Privacy Policy
1. Who we are
This website is operated by Synergy – The Retreat Show (“STRS”), . We are the "responsible party" for the personal information we collect through https://www.theretreatshow.com. If you have questions about this policy, contact our Information Officer, at info@theretreatshow.com.
2. What information we collect
We collect personal information you give us directly, such as your name, email address, phone number, delivery address and any details you include when you contact us, place an order or sign up for our newsletter. We also collect certain information automatically when you use the website, such as your IP address, browser type, device information and the pages you visit, through cookies and similar technologies.
We do not intentionally collect personal information from children under 18 without the consent of a parent or guardian.
3. Why we collect it
We use your personal information to process orders and payments, deliver products or services, respond to enquiries, send you updates you have asked for, improve our website, and meet our legal obligations. We will only use your information for the purpose it was collected for, or a compatible purpose, unless you consent otherwise or the law requires it.
4. Marketing
We will only send you marketing communications if you have opted in, or if you are an existing customer and we are telling you about similar products or services. Every marketing message includes a way to unsubscribe, free of charge.
5. Cookies
Our website uses cookies to make it work properly and to understand how visitors use it. You can disable cookies in your browser settings, but some parts of the site may not work as intended. We use Google Analytics / Meta Pixel / other tools, which may set their own cookies.
6. Who we share it with
We do not sell your personal information. We share it only with service providers who help us run our business, such as payment processors, delivery companies, hosting providers and email platforms, and only to the extent they need it. These providers are required to keep your information secure and confidential. We may also disclose information where required by law.
7. Cross-border transfers
Some of our service providers may store information outside Europe [e.g. cloud hosting or email services]. Where this happens, we take reasonable steps to ensure the recipient is subject to laws or binding agreements that give your information a similar level of protection to GDPR.
8. How we protect it
We use reasonable technical and organisational measures to protect your personal information against loss, misuse and unauthorised access. If we become aware of a security compromise affecting your information, we will notify you and the Information Regulator as required by law.
9. How long we keep it
We keep personal information only for as long as needed for the purpose it was collected, or as required by law (for example, financial records for tax purposes), after which it is securely deleted or de-identified.
10. Your rights
Under the GDPR, you have the right to request access to the personal data we hold about you, ask us to correct or erase it, restrict or object to its processing, and withdraw your consent for marketing at any time. To exercise any of these rights, please email [email address]. If you believe we have not handled your personal data in accordance with the law, you have the right to lodge a complaint with your local Data Protection Authority (or the UK Information Commissioner’s Office at ico.org.uk if based in the UK).
11. Changes to this policy
We may update this policy from time to time. The latest version will always be available on this page, with the date it was last updated.