Legal
Privacy Policy
Last updated: 15 September 2026
This Privacy Policy explains how Pamella Edwards ("we", "us") collects, uses, and protects your personal data when you visit pamellaedwards.com, opt in for the free guide, or purchase the Nourish & Heal eBook. It is written to comply with the UK GDPR, the Data Protection Act 2018, and the EU GDPR for visitors from the EU.
2.1 Who we are (Data Controller)
Pamella Edwards, sole trader, is the data controller for the personal data collected through this Website. A contact address is available on request. Please email pamella@pamellaedwards.com for further legal notice details.
2.2 What personal data we collect
- Name and email address — when you sign up for the free guide or newsletter, or purchase the eBook
- Payment information — processed directly by Stripe; we do not receive or store full card details
- Technical data — such as IP address, browser type, and pages visited, collected automatically via standard website analytics/hosting logs
- Communication data — any messages you send us directly
2.3 How we use your data
- To deliver the free guide and the purchased eBook
- To send the email welcome sequence and, where you've opted in, further updates about Nourish & Heal and future books
- To process payments and provide customer support
- To improve the Website
2.4 Legal basis for processing
- Consent — for marketing emails, which you can withdraw at any time via the unsubscribe link in every email
- Contract — for processing your purchase and delivering the product you paid for
- Legitimate interest — for basic website analytics and security
2.5 Third parties we share data with
- Systeme.io — our email marketing and checkout platform, which stores subscriber and customer data on our behalf
- Stripe — our payment processor
- Netlify — our website hosting provider
We do not sell your personal data to any third party.
2.6 International data transfers
- Systeme.io (opt-in and checkout platform) — operated by ITACWT Limited, an Irish company. Systeme.io states its servers are hosted by Amazon Web Services in Ireland, and that data is not transferred outside the European Union. No additional transfer safeguard is therefore needed for this provider.
- Stripe (payment processor) — the relevant entity for European customers is Stripe Payments Europe, Limited. Where data is transferred to Stripe entities outside the UK/EEA, Stripe relies on the EU-US Data Privacy Framework (and the UK extension to it), backed up by Standard Contractual Clauses (including the UK International Data Transfer Addendum) if the Framework ever becomes unavailable.
- Netlify (website hosting) — a US company. Netlify's Data Processing Agreement provides Standard Contractual Clauses, including the UK Addendum, as the safeguard for any transfer of personal data from the UK/EEA to Netlify in the US.
2.7 How long we keep your data
We retain your data for as long as you remain subscribed or for as long as necessary to fulfil the purpose it was collected for, and in line with our legal obligations (e.g. financial records kept for HMRC purposes for the statutory period).
2.8 Your rights
Under UK/EU GDPR, you have the right to access, correct, delete, or port your data, to object to or restrict processing, and to withdraw consent at any time. To exercise these rights, email pamella@pamellaedwards.com. You also have the right to complain to the UK Information Commissioner's Office (ICO) at ico.org.uk.
2.9 Cookies
See our separate Cookie Policy for details of the cookies used on this Website.