sign in

Privacy Policy and your data

We at Garth Denham and Associates Ltd ( trading as Denhams ) use your data for the fulfilment of our auction & valuation services at your request. We need to identify owners of items we sell and purchasers of said items. We never have and never will sell your data to a third party.

Data we collect from you

The scope of data we collect from customers buying/bidding/selling or other enquiries with us is as follows :-

via our website

If you register an account we need your

  • name
  • address
  • email
  • phone number
  • password ( stored encrypted )
  • IP address ( only on first registration )

In using the website you may generate the following stored data.

  • items of interest in your lot basket
  • bids and live bid requests on those aforementioned items
  • your live bidding history
  • condition report requests when enquiring about the condition of lot
  • antique valuation requests will store your name, email address, valuation enquiry and any supplemental valuation photos you supply.

When browsing our website we will store information in files called cookies in your web browser.The data stored in cookies is :-

  • an auto generated unique number ( session id ). This personnalises you user experience and also lets you restart the browser and still be logged in.

  • two auto generated code of random letters and numbers called XRSF and REMEMBER ME tokens. These prevent what is known as a CSRF ( Cross-site request forgery ) attacks my malicious users and is used to protect access to your logged in session.

  • Google analytics is a very common tool that track users usage of a website. The Google Analytics library we use stores a couple of random letters and numbers that identify your session. Google analytics then reports what browser you use, what town you are browsing from and what pages on our site you have visited.

via email/phone or on our premises

If you visit or contact our premises to register to bid at auction / require a valuation appointment OR request a catalogue subscription the data we store is as follows

  • name
  • business name ( if applicable )
  • address
  • email
  • phone number(s)

When buying at auction you may generate the following stored data

  • purchase history consisting of the amount paid and items bought and the payment method and date.
  • invoice history of pdfs
  • a history of phone bids you have requested on items
  • condition report requests where you request specific information about the condition of a "lot" ( item in our auction )

If you visit or contact our premises to sell your property at auction the data we store is as follows.

  • name
  • business name ( if applicable )
  • address
  • email
  • phone number(s)
  • an entry form detailing your items to be entered for auction. This is also your receipt when leaving items in our care
  • if you represent an individual or deceased estate we will require both yours and the other parties details.

When selling at auction you may generate the following stored data

  • history of sales detailing items brought in for auction and their final "hammer" sale price ( if sold ).
  • pdfs of an entry from, pre sale auction advice, post sale auction advice and your final sale result statement

If you book a valuation appointment we will require your address to visit your premises and contact details to send you a valuation or contact you if a problem arises.

Your data security

Data entered on our website is encrypted from your browser to our web server via secure socket layer ( SSL ). The password supplied by you when registering an account on our website is encrypted to a bcrypt hash and is unreadable. Access to our servers remote and in house are filtered by firewalls access granted via SSH key based authentication monitored by fail2ban software. Access to our Amazon S3 cloud storage is restricted by IAM user access keys

Your data is stored on our systems consisting of a remote web server, remote bidding server and an in-house server on our premises. Backups of all data are stored in secure cloud locations hosted by the Amazon S3 platform. Backups are also stored on external drives on our premises.

When we contact you

If you register an account on our website for auction notifications you will duly be notified by email. You can cancel these notifications by logging in and unchecking the appropriate option in your 'Email Alerts' menu option.

If you subscribe for auction notifications by simply supplying your email to us you will duly be notified by email. You can cancel these notifications by clicking the 'unsubscribe me' link in the emails you receive.

If you supply keywords to our 'keyword search' facility you we be notified of items in our auction that match those words via email. You can cancel these notifications by removing your keywords from your account via the 'Email Alerts' menu option.

If your bids and are successful for items in an auction you will be emailed an invoice after the auction

If you sell with us you will be emailed and posted advice about the status of sold/unsold items