Data Handling Policy
This page explains the practical safeguards used for customer and order data. The Privacy Policy explains what information we collect and why.
1. Where data is stored
Customer, order and website-management data is stored in managed cloud services. Data sent between your browser and our application is protected in transit using HTTPS/TLS.
2. Who can access it
Customer and order records are restricted to authorised Shook It staff who need them for operations, customer support, administration or other legitimate business purposes. Server-side administrative credentials are not intended to be exposed to the browser.
3. Retention and deletion
Data is retained only as long as reasonably necessary for order fulfilment, support, accounting, tax, fraud prevention and other lawful purposes. We may retain records where deletion would conflict with a legal or regulatory obligation.
4. Security incidents
We maintain technical and organisational safeguards intended to reduce the risk of unauthorised access, alteration, loss or disclosure. If a personal-data incident occurs, we will assess it and make notifications required by applicable law and regulatory directions.
5. Data requests
To request access, correction or deletion of personal information, contact us using the method published on the Contact Us page. We may verify the requester's identity and may decline or limit deletion where retention is required by law or necessary for a legitimate transaction record.