Privacy Policy

Last updated: 14/01/2025

This Privacy Policy explains how Brightworks BG (“we”, “us”, or “our”) collects, uses, and protects any personal data you provide when you use our website, related services, or any other website or service that links to this Privacy Policy (collectively, the “Services”). We value your privacy and are committed to ensuring your personal data is protected and handled responsibly.

By accessing or using our Services, you acknowledge that you have read and understood this Privacy Policy. We may update this policy from time to time to reflect changes in our practices or for operational, legal, or regulatory reasons. The updated version will be indicated by a revised “Last updated” date.


Table of Contents

  1. Who We Are
  2. Data We Collect
  3. How We Use Your Data
  4. Email Marketing & Communications
  5. Legal Bases for Processing
  6. Cookies & Tracking Technologies
  7. Third-Party Retargeting & Advertising
  8. Data Sharing & Transfers
  9. Data Retention
  10. Your Rights (GDPR & Other Jurisdictions)
  11. Security
  12. Children’s Privacy
  13. Links to Other Websites
  14. Updates to This Policy
  15. Contact Us

1. Who We Are

Brightworks BG is the data controller responsible for the processing of your personal data. If you have any questions regarding this Privacy Policy or our data practices, or if you wish to exercise your rights, please see the Contact Us section below.

2. Data We Collect

We may collect and process the following categories of personal data:

  • Identity Data: Your name, username, or similar identifiers.
  • Contact Data: Email address, postal address, phone number.
  • Payment Data: Payment card or bank details (processed via secure payment gateways; typically, we do not store full card details on our own servers).
  • Demographic Data: Postcode, preferences, interests, and other information you provide for surveys or offers.
  • Technical Data: IP address, browser type and version, time zone, device identifiers, operating system, and other technology details about the devices you use.
  • Usage Data: Information about how you use our website or Services (e.g., pages visited, links clicked, visit duration).
  • Cookie & Tracking Data: Cookie identifiers, pixel tags, hashed identifiers derived from your email (for cross-device tracking or targeted advertising), etc.

We may also collect personal data about you from other sources, such as analytics providers, advertising networks, or publicly available databases, where permitted by law.

3. How We Use Your Data

We use your personal data for the following purposes:

  • Order Fulfilment & Payment: To process your purchases and manage transactions.
  • Customer Support: To respond to inquiries or requests for assistance.
  • Internal Record Keeping: For accounting, auditing, and compliance purposes.
  • Personalisation: To tailor and improve our Services (e.g., remembering preferences, showing relevant products).
  • Market Research & Surveys: We may occasionally request feedback or conduct research to enhance our offerings.
  • Analytics & Performance: To analyse traffic, usage, and user interactions, helping us refine our products and user experience.
  • Security & Fraud Prevention: To protect our Services and detect or prevent fraudulent activities.
  • Legal Compliance: To comply with applicable laws, regulations, or legal obligations.

4. Email Marketing & Communications

Opt-In Requirement: We only send you marketing emails if you have explicitly opted in (e.g., by checking a consent box or subscribing to our newsletter). By providing your email and confirming your consent, you agree to receive marketing messages about our products, promotions, and special offers.

Transactional & Legal Emails: We may send non-marketing communications related to your account, transactions, or to notify you of important updates (e.g., updates to our Terms & Conditions). These emails are necessary for the performance of our contract with you or for compliance with legal obligations, so you may not opt out of them unless you discontinue using our Services.

Unsubscribe Mechanism: You can unsubscribe from marketing emails at any time by clicking the “unsubscribe” link at the bottom of any of our marketing emails, or by contacting us directly (see Contact Us below). Please note that it may take a short period for all our systems to reflect your preference.

5. Legal Bases for Processing

We process your personal data in accordance with the EU General Data Protection Regulation (GDPR) and other applicable data protection laws, relying on one or more of the following legal grounds:

  • Performance of a Contract: We process personal data to fulfil our contractual obligations (e.g., process your orders).
  • Legitimate Interests: Where it is in our legitimate interest (e.g., security, analytics) and does not override your fundamental rights.
  • Consent: Where you have provided clear consent (e.g., receiving marketing emails, accepting non-essential cookies). You may withdraw consent at any time.
  • Legal Obligation: Where processing is required by law or regulation (e.g., tax and accounting obligations).

6. Cookies & Tracking Technologies

We use cookies, pixel tags, and similar technologies to collect information that helps us:

  • Understand Website Traffic: Analyse which pages you visit and how long you stay.
  • Enhance User Experience: Recognise you upon return and remember your preferences.
  • Enable Targeted Advertising: Show relevant ads or offers based on your browsing history.

You can typically configure your browser to reject cookies or notify you before they are placed. However, declining certain cookies may affect your experience on our site. For more information on managing cookies, please visit AllAboutCookies.org.

7. Third-Party Retargeting & Advertising

We may partner with third-party networks (e.g., AdRoll or similar providers) that use cookies and other tracking tools to collect data about your browsing habits. This allows us or our partners to display ads based on your interests on our site or third-party sites — sometimes referred to as “behavioural advertising”.

If you prefer not to receive interest-based advertising, you can opt out by:

  • Clearing or blocking cookies in your browser.
  • Using tools like YourOnlineChoices.eu (EU) or AboutAds.info (US).
  • Following any opt-out instructions within the adverts themselves.

Deleting or blocking cookies might prevent us from recognising that you have opted out, so ads could reappear on other sites.

8. Data Sharing & Transfers

We do not sell or rent your personal data to unaffiliated third parties for their own marketing purposes. However, we may share your data in these scenarios:

  • Service Providers: Third parties performing tasks on our behalf (e.g., payment, analytics, hosting, email delivery).
  • Business Transfers: In cases of mergers, acquisitions, or transfers of assets where your data may be part of the transferred assets.
  • Legal & Regulatory: If required to comply with law, protect our rights, or respond to lawful requests by public authorities.
  • Advertising & Analytics Partners: To help deliver targeted ads or measure ad performance.

International Transfers: If data is transferred outside the EEA or the UK, we will ensure safeguards (e.g., Standard Contractual Clauses) are in place to protect your data.

9. Data Retention

We retain your personal data only as long as necessary to fulfil the purposes outlined in this policy, or as required by law. The retention period may vary depending on the data type and our legal or operational needs.

10. Your Rights (GDPR & Other Jurisdictions)

Depending on your location, you may have the following rights regarding your personal data:

  • Right to Access: Request a copy of personal data we hold about you.
  • Right to Rectification: Request corrections of inaccurate or incomplete data.
  • Right to Erasure (“Right to be Forgotten”): Request deletion of data under certain circumstances.
  • Right to Restrict Processing: Ask us to pause processing your data.
  • Right to Data Portability: Receive your data in a structured, machine-readable format.
  • Right to Object: Object to processing for direct marketing or where we rely on legitimate interests.
  • Right to Withdraw Consent: Where processing is based on consent, you can withdraw it any time.

To exercise these rights, please contact us using the details in the Contact Us section. We will respond within any timeframe required by applicable law.

11. Security

We maintain appropriate technical and organisational measures to safeguard your data against unauthorised or unlawful processing, accidental loss, destruction, or damage. These measures may include firewalls, encryption, secure servers, and limited access to authorised staff. However, no method of electronic storage or transmission is fully secure.

12. Children’s Privacy

Our Services are not intended for children under 16 (or the relevant minimum age in your jurisdiction). We do not knowingly collect personal data from children without parental consent. If you believe we have collected data from a child, please contact us so we can take appropriate steps to delete such information.

13. Links to Other Websites

Our website may include links to external sites. Once you leave our website, we have no control over the content or privacy practices of these external sites. We encourage you to review the privacy statements of any website you visit.

14. Updates to This Policy

We may revise this Privacy Policy from time to time to reflect changes in our Services, data practices, or legal requirements. The “Last updated” date at the top indicates when revisions occurred. Your continued use of our Services after any updates constitutes acceptance of the revised policy.

15. Contact Us

If you have any questions, concerns, or requests about this Privacy Policy or our data handling practices, please contact us at:

Brightworks BG
Email: info@brightworksbg.com

We strive to address your inquiries promptly and in accordance with applicable laws and regulations.