Privacy Policy — Nature’s No.1 Ltd
Last updated: 6 February 2026
1) Who we are
Nature’s No.1 Ltd (“we”, “us”, “our”) is the data controller for personal data collected via this website.

  • Company number: 16987270
  • Email: accounts@naturesno1.co.uk
    This Privacy Policy explains what personal data we collect, how we use it, and your rights.
    2) The data we collect
    Depending on how you use the site, we may collect:
    A) Information you give us
  • Identity: name
  • Contact: email address, phone number, delivery/billing address
  • Order details: items purchased, order notes, returns/refunds details
    B) Payment information
  • Account/membership details (if you create an account or buy a service/membership)
  • Card payments are processed by our payment provider. We do not store full card details on our servers
    (the provider handles this securely).
    C) Technical / usage data
  • IP address, device/browser information, pages visited, and cookies/online identifiers (see Cookies section
    below).
    D) Marketing preferences
  • Whether you opted in/out of marketing, and your communication preferences.
    3) How we collect your data
    We collect data when you:
  • place an order, create an account, subscribe, or contact us;
  • browse the site (via cookies and similar technologies);
  • interact with our emails (where enabled, e.g., open/click tracking).
    4) How we use your data (and our lawful bases)
    We only use your personal data where we have a lawful basis under UK GDPR.
    A) To process orders and provide products/services
  • Taking payment, confirming orders, delivering items, providing customer support
    Lawful basis: contract (to fulfil your order/service)
    B) To manage memberships/services (if applicable)
  • Creating/maintaining your membership, providing member benefits/services, handling
    renewals/cancellations
    Lawful basis: contract
    C) To meet legal and accounting obligations
  • Record-keeping, tax/accounting, handling complaints/claims
    Lawful basis: legal obligation
    D) To prevent fraud and keep the site secure
  • Fraud checks, misuse monitoring, protecting accounts and transactions
    Lawful basis: legitimate interests (security and fraud prevention)
    E) To improve our website and customer experience
    F) Marketing (only where allowed)
  • Analytics, performance monitoring, improving products and site usability
    Lawful basis: legitimate interests (improving our business) and/or consent for non-essential cookies (see
    Cookies)
  • Sending offers/updates if you’ve opted in (or where soft opt-in applies and you haven’t opted out)
    Lawful basis: consent and/or legitimate interests (depending on the type of marketing and your
    relationship with us)
    You can opt out of marketing at any time (see section 9).
    5) Who we share your data with
    We may share personal data with trusted third parties only where necessary, including:
  • Payment providers (to take card payments)
  • Delivery/courier companies (to deliver your orders)
  • Website hosting/ecommerce platform providers (to run the site and store order/account data)
  • IT and security providers (site security, backups, email systems)
  • Professional advisers (accountants, insurers, legal advisers)
  • Authorities where required by law, or to prevent fraud/crime
    We require service providers to protect your data and only use it for the services they provide to us.
    6) International transfers
    Some of our service providers may store or process data outside the UK (for example, depending on where their
    servers/support teams are located). Where this happens, we use appropriate safeguards required by UK GDPR
    (such as approved contractual protections) to help keep your data protected.
    7) How long we keep your data (retention)
    We keep personal data only as long as necessary for the purposes above, including:
  • Order and accounting records: typically up to 6 years (for tax/accounting and legal purposes)
  • Customer support queries: typically up to 24 months after resolution
  • Marketing records: until you unsubscribe/opt out, or we stop marketing
  • Account/membership data: while your account is active, and for a reasonable period afterwards as
    needed for records and support
    8) Keeping your data safe
    We use reasonable technical and organisational measures to protect personal data (for example, access controls
    and secure systems). No method of online transmission is 100% secure, but we work to protect your information
    appropriately.
    9) Marketing preferences
    You can stop receiving marketing at any time by:
  • clicking unsubscribe in an email (if included); or
  • emailing accounts@naturesno1.co.uk.
    Opting out won’t affect service emails (like order confirmations or important account notices).
    10) Your data protection rights
    You have rights under UK GDPR, including the right to:
  • be informed about how your data is used
  • access your personal data
  • correct inaccurate data
  • request deletion (in certain situations)
  • restrict processing (in certain situations)
  • data portability (in certain situations)
  • object to processing (in certain situations)
  • withdraw consent (where we rely on consent)
    To exercise any rights, email accounts@naturesno1.co.uk. We may need to verify your identity before responding.
    11) Cookies
    We use cookies and similar technologies to run the site, remember preferences, and help understand how the site
    is used. Some cookies are essential; others are optional and used only with consent (where required).
    We recommend adding a separate Cookie Policy that lists cookie categories and how to manage them.
    12) Children
    Our products are 18+. We do not knowingly collect personal data from children. If you believe a child has provided
    us with personal data, contact us and we will take appropriate steps to remove it.
    13) Complaints
    If you have concerns, please contact us first at accounts@naturesno1.co.uk so we can try to resolve it.
    You also have the right to complain to the UK regulator, the Information Commissioner’s Office (ICO).
    14) Changes to this policy
    the “Last updated” date.
    We may update this Privacy Policy from time to time. The latest version will always be posted on this page with