Privacy Policy

Last updated: March 2026
Vanda Trading is committed to protecting your privacy. This Privacy Policy explains what personal data we collect, how we use it, and your rights under UK data protection law including the UK GDPR and the Data Protection Act 2018. By using our website at www.vanda-trading.com, you agree to the practices described in this policy.
1. Who We Are

Vanda Trading is the data controller responsible for your personal data. We are an online retailer of computer power supply units, cables, adaptors, and PC accessories, based in the United Kingdom.

Contact: mail@vanda-trading.com
Website: www.vanda-trading.com

2. What Personal Data We Collect

We collect personal data in the following situations:

When you place an order:

  • Name and billing/delivery address
  • Email address and telephone number
  • Payment information (processed securely by PayPal or your card provider - we do not store full card details)
  • Order history and transaction details

When you create an account:

  • Name, email address, and password (stored encrypted)
  • Saved addresses and wish lists

When you contact us:

  • Your name, email address, and the content of your message
  • Any photos or attachments you send us

When you browse our website:

  • IP address and browser type
  • Pages visited and time spent on the site
  • Referring website (how you arrived at our site)
3. How We Use Your Personal Data

We use your personal data only for the following purposes:

  • Processing and fulfilling your orders - including dispatch, delivery tracking, and invoicing
  • Customer support - responding to your enquiries, handling returns, warranty claims, and complaints
  • Account management - maintaining your account and order history
  • Payment processing - securely processing payments via PayPal and card providers
  • Legal obligations - complying with applicable UK laws and regulations
  • Marketing (only with your consent) - occasionally informing you of new products or special offers from Vanda Trading. You can opt out at any time by emailing us or using the unsubscribe link in any email we send.

We do not use your data for automated decision-making or profiling.

4. Legal Basis for Processing

Under UK GDPR, we rely on the following legal bases to process your personal data:

  • Contract performance - processing is necessary to fulfil your order and deliver your goods
  • Legal obligation - where we are required to process data to comply with UK law
  • Legitimate interests - for website security, fraud prevention, and improving our service
  • Consent - for marketing communications, which you can withdraw at any time
5. Who We Share Your Data With

We do not sell or rent your personal data to any third party. We share data only where necessary with the following trusted service providers:

  • Payment processors - PayPal and card payment providers, to process your payment securely
  • Delivery couriers - your name and delivery address are passed to our shipping partners to fulfil your order
  • Website platform - our website runs on OpenCart hosted on a UK/EU-based server
  • eBay - if you purchase through our eBay store, eBay's own privacy policy applies

All third parties we work with are required to handle your data securely and in accordance with applicable data protection law. We do not transfer your personal data outside the UK or EEA without appropriate safeguards in place.

6. Cookies

Our website uses cookies - small text files stored on your device - to make the site function correctly. These include:

  • Essential cookies - required for the shopping cart, login session, and checkout to work
  • Preference cookies - remembering your currency selection and language
  • Analytics cookies - helping us understand how visitors use the site so we can improve it

You can control or disable cookies through your browser settings. Note that disabling essential cookies may prevent the website from functioning correctly. By continuing to use our website, you consent to our use of cookies as described above.

7. How Long We Keep Your Data

We retain your personal data only for as long as necessary:

  • Order and account data - kept for 7 years to comply with UK financial record-keeping requirements
  • Customer support correspondence - kept for 2 years after the matter is resolved
  • Marketing preferences - kept until you unsubscribe or request deletion
  • Website analytics data - typically retained for 26 months

When data is no longer needed, it is securely deleted or anonymised.

8. Your Rights

Under UK GDPR, you have the following rights regarding your personal data:

  • Right of access - you can request a copy of the personal data we hold about you
  • Right to rectification - you can ask us to correct inaccurate or incomplete data
  • Right to erasure - you can ask us to delete your data where there is no legitimate reason for us to keep it
  • Right to restrict processing - you can ask us to pause processing of your data in certain circumstances
  • Right to data portability - you can request your data in a structured, commonly used format
  • Right to object - you can object to processing based on legitimate interests or for marketing purposes
  • Right to withdraw consent - where processing is based on consent, you can withdraw it at any time

To exercise any of these rights, please email us at mail@vanda-trading.com. We will respond within 30 days. You will not be charged for making a request.

If you are not satisfied with how we handle your data, you have the right to lodge a complaint with the UK Information Commissioner's Office (ICO) at ico.org.uk.

9. Data Security

We take the security of your personal data seriously and have appropriate technical and organisational measures in place to protect it against unauthorised access, loss, or disclosure. These include:

  • SSL encryption on all pages of our website (HTTPS)
  • Encrypted storage of account passwords
  • Payment processing handled entirely by PCI-compliant third parties (PayPal and card providers) - we never see or store your full card details
  • Restricted access to personal data within our organisation

In the unlikely event of a data breach that poses a risk to your rights, we will notify the ICO within 72 hours and inform affected individuals as required by law.

10. Children's Privacy

Our website and services are not directed at children under the age of 16. We do not knowingly collect personal data from children. If you believe a child has provided us with personal data, please contact us and we will delete it promptly.

11. Changes to This Privacy Policy

We may update this Privacy Policy from time to time to reflect changes in our practices or legal requirements. The updated policy will be posted on this page with a revised date at the top. We encourage you to review this page periodically.

Continued use of our website after any changes constitutes your acceptance of the updated policy.

12. Contact Us

If you have any questions, concerns, or requests relating to this Privacy Policy or how we handle your personal data, please contact us:

Email: mail@vanda-trading.com
Website: www.vanda-trading.com/contact

Questions about your data?

Get in touch and we will be happy to help.

Contact Us →