1. Introduction
VIMAS Motorsports is a trading name of Kingpin Bargains Ltd. We are committed to protecting your privacy and handling your personal data in accordance with the UK General Data Protection Regulation (UK GDPR) and the Data Protection Act 2018.
This policy explains how we collect, use, store, and protect your personal information when you use our website or purchase products from us.
2. Data Controller
Kingpin Bargains Ltd trading as VIMAS Motorsports is the data controller responsible for your personal data. If you have any questions about this policy, please contact us at privacy@vimasmotorsports.co.uk.
3. Information We Collect
Information you provide directly:
- Account information: Name, email address, password (encrypted)
- Order information: Billing and shipping addresses, phone number
- Payment information: Card details are processed securely by Stripe and are never stored on our servers
- Communications: Any messages you send us via contact forms or email
- Reviews and feedback: Product reviews and ratings you submit
Information collected automatically:
- Technical data: IP address, browser type, operating system, device information
- Usage data: Pages visited, products viewed, time spent on pages
- Cookie data: See our Cookie Policy for details
4. How We Use Your Information
- Order fulfilment: Processing, shipping, and delivering your orders
- Account management: Managing your account, VIMAS Points, and wishlist
- Communication: Sending order confirmations, shipping updates, and responding to enquiries
- Legal compliance: Meeting our legal and regulatory obligations
- Marketing: Sending promotional emails only with your explicit consent (you can unsubscribe at any time)
- Website improvement: Analysing usage patterns to improve our website and services
- Fraud prevention: Detecting and preventing fraudulent transactions
5. Legal Basis for Processing
Under UK GDPR, we rely on the following legal bases:
- Contract: Processing necessary to fulfil your orders and manage your account
- Legitimate interests: Website analytics, fraud prevention, and business improvement
- Consent: Marketing communications and non-essential cookies
- Legal obligation: Tax records, regulatory compliance
6. Data Sharing
We do not sell your personal data. We may share your information with:
- Payment processors: Stripe, for secure payment processing
- Delivery partners: Shipping carriers to deliver your orders
- Email services: For transactional and marketing emails (with consent)
- Hosting providers: For website hosting and infrastructure
- Legal authorities: If required by law or to protect our rights
All third-party providers are contractually obligated to protect your data and process it only for specified purposes.
7. Data Retention
- Account data: Until you request account deletion
- Order data: 7 years (for tax and legal compliance)
- Marketing preferences: Until you withdraw consent
- Website analytics: 26 months
8. Your Rights
Under UK GDPR, you have the following rights:
- Right of access: Request a copy of the personal data we hold about you
- Right to rectification: Request correction of inaccurate data
- Right to erasure: Request deletion of your data (subject to legal obligations)
- Right to restrict processing: Request limitation of how we use your data
- Right to data portability: Receive your data in a structured, machine-readable format
- Right to object: Object to processing based on legitimate interests or direct marketing
- Right to withdraw consent: Where processing is based on consent, you may withdraw it at any time
To exercise any of these rights, contact us at privacy@vimasmotorsports.co.uk. We will respond within one month.
9. Data Security
We implement appropriate technical and organisational measures to protect your data, including:
- SSL/TLS encryption for all data transmitted to and from our website
- Encrypted password storage
- Regular security assessments
- Restricted access to personal data on a need-to-know basis
10. International Transfers
Your data may be transferred to and processed in countries outside the UK. Where this occurs, we ensure adequate safeguards are in place, such as Standard Contractual Clauses or adequacy decisions.
11. Children's Privacy
Our website is not intended for children under 16. We do not knowingly collect personal data from children. If you believe we have collected data from a child, please contact us immediately.
12. Complaints
If you are unhappy with how we handle your data, you have the right to lodge a complaint with the Information Commissioner's Office (ICO):
- Website: ico.org.uk
- Phone: 0303 123 1113
13. Contact Us
For any privacy-related enquiries:
- Email: privacy@vimasmotorsports.co.uk
- Company: Kingpin Bargains Ltd trading as VIMAS Motorsports