Skip to shopping

Legal

Privacy Policy

Last updated 19 September 2026

Who we are

Florish is a marketplace that helps people and professionals find plants and buy them from local nurseries. This policy covers this website. You can reach us any time at hello@florish.co.

Information we collect

  • Information you give us. When you use a form on this site we collect what you enter, for example your name, email address, phone number, ZIP code, company or nursery details, and any notes you add.
  • Feedback. If you send feedback we store your message, the page you were on, and your email if you choose to share it.
  • How the site is used. We record a small, fixed list of behavioural events: page views, which buttons are clicked, which step of a form was reached, whether it was submitted, and whether a validation message appeared. Each event is stored with the website you arrived from (its domain only), the campaign tags in your link, a coarse screen size, the first three digits of a ZIP code where relevant, and a random identifier that lives only in your browser tab. We never store your name, email address, phone number, notes, the answers you typed, a full ZIP code, or the full address of the page with its query string.

How we use it

  • To tell you when Florish becomes available in your area.
  • To follow up about trade accounts, nursery partnerships, press or investment enquiries.
  • To understand which parts of the site are useful and improve the experience.

We do not sell your personal information, and we do not use it for third-party advertising.

Who can see your information

Submissions are stored in our secured database and are readable only by authorised Florish team members. The public website can submit information but cannot read any stored submissions. We use trusted service providers for hosting and database storage, and they may process data only on our instructions.

Cookies and tracking

This website sets no cookies for advertising, third-party tracking or session replay, and we use no advertising tags. For the usage measurement described above we do store a random identifier in your browser’s session storage. It is not a cookie, it is not shared with anyone, it is not derived from your device characteristics, and it disappears when you close the tab. This is analytics rather than strictly necessary technology, so we treat it as optional: if your browser sends a Do Not Track or Global Privacy Control signal we record no events at all. If we ever add advertising or cross-site tracking, we will ask for your consent first and update this policy.

Keeping information and your choices

Form submissions are kept until we no longer need them to contact you or to run our business, or until you ask us to delete them. Usage events are deleted automatically 90 days after they are recorded. Technical diagnostics, such as whether a confirmation email was delivered, are deleted automatically after 30 days, and anti-abuse counters (a one-way hash, never a stored IP address) after two days. These deletions run on a daily scheduled job, not on request. You can ask us to access, correct, export or delete your information, or to stop emailing you, by writing to hello@florish.co. If you are in California, the EU or the UK, you have additional rights under your local privacy laws, and we honour them for everyone.

Security

Information is transmitted over encrypted connections and stored in a managed database with row-level access rules that block public reading of submissions. Access is limited to team members who need it. We do not store payment card details on this website; purchases happen in the Florish marketplace. No system is perfectly secure, so please avoid sending sensitive personal details through our forms.

Children

This website is not directed at children under 13, and we do not knowingly collect their information.

Changes

If we make material changes to this policy we will update the date above and, where appropriate, let you know by email.