Privacy Policy

1. Who We Are

Lesma Ltd is a UK-based online retailer offering quality products through our website.
Email: sales@lesma.co.uk

We are the data controller responsible for your personal information.


2. What Information We Collect

We may collect and process the following types of data:

a. Information You Provide
  • Contact details: name, email address, phone number, billing and delivery address.

  • Account information: username, password, and preferences (if you register an account).

  • Payment details: securely processed via third-party payment providers (we never store your full card information).

  • Order details: products purchased, order value, and delivery preferences.

  • Communication records: when you contact us by email, phone, or live chat.

b. Information Collected Automatically
  • Device and usage data: IP address, browser type, operating system, and time zone.

  • Cookies: small files that help us improve your browsing experience and understand how our site is used.

c. Information from Third Parties
  • Payment processors, delivery partners, and advertising networks may share information necessary for order fulfilment and marketing (in accordance with data protection law).


3. How We Use Your Information

We use your information to:

  1. Process and deliver your orders efficiently.

  2. Manage your account and provide customer service.

  3. Send order updates, invoices, and transaction confirmations.

  4. Improve our website, products, and services.

  5. Prevent fraud and maintain website security.

  6. Send marketing communications (only if you’ve opted in).


4. Legal Basis for Processing

We process your personal data under the following legal grounds:

  • Contractual necessity – to fulfil your purchase or service.

  • Legitimate interests – for business operations and fraud prevention.

  • Legal obligation – to comply with UK law.

  • Consent – for email marketing or cookies, which you can withdraw at any time.


5. How We Share Your Information

We may share data with trusted partners to provide our services:

  • Payment processors (e.g. Stripe, PayPal)

  • Delivery and courier services (e.g. Royal Mail, DPD)

  • IT and website hosting providers

  • Analytics and advertising platforms (Google Analytics, Meta Ads)

We never sell or rent your personal information to third parties.


6. Data Retention

We retain your information only for as long as necessary:

  • Order and transaction data: up to 6 years (for tax and accounting purposes).

  • Marketing data: until you unsubscribe or request deletion.

When no longer needed, your data will be securely deleted or anonymised.


7. Data Security

We use SSL encryption, firewalls, and secure payment gateways to protect your data.
While no system is 100% secure, we continuously review and update our security practices.


8. Your Rights Under UK GDPR

You have the right to:

  • Access a copy of your personal data

  • Correct any inaccurate information

  • Request deletion (“right to be forgotten”)

  • Object to or restrict processing

  • Withdraw consent for marketing


9. Cookies Policy

Our website uses cookies to personalise your experience and analyse website traffic.
You can control or disable cookies in your browser settings.


10. Updates to This Policy

We may update this Privacy Policy from time to time. Any changes will be posted on this page, and the “Last Updated” date will be revised accordingly.