Church Farm Tearooms Limited Ticket Portal

Privacy Policy

Church Farm Tearooms Limited Privacy Policy

Who we are

Our website address is: www.churchfarmanslow.co.uk

 

 

Privacy Policy

Church Farm Tearooms Limited Privacy Notice

Church Farm will operate as a Data Controller regarding any Personal Identifiable Information (PII) we gather from you.

This policy sets out the following;

·       The type of Data we collect

·       How we use your Personal Data

·       When, and How we share that Data

·       How we protect your Personal Data

·       Your rights and choices regarding your Data

·       Legal basis for processing Data

Types of Data

In order to carry out work on your behalf we may need the following information;

·       Your Name, Address, telephone number & email address

·       Your Date of Birth

·       Names and dates of birth of other individuals

·       Your school/groups name, school/groups address and other contact details

·       Your payment information such as debit/credit card details & bank account details

·       Your IP address

·       Relevant medical information if you are being treated by our first aiders following an incident

·       Information regarding your business

·       Your future communication preferences

Data Usage

We use this Data in order to;

·       Provide you with services that you request from us

·       To perform a contract between you and us such as e-mailing you your e-tickets and/or details of a purchase you have made such as an Annual Pass, Gift Vouchers & Experiences

·       Manage memberships, birthday party & experience bookings, group, school & caravan bookings

·       Process & email online bookings

·       Answer your enquiries

·       Prepare documentation for the relevant authorities as and when required by UK Law

·       Assist you if you have a medical incident

·       Inform you of events, services, offers that may be of interest to you, but only where you have provided consent

·       Allow you to interact with us on our social media channels

·       Analyse internal systems in order to improve your experience with us

Sharing Your Data

In order to carry out contracted work we may share your Data with other service providers in order to increase our efficiency and productivity. All service providers have been checked for GDPR compliance and none of our service providers have been given permission to share or otherwise process your Data.  Although your Data may be hosted with one or more of these services providers no Data Processing is carried out by them at any time. We only share information where required by law or with carefully selected contractors and specialists to help us provide our services. We only share Data with other companies who are GDPR compliant. We are careful to minimise such sharing.

We may also share your personal Data if:

·       The Law or a public authority says we must share that Data

·       If we need to share personal Data in order to establish or defend our legal rights, this includes providing personal Data to others for the purposes of preventing fraud and reducing credit risk to any other successors in title to our business

Legal basis for processing your Data:

Your Data will only be processed by Church Farm in order to carry out our services as requested or authorised by you.

How we protect your Data:

·       We use computer safeguards such as firewalls and Data encryption and we enforce physical access controls to our building and files to keep this Data safe. We only authorise access to your Data for employees who need it in order to carry out their job responsibilities.

·       We protect your Data in transit by using Secure Sockets Layer (SSL) or other encryption technologies unless specifically asked by you, the client, to do otherwise.

·       We enforce physical, electronic and procedural safeguards in connection with the collection, storage and disclosure of your information. We may, on occasion, ask for proof of identity before sharing your personal Data with you.

Whilst we take appropriate technical and procedural measures to safeguard your personal Data please be aware that we cannot guarantee the security of any personal Data that you transfer over the internet to us.

Your Data will not be transferred to, or stored at any destination outside the European Economic Area (EEA). If this ever becomes the case then we will inform you and we will put in place appropriate protections and safeguards to ensure your Data is adequately protected.

Your Rights and Choices

You have the right to see the personal Data we hold about you under the GDPR, this is called a Subject Access Request. If you wish to see this Data then please inform us via our email address which is info@churchfarmanslow.co.uk or in person at Church Farm Tearooms, Hanbury Road, Anslow, Burton on Trent, DE139QT

Please inform us if you believe any of the Data we hold regarding you is inaccurate and we will update accordingly.

You also have the right to ask us to delete all personal Data we hold about you. Again please submit this request via email.

End of Church Farm Privacy Notice

 

DigiTickets Privacy Policy

Policy Owner

This policy is owned and distributed by IT and Compliance manager of Digital Ticketing Systems Limited

Who we are

In this Privacy Policy, references to "we", "us", and "our"" are to Digital Ticketing Systems Limited (Company number 07044584). References to "our Website" or "the Website" are to *.digitickets.co.uk.

Digital Ticketing Systems Limited is the data controller responsible for the personal information collected through this Website.

Information We Collect

We may collect and process the following categories of personal information:

Information You Provide Directly

When you contact us, make a purchase, register for services, or complete forms on our Website, we may collect information such as:

  • Name
  • Postal address
  • Email address
  • Telephone number
  • Purchase and booking information
  • Any other information voluntarily provided by you

Payment Information

Payments made through our Website are processed by authorised payment service providers. We do not store your full credit or debit card details on our systems.

Our payment providers may process payment information and carry out fraud prevention and verification checks. Where international transfers are required, appropriate safeguards will be applied in accordance with applicable data protection laws.

Digital Ticketing Systems is PCI DSS v4.0.1 compliant and are annually assessed/certified.

Website Usage Information

When you visit our Website, we may automatically collect:

  • IP address
  • Browser type and version
  • Device information
  • Screen resolution
  • Operating system
  • Referral source
  • Pages visited and actions taken on the Website
  • Date and time of access

Marketing Preferences

If you choose to receive marketing communications, we will record your preferences and any interactions with our emails, including whether emails are opened or links are clicked.

Cookies and Similar Technologies

We use cookies and similar technologies to operate our Website, remember your preferences, analyse usage, and improve user experience. Further information is provided in our Cookie Policy below.

How We Use Your Information

We process personal information for the following purposes:

  • To provide products and services you request
  • To process transactions and fulfil orders
  • To provide customer support and after-sales services
  • To manage bookings and accounts
  • To improve our Website, products, and services
  • To ensure Website security and prevent fraud
  • To comply with legal and regulatory obligations
  • To send marketing communications where we have your consent or another lawful basis to do so

Lawful Basis for Processing

Under UK GDPR, we rely on one or more of the following lawful bases:

  • Performance of a contract: to provide goods or services you have requested.
  • Legal obligation: where processing is necessary to comply with legal requirements.
  • Legitimate interests: to manage and improve our business, Website security, and customer experience.
  • Consent: where required, including for certain cookies and marketing communications.

Where we rely on consent, you may withdraw it at any time.

Sharing Your Information

We may share your personal information with:

  • Payment processors
  • Hosting and IT service providers
  • Delivery and fulfilment partners
  • Marketing and communications providers
  • Analytics and Website performance providers
  • Professional advisers and auditors
  • Regulatory authorities, law enforcement agencies, or courts where required by law

All third-party service providers are required to process personal information only on our instructions and in accordance with applicable data protection laws.

We do not sell personal information to third parties.

International Transfers

Where personal information is transferred outside the United Kingdom, we will ensure appropriate safeguards are in place, such as:

  • Transfers to countries deemed to provide an adequate level of protection; or
  • Approved contractual safeguards, such as the UK International Data Transfer Agreement (IDTA) or equivalent mechanisms.

Data Retention

We retain personal information only for as long as necessary to fulfil the purposes for which it was collected, including satisfying legal, accounting, regulatory, and reporting requirements.

Retention periods vary depending on the type of information and the purpose for which it is processed.

Cookie Policy

What Are Cookies?

Cookies are small text files stored on your device when you visit a website. They help websites function properly, remember preferences, improve performance, and provide analytics information.

How We Use Cookies

We use the following categories of cookies:

Strictly Necessary Cookies

These cookies are essential for the operation of the Website and cannot be disabled through our cookie management tools.

Cookie

Purpose

Duration

PHPSESSID

Maintains user session and shopping basket functionality

Session / 24 minutes

dtAnalyticsConsent

Records cookie consent preferences

1 year

Analytics Cookies

These cookies help us understand how visitors interact with the Website so that we can improve performance and usability.

These cookies are only placed with your consent.

Google Analytics

Examples include:

  • _ga
  • _ga<container-id>
  • _gid
  • _gat_<tracker-name>

Used to collect aggregated statistical information about Website usage.

Google Privacy Information:

https://support.google.com/analytics/answer/6004245

Microsoft Clarity

Examples include:

  • _clck
  • _clsk
  • CLID
  • ANONCHK
  • MR
  • MUID
  • SM

Used to analyse user interactions and improve Website usability.

Microsoft Clarity Information:

Performance Monitoring Cookies

Performance monitoring tools help us identify technical issues and improve Website reliability.

Examples may include cookies used by services such as New Relic.

Managing Cookies

When you first visit our Website, you will be presented with a cookie banner allowing you to:

  • Accept all cookies
  • Reject non-essential cookies
  • Choose your cookie preferences

You may change your preferences at any time through our cookie settings tool.

You can also manage cookies through your browser settings. Disabling certain cookies may affect Website functionality.

Your Data Protection Rights

Under UK GDPR, you may have the right to:

  • Access your personal information
  • Correct inaccurate information
  • Request deletion of your information
  • Restrict processing
  • Object to processing
  • Request portability of your data
  • Withdraw consent where processing is based on consent
  • Lodge a complaint with the Information Commissioner's Office (ICO)

For more information about your rights, visit:

https://ico.org.uk/

Automated Decision-Making

We do not generally make decisions producing legal or similarly significant effects using solely automated processing.

Where automated tools are used for fraud prevention, security monitoring, or service administration, appropriate safeguards will be applied in accordance with applicable data protection legislation.

Childrens Data

Our Website is not intended to knowingly collect personal information from children unless necessary to provide services requested by a parent, guardian, school, attraction, venue, or authorised organisation.

Where we process children's personal information, we take additional care to ensure appropriate protections are in place.

Contact Us

If you have any questions about this Privacy Policy or wish to exercise your rights, please contact:

Digital Ticketing Systems (t/a DigiTickets)

Sentio House, Pynes Hill, Exeter, Devon, EX2 5AZ

www.digitickets.co.uk/compliance-request

If you have concerns about how we use your personal information, you may submit a privacy complaint to us using the contact details above.

We will acknowledge your complaint and investigate it in accordance with applicable data protection legislation. We aim to respond without undue delay and within the timescales required by law.

If you remain dissatisfied with our response, you have the right to complain to the Information Commissioner's Office (ICO).

Other Websites

This Privacy Policy applies only to this Website. Links to third-party websites are provided for convenience only. We are not responsible for the privacy practices of those websites, and we encourage you to review their privacy policies before providing any personal information.

Last Updated: 5 August 2026