Privacy Policy

At Sora, we are committed to protecting your personal data and respecting your privacy. This policy outlines how we collect, use, and safeguard your personal information in compliance with the UK General Data Protection Regulation (UK GDPR) and other applicable data protection laws.


1. Information We Collect

We collect and process personal information in the following ways:


  • In-Store Checkout:
  • Name & Email Address: Collected to send receipts and order confirmations.
  • Marketing Opt-In: You can choose to receive marketing emails; this is entirely optional and can be opted in or out at checkout.
  • Online Orders:
  • Name, Email Address & Postal Address: Required to process and ship your order.
  • Marketing Opt-In: Optional subscription to receive news, promotions, and offers.
  • Newsletter Form:
  • Name & Email Address: Collected to subscribe to marketing emails.
  • Contact Form:
  • Name, Email Address, and Message Content: Collected solely to respond to your inquiries or requests.


2. How We Use Your Information

We use your personal data for the following purposes:

  • To process and fulfil your order, including sending order confirmations and shipping information.
  • To provide customer support and respond to inquiries.
  • To send marketing communications (only if you have opted in).
  • To comply with legal obligations, such as financial reporting and fraud prevention.


3. Lawful Basis for Processing

We process your personal information under the following lawful bases:

  • Contractual necessity: To fulfil orders and provide requested services.
  • Legitimate interests: For communication, record-keeping, and improving our services.
  • Consent: For sending marketing communications, which you may opt out of at any time.
  • Legal obligation: For compliance with applicable laws and regulations.


4. Data Storage & Security

We implement appropriate technical and organisational measures to safeguard your personal data from unauthorised access, loss, or misuse. Your data is securely stored and only accessed by authorised personnel.


5. Data Sharing

We do not sell or share your personal data with third parties, except:

  • Service providers: Such as payment processors, couriers, and IT service providers, strictly for fulfilling your order.
  • Legal compliance: If required by law or regulation.


6. Data Retention

We retain your personal data only as long as necessary for the purposes it was collected, or as required to meet legal, accounting, or reporting obligations.


7. Your Rights

Under the UK GDPR, you have the following rights:

  • Right to access your personal data.
  • Right to rectify incorrect or incomplete data.
  • Right to request deletion of your data (subject to legal requirements).
  • Right to object to or restrict processing.
  • Right to withdraw consent for marketing at any time.

To exercise your rights, please contact us at privacy@soraworkshop.co.uk


8. Marketing Communications

You will only receive marketing emails if you have explicitly opted in. You can unsubscribe at any time by clicking the "Unsubscribe" link in any email or contacting us directly.


9. Contact Us

If you have any questions regarding this Privacy Policy or how your data is handled, please contact: privacy@soraworkshop.co.uk