Privacy Policy
KMP Carpentry & Joinery
Last updated: 9th October 2025
KMP Carpentry & Joinery is committed to protecting your privacy. This policy explains what personal information we collect, how we use it, and your rights.
Who We Are
We are KMP Carpentry & Joinery, a family-run carpentry and joinery business based in Cambridgeshire, UK.
For any privacy-related questions, you can contact us:
- Email: hello@kmpjoinery.com
What Information We Collect
Website & enquiries
- Spam protection: Google reCAPTCHA and our honeypot field collect technical data to detect automated spam.
- Contact form submissions: Name, email address, message content.
- Direct communications: If you email or call us directly, we may store the contact details and information you provide.
- Technical data: IP address, browser type, and similar information collected automatically by security and performance tools.
Orders & checkout
- Contact details: Name, billing/shipping address, phone, email.
- Order details: Items purchased, customisation/personalisation choices, order notes.
- Payment details: Processed securely by third-party providers (see “Payments” below). We do not store full card details.
- Account information: If you create an account, we store your login details and saved order history. You can view, edit, or delete your personal information at any time from your account page (except your username, which cannot be changed).
Reviews & comments
- If you leave a product review or site comment, we collect the data shown in the form as well as your IP address and browser user agent string to help detect spam. Approved reviews may be visible publicly.
Marketing
- Marketing opt-in: If you tick the marketing checkbox at checkout or subscribe via another form (such as our “Join the KMP Community” form), we store your name and email address to send you updates, newsletters and special offers.
- Email Service: We use MailPoet, a WordPress-based email service, to manage and send these emails. MailPoet tracks when subscribers open emails or click links. This helps us improve our communications and ensures we only send relevant content. MailPoet may place cookies in your browser to support this tracking.
- Abandoned Carts: If you begin an order but don’t complete checkout, we may send you a reminder email about your abandoned cart. This email will only be sent if you have opted in to marketing communications.
You can unsubscribe at any time by clicking the link in any email, or by contacting us at hello@kmpjoinery.com. If you unsubscribe, MailPoet will retain a record of your opt-out to ensure you no longer receive emails from us.
Analytics
- Google Analytics 4: We use Google Analytics 4 to understand how visitors use our website. This includes anonymous, aggregated data such as page views, clicks and session duration. Google Analytics uses cookies that only activate if you consent through our cookie banner. IP addresses are anonymised by default, and no personally identifiable information is collected.
- Google Search Console: We also use Search Console to monitor site performance and search traffic. This provides anonymous, aggregated data (not linked to individual users).
How We Use Your Information
We use your information to:
- Process and fulfil your orders.
- Provide customer service and respond to enquiries.
- Send you order updates and transaction-related emails.
- Send you marketing emails (only if you have opted in).
- Maintain your customer account, if you create one.
- Publish reviews you choose to leave on our products.
- Protect our website from spam and malicious activity.
- Comply with legal and tax obligations.
We do not sell or share your data with unrelated third parties for marketing purposes.
Who We Share Your Information With
We may share your data with:
- Payment providers: WooCommerce Payments, PayPal, and any payment gateways you select at checkout (to securely process payments).
- Delivery providers: Royal Mail and other couriers (to deliver your order).
- Legal authorities: Only if required by law.
- Service providers: IONOS (our web host), WordPress plugins (e.g., WooCommerce, Contact Form 7, Google reCAPTCHA, MailPoet, Complianz) for site functionality.
How Long We Keep Your Data
- Completed and refunded orders: Retained for at least 6 years to meet HMRC legal and tax requirements.
- Pending, failed, or cancelled orders: Automatically deleted after 30–60 days, since no payment was made.
- Customer accounts: Retained while active. Accounts with no activity may be deleted after 2 years.
- Marketing email subscriptions: Retained until you unsubscribe.
- Contact form submissions and direct communications: Kept only as long as needed to respond, unless required for legal reasons.
- Reviews & comments: Retained indefinitely unless you ask us to remove them.
Your Rights
Under UK GDPR, you have the right to:
- Request a copy of your personal data.
- Request correction or deletion of your data (with exceptions for legal/tax obligations).
- Withdraw consent for marketing emails at any time.
- Object to certain types of processing.
You can make these requests by contacting us at hello@kmpjoinery.com.
Payments
All payments are processed securely by third-party providers (WooCommerce Payments, PayPal, or Apple/Google Pay).
- We do not store your full payment card details.
- Payment providers may collect additional information to process the transaction securely — please review their own privacy policies.
How We Protect Your Data
We use SSL encryption, secure hosting and strong access controls to protect personal data. Payment details are processed securely by third-party providers and are never stored in full on our servers.
Data Breach Procedures
In the unlikely event of a data breach, we will notify affected users and the UK ICO (Information Commissioner’s Office) in line with UK GDPR requirements.
Cookies and Tracking
Our website uses functional cookies to:
- Enable checkout and cart functionality.
- Save your preferences (e.g., shipping address, login status).
- Enable website security features.
- Prevent spam through Google reCAPTCHA.
- Track engagement with our newsletters via MailPoet (e.g., whether an email was opened or a link was clicked).
- Measure website usage via Google Analytics (only if you consent through our cookie banner).
We use a cookie consent tool (Complianz) to give you control over which cookies you allow. Essential cookies are always active. Analytics and marketing cookies will only load if you give consent.
You can disable cookies in your browser settings, but checkout, account features, and newsletter tracking may not work properly.
For more details on how we use cookies, please see our Cookie Policy.
Changes to This Policy
We may update this Privacy Policy from time to time. The latest version will always be posted on this page.
