Privacy Policy

Bare Biology respects your privacy and is committed to protecting your personal data. This Privacy Policy aims to give you information on how we collect and process your personal data through your use of this website and will inform you as to how we look after your personal data and tell you about your privacy rights.

We will process and protect your personal data as set out in this Privacy Policy, so please read it carefully.

This Privacy Policy was last updated on 2nd March 2026. Copies of earlier versions are available on request, please email us at info@barebiology.com.

WHO WE ARE

Controller: Bare Biology (collectively referred to as “we”, “us” or “our”) is a specialist online retailer of high quality health foods and supplements.

Bare Biology are the controller and are responsible for your personal data, which means that we determine the purposes and ways of the processing of your personal data.

Contact Details:

Company name: Bare Biology Ltd
Postal address: Projects, Nile House, Nile St, Brighton and Hove, Brighton BN1 1HW
Contact Name: Privacy Compliance Officer

If you have any general enquiries related to this Privacy Policy please email info@barebiology.com. This email address is monitored on a regular basis and we aim to respond to your query as soon as possible.

THE DATA WE COLLECT ABOUT YOU

Personal data means any information about you from which you can be identified. It includes where you can be identified from combining different data together, but it does not include data where the identity has been removed (i.e. anonymous data).

We use different methods to collect data from and about you, including through:

  • Direct interactions. This refers to personal data you provide directly to us (for example by purchasing one of our products or by corresponding with us via email).
  • Automated interactions. As you interact with our website, we may automatically collect data about your equipment, browsing actions and patterns.
  • Cookies. We may receive data about you if you visit other websites employing our cookies. Please see our cookie policy for more details about this.
  • Third Parties: We may also receive data about you from third parties.

Data Collected by us:

  • Contact Data includes data such as your first name, last name, gender, age range, password, email address, phone number and delivery address;
  • Financial Data includes data such as the last 4 digits of your payment card and billing address;
  • Marketing and Communications Data includes data such as your preferences in receiving marketing from us and your email address;
  • Technical Data includes data such as your internet protocol (IP) address, your login data, browser type and version, time zone setting and location;
  • Usage Data includes data such as information about how you use our website, products and services viewed, purchases and order history;
  • Health Data includes data such as results from a test kit you’ve bought from us, if you volunteer that information.

DATA WE DO NOT COLLECT

Other than the health data you may volunteer, we do not collect any special categories of personal data about you (this includes details about your race or ethnicity, religious or philosophical beliefs, sex life, sexual orientation, political opinions, trade union membership, and genetic and biometric data). Nor do we collect any information about criminal convictions and offences.

This website is not intended for children and we do not knowingly collect data relating to children.

IF YOU FAIL TO PROVIDE PERSONAL DATA

Where we need to collect personal data by law, or under the terms of a contract we have with you, and you fail to provide that data when requested, we may not be able to perform the contract we have or are trying to enter into with you. For example, we may have to cancel the order you have with us but we will notify you if this is the case at the time.

PURPOSES FOR WHICH WE WILL USE YOUR PERSONAL DATA

We may process your personal data for more than one lawful ground depending on the specific purpose for which we are using your data. Key purposes include:

  • Receiving and processing your orders (Contact Data) — Necessary for the performance of a contract
  • Processing payments (Contact Data, Financial Data) — Necessary for the performance of a contract
  • Shipping products to you (Contact Data) — Necessary for the performance of a contract
  • Sending you confirmation emails and receipts — Necessary for the performance of a contract
  • Sending you marketing communications (Contact Data, Marketing Data, Usage Data) — Legitimate interests / Consent
  • Screening for potential risk and fraud (Technical Data, Usage Data) — Legitimate interests
  • Improving our products and website and conducting analytics — Legitimate interests / Consent
  • Publishing reviews and verified buyer confirmation — Legitimate interests / Consent
  • Research and surveys — Legitimate interests / Consent
  • Online advertising of our products and services — Legitimate interests / Consent
  • Maintaining records for complaints, legal claims, governance and compliance — Legal obligation

You can unsubscribe from our emails at any time by clicking on the unsubscribe button on the bottom of every marketing email we send you.

HOW THIRD PARTIES PROCESS YOUR PERSONAL DATA

In order to provide you with the product(s) you have purchased from us, we may need to give your personal data to third parties who will process your data on our behalf. We require all third parties to respect the security of your personal data and to process it in accordance with the law.

Categories of third parties who may receive your personal data:

  • E-commerce providers
  • Payment processors
  • Warehousing and fulfilment companies
  • Marketing platforms
  • Website analytics providers
  • Customer review providers
  • Market research providers
  • Online advertisers

ONLINE ADVERTISING

We use your personal data to enable online advertising of our products and services, including personalised advertising and retargeting. Where you have agreed to it in our Cookie settings, we will use your personal data to optimise the adverts we display on social media and on Google services.

GOOGLE

We have a contract with Google that requires us to obtain your consent to the use of Google tags on our website. Google explains how it uses personal data it receives from us here: https://business.safety.google/privacy/. When Google receives your personal data from us Google becomes independent controller of your personal data.

MICROSOFT

We may also receive data from Microsoft Clarity, a website analytics tool that helps us understand how visitors interact with our website through features such as heatmaps and session recordings. Clarity cookies and similar technologies will only be used where you have provided your consent in our cookie settings. For more information, please see Microsoft’s Privacy Statement: https://privacy.microsoft.com.

META

When we share your personal data with Meta, in some instances Meta is our data processor. However, for personal data about your activity on our website Meta becomes joint controller of this data. The Meta products that we use are Instagram and Facebook.

TikTok

We have a contract in place with TikTok which receives data from us as data processor.

COOKIES

You can set your browser to refuse all or some browser cookies, or to alert you when websites set or access cookies. If you disable or refuse cookies, please note that some parts of this website may become inaccessible or not function properly. For more information about the cookies we use, please see our Cookie Policy.

DATA SECURITY

To protect your personal information, we take reasonable precautions and follow industry best practices to make sure it is not inappropriately lost, misused, accessed, disclosed, altered or destroyed. We follow all PCI-DSS requirements and implement additional generally accepted industry standards.

INTERNATIONAL TRANSFERS

We will use third party service providers that are based outside the European Economic Area (EEA) and the UK, and this will involve the transfer of your personal data outside the EEA. Whenever we transfer your personal data out of the EEA and the UK, we will endeavour to ensure a similar degree of protection is afforded to it.

DATA RETENTION

We will only retain your personal data for as long as necessary to fulfil the purposes we collected it for, including for the purposes of satisfying any legal, accounting, or reporting requirements. By law we have to keep basic information about our customers (including Contact Data and Financial Data) for six years after you cease being a customer.

YOUR LEGAL RIGHTS

Under certain circumstances, you have rights under data protection laws in relation to your personal data:

  • To request access to your personal data (Subject Access Request)
  • To request the correction of your personal data
  • To request erasure of your personal data
  • To object to processing of your personal data
  • To request restriction of processing your personal data
  • To request transfer of your personal data
  • To withdraw consent to the processing of your data
  • To not have a decision made about you based solely on automated processing

If you wish to exercise any of the rights set out above, please email us at info@barebiology.com. We will respond to you within 30 days of receipt of your request.

You have the right to make a complaint at any time to the Information Commissioner’s Office (ICO), the UK supervisory authority for data protection issues (www.ico.org.uk). We would, however, appreciate the chance to deal with your concerns before you approach the ICO.

CHANGES TO THIS PRIVACY POLICY

We reserve the right to modify this privacy policy at any time, so please review it frequently. Changes and clarifications will take effect immediately upon their posting on the website. If we make material changes to this policy, where we have your email address, we will notify you by email that it has been updated.

HOW SHOPIFY PROCESS PERSONAL DATA

Our store is hosted on Shopify. They provide us with the online e-commerce platform that allows us to sell our products and services to you. Your data is stored through Shopify’s data storage, databases and the general Shopify application. They store your data on a secure server behind a firewall.