embedded content

  • Engaging with ads

Their cookie usage is governed by their privacy policies.

5. Managing Cookies

You can:

  • Accept or reject non-essential cookies via our cookie banner

  • Change browser settings to block or delete cookies

  • Withdraw consent at any time

Blocking some cookies may affect site performance.

6. Cookie Duration

  • Session cookies: deleted when your browser closes

  • Persistent cookies: stored until they expire or you delete them

END OF COOKIE POLICY

PRIVACY SUMMARY

We collect personal data to operate our website, process orders, provide support, and personalise your experience. We may use analytics and advertising tools such as Google Analytics, Google Ads, and Meta Pixel.

Payment data is handled securely by providers including Stripe, PayPal, Klarna, Clearpay, Apple Pay, Google Pay, and Link by Stripe.

You have rights over your information, including accessing, correcting, deleting, or objecting to marketing. Contact us at mtsldnlogin@gmail.com.

Read our full Privacy Policy and Cookie Policy for more details.

END OF PRIVACY SUMMARY

DATA PROCESSING ADDENDUM (DPA)
Last updated: [09/12/25]

This Data Processing Addendum (“DPA”) forms part of the agreement between:

Controller: MT’S LDN LTD
Processor: [Squarespace]

1. Purpose

This DPA ensures compliance with UK GDPR for personal data processed by the Processor on behalf of MT’S LDN LTD.

2. Definitions

Controller: MT’S LDN LTD
Processor: The service provider
Personal Data: Any identifiable information
Processing: Any operation performed on personal data

3. Processor Obligations

The Processor must:

  • Process data only on documented instructions

  • Keep data secure

  • Ensure staff confidentiality

  • Assist with data subject requests

  • Notify MT’S LDN LTD of breaches

  • Delete or return data after contract end

  • Allow audits

  • Maintain processing records

4. Sub-Processors

May only be used with written approval and must follow equivalent data protection standards.

5. International Transfers

Any transfer outside the UK/EEA requires approved safeguards such as Standard Contractual Clauses.

6. Security Measures

Includes: encryption, access control, monitoring, firewalls, regular testing.

7. Termination

This DPA remains effective while the Processor handles data.
Upon termination, all personal data must be securely deleted or returned.

8. Governing Law

The laws of England and Wales apply.

END OF DPA