Who we are
Effective Date: 1st July 2025
Last Updated: 1st July 2025
At Essence of Soma, the wellbeing and trust of our community are at the heart of everything we do — including how we handle your personal data. This Privacy Policy explains how we collect, use, store, and protect your information in accordance with the UK General Data Protection Regulation (UK GDPR).
Essence of Soma is a trading name of VASUDHA ENTERPRISE LIMITED, registered in England & Wales (Company No. 15718189) with a registered address at 124 City Road, London, England, EC1V 2NX.
Our website: https://www.essenceofsoma.co
1. What Personal Data We Collect
When you interact with our website or services, we may collect the following information:
- Identity & Contact Data: Your name, email address, phone number, billing and shipping addresses.
- Order & Payment Data: Products purchased, payment method (note: card details are processed securely via third-party processors and not stored by us).
- Account Data: If you create an account, your username, password (encrypted), preferences, and order history.
- Technical Data: IP address, browser type, device information, pages viewed, time on site (collected via cookies and analytics tools).
- Marketing Data: Preferences for receiving newsletters or promotional offers.
2. How We Collect Your Data
We collect your data via:
- Forms you submit (e.g., checkout, newsletter sign-up, contact form)
- Account creation
- Cookies and similar tracking technologies
- Third-party services (e.g., payment gateways, email providers)
3. Why We Collect Your Data
Under the UK GDPR, we rely on the following lawful bases to process your personal data:
- Performance of a Contract: To fulfill your orders and provide customer support.
- Consent: When you subscribe to our newsletter or opt into marketing communications.
- Legitimate Interest: To improve our site, prevent fraud, and provide relevant content.
- Legal Obligation: To comply with applicable UK tax or accounting laws.
4. How We Use Your Data
- To process and ship your orders
- To provide order updates and transactional communication
- To create and manage your account
- To respond to your enquiries
- To send promotional emails if you have opted in
- To analyze website performance and user behaviour
- To comply with legal obligations
We do not sell, rent, or trade your personal data to third parties.
5. Data Sharing & Third Parties
We only share your data with trusted third-party service providers to help us run our business securely and smoothly, including:
- WooCommerce & WordPress: Our ecommerce and website platform
- Hostinger: Our website hosting provider
- Stripe & PayPal: For secure payment processing
- Klaviyo / Mailchimp (or other): For email marketing
- Shipping Carriers: To deliver your orders
Each third party is contractually obligated to protect your data and is GDPR-compliant.
6. Cookies & Analytics
Our website uses cookies to:
- Enable website functionality
- Remember your preferences
- Analyze traffic through tools like Google Analytics
You can adjust your cookie settings or withdraw consent via your browser or our cookie consent banner.
7. Your Rights Under the UK GDPR
As a data subject, you have the following rights:
- Access: Request a copy of the personal data we hold.
- Rectification: Request correction of inaccurate or incomplete data.
- Erasure: Request deletion of your data (right to be forgotten).
- Restriction: Request limitation of processing.
- Objection: Object to data processing based on legitimate interests.
- Portability: Request transfer of your data to another service provider.
- Withdraw Consent: You may withdraw your consent to marketing communications at any time by clicking “unsubscribe” in any email.
To exercise any of these rights, please contact us at support@essenceofsoma.co
8. Data Retention
We retain your data only for as long as necessary to fulfill the purposes we collected it for, including legal, accounting, or reporting requirements. For example:
- Order records are kept for 6 years to comply with tax laws.
- Marketing data is kept until you unsubscribe or request deletion.
9. Data Security
We take data protection seriously and use the following security measures:
- SSL encryption across our entire website
- Secure server hosting (via Hostinger)
- Encrypted storage and limited access to customer data
- GDPR-compliant plugins and tools
10. Children’s Privacy
Our site is not intended for children under 16. We do not knowingly collect or store personal data from minors.
11. International Data Transfers
If you are accessing the site from outside the UK, please note your data may be processed in the UK or other secure jurisdictions. Our third-party providers comply with GDPR and appropriate data protection safeguards.
12. Updates to This Privacy Policy
We may occasionally update this policy to reflect changes in the law or our practices. The most recent version will always be available on our website, and we will notify you of any significant changes.
13. Contact Us
If you have any questions about this Privacy Policy or how we handle your data, please get in touch:
Email: support@essenceofsoma.co
Mailing Address:
Essence of Soma
c/o Vasudha Enterprise Ltd
124 City Road
London, England, EC1V 2NX
United Kingdom
