Legal

Data & Security

Last updated: 12 January 2026

This page explains how Tufffinds approaches data protection and security. We aim to collect only what we need, keep it secure, and treat all client information with discretion.

1. What data we store

We may store contact details (such as name, email, phone number), your sourcing brief (sizes, preferences, timelines), and communications you send us (email/WhatsApp/messages). Where relevant, we may store basic invoice or order references.

2. Where data is stored

Data may be stored in secure systems used to run our business (for example, email providers, messaging tools, document storage, or website hosting). We use reputable providers and limit access to authorised users only.

3. Access control

Access to client information is restricted to those who need it to deliver services. We use strong passwords, role-based access where available, and keep internal access limited.

4. Payments

We do not store full card details on our servers. Payments are handled through agreed payment methods and/or trusted payment providers. Please refer to the provider’s own policies for their processing details.

5. Sharing data

We do not sell personal data. We may share only what is necessary with trusted partners (for example, couriers or logistics providers) to fulfil a request. We share the minimum required details to complete the service.

6. Retention

We keep personal information only as long as needed for the purposes described in our Privacy Policy, including legal, accounting, and operational requirements. You may request deletion where applicable.

7. Your role in security

Please avoid sending highly sensitive information (such as full card numbers) by message. If you think your information has been shared with us in error, contact us and we will help.

8. Contact

If you have any questions about data and security, contact us at info@tufffinds.com.