This privacy policy sets out how Lilly and Thorn uses and protects any information that you give Lilly & Thorn when you use this website.

Lilly and Thorn is committed to ensuring that your privacy is protected. Should we ask you to provide certain information by which you can be identified when using this website, then you can be assured that it will only be used in accordance with this privacy statement.

Lilly and Thorn may change this policy from time to time by updating this page. You should check this page from time to time to ensure that you are happy with any changes.


What we collect

When browsing, creating an account or making a purchase we may collect the following data about you:

Name, postal address, email address, telephone number, payment details, internet protocol (IP) address, browser, time-zone, demographic information (London, 24-30, Female), page interaction information (landing pages, products viewed, scrolling and clicks), and operating system and platform information (e.g. Apple iOS, Android, Windows, etc).


What we do with your information

  • We will use the personal information provided (Name and Address) to deliver your order.
  • We may use this information to contact you via email for offers, promotions and new product launches, and to provide a better shopping experience.
  • You may be asked to participate in a questionnaire to understand your interests, so that we can grow our product and service range and improve on your experience.
  • If you have left an item in your basket, we may contact you by email to remind you about your purchase.
  • If you have requested to be contacted when an item is back in stock, we will email you once this item is back in stock.
  • We may run your payment information through fraud protection checks.
  • We may share your information with marketing agencies and advertising platforms in order to improve your shopping experience. However we do not disclose information about identifiable individuals, though we may use your demographic information such as your location, age-range, and gender.
  • We also share personal information with email and delivery services such as Mailchimp to store your email addresses and send promotional emails.
  • Our store is hosted on Shopify, inc. who provide us with an online e-commerce platform to sell our products and services.



Lilly and Thorn are committed to making every reasonable effort to ensure your data is protected. When using the website your information is transmitted through the platform Shopify, inc. Your information is protected using sophisticated data encryption and security measures, which is in compliance with national and international data storage and security regulations.

We use third party payment processors. If you pay by card your payment is processed through a payment provider allocated by Shopify, inc. Your payment details are encrypted according to the Payment Card Industry Data Security Standard (PCI-DSS) as managed by the PCI Security Standards Council, which is a joint effort of brands like Visa, MasterCard, American Express and Discover. Your purchase transaction data is stored only as long as is necessary to complete your purchase transaction. After that is complete, your purchase transaction information is deleted.

You can also pay through Paypal and a Paypal invoice will be sent to the email address provided. PayPal also has an extensive security policy and works to maintain high security standards for customers:

For more information about Shopify, inc. and how they protect your data please visit


Third Party Information

Although we do not sell your information to third parties, we may need to share your information with selected third parties including:

  • Fraud protection agencies that run security checks to assist us in verifying that orders are legitimate.
  • Analytics and search engine providers such as Google. We use this data to run reports, figure out how people find our shop and make decisions on how best to improve our shop and products.
  • Email Marketing, we use MailChimp to store names and email addresses of customers subscribe to our mailing list. Please see their Privacy Policy for more information.



A cookie is a small file, which asks permission to be placed on your computer's hard drive. Once you agree, the file is added and the cookie helps analyse web traffic or lets you know when you visit a particular site. Cookies allow web applications to respond to you as an individual. The web application can tailor its operations to your needs, likes and dislikes by gathering and remembering information about your preferences.

We use traffic log cookies to identify which pages are being used. This helps us analyse data about web page traffic and improve our website in order to tailor it to customer needs. We only use this information for statistical analysis purposes and then the data is removed from the system.

Overall, cookies help us provide you with a better website, by enabling us to monitor which pages you find useful and which you do not. A cookie in no way gives us access to your computer or any information about you, other than the data you choose to share with us.

You can choose to accept or decline cookies. Most web browsers automatically accept cookies, but you can usually modify your browser setting to decline cookies if you prefer. This may prevent you from taking full advantage of the website.

Here are a list of cookies we collect:

_session_id, unique token, sessional. Allows Shopify to store information about your session (referrer, landing page, etc).

_shopify_visit, no data held. Persistent for 30 minutes from the last visit. Used by our website provider’s internal stats tracker to record the number of visits.

_shopify_uniq, no data held, expires midnight (relative to the visitor) of the next day. Counts the number of visits to a store by a single customer.

cart, unique token, persistent for 2 weeks. Stores information about the contents of your cart.

_secure_session_id, unique token, sessional.

storefront_digest, unique token, indefinite. If the shop has a password, this is used to determine if the current visitor has access.

PREF, this cookie is set by Google and is persistent for a very short time period. It is used to track who visits the store and from where.

We also use tracking from Facebook, Instagram, Pinterest and Twitter, this enables us to follow interactions through our posts and ads.


Your Consent

You may request details of personal information which we hold about you under the Data Protection Act 1998. If you would like a copy of the information held about you please write to us. Any access request may be subject to a small administration fee of £10 to meet our costs in providing you with details of the information we hold about you.

If you believe that any information we have about you is incorrect or incomplete, please write to us or email us at as soon as possible. We will promptly correct any information found to be incorrect.

Finally, you may choose to restrict the collection or use of your personal information in the following ways:

Whenever you are asked to fill in a form on the website, look for the box that you can click to indicate that you do not want the information to be used by anybody for direct marketing purposes

If you have previously agreed to us using your personal information for direct marketing purposes, you may change your mind at any time by writing to us or emailing us at