Our commitment to data protection under the UK GDPR.
Last Updated: January 2024
tide-robin is committed to complying with the UK General Data Protection Regulation (UK GDPR) and the Data Protection Act 2018. We take the protection of personal data seriously and have implemented appropriate measures to ensure compliance.
For the purposes of data protection legislation, tide-robin is the data controller responsible for your personal data. Our contact details are:
tide-robin
Heritage House
14 Cathedral Close
Winchester, SO23 9LT
United Kingdom
Email: [email protected]
We process personal data only when we have a lawful basis to do so. The legal bases we rely on include:
When you submit an enquiry form, you provide consent for us to process your data to respond to your request. You may withdraw consent at any time by contacting us.
When you engage our services, we process your data as necessary to fulfil our contractual obligations to you.
We may process data based on our legitimate business interests, such as improving our services and maintaining business records, where such interests do not override your fundamental rights.
We process certain data to comply with legal requirements, such as financial record-keeping and professional regulatory obligations.
Under the UK GDPR, you have the following rights:
You have the right to request copies of your personal data. We may charge a small fee for this service in certain circumstances.
You have the right to request that we correct any information you believe is inaccurate or complete information you believe is incomplete.
You have the right to request that we erase your personal data in certain circumstances, such as when the data is no longer necessary for the purposes for which it was collected.
You have the right to request that we restrict the processing of your personal data in certain circumstances, such as while we verify the accuracy of contested data.
You have the right to request that we transfer the data we have collected to another organisation, or directly to you, in a structured, commonly used format.
You have the right to object to our processing of your personal data in certain circumstances, including processing based on legitimate interests.
To exercise any of these rights, please contact us at the address above. We will respond to your request within one month. There is no charge for making a request, unless your request is clearly unfounded or excessive.
We may need to verify your identity before processing your request to ensure data security.
We have implemented appropriate technical and organisational measures to protect your personal data, including:
We do not routinely transfer personal data outside the United Kingdom. If circumstances require such transfer, we will ensure appropriate safeguards are in place in accordance with UK GDPR requirements.
We retain personal data only for as long as necessary for the purposes for which it was collected. Our retention periods are based on business needs, legal requirements, and professional obligations.
In the event of a personal data breach that poses a risk to individuals' rights and freedoms, we will notify the Information Commissioner's Office within 72 hours of becoming aware of the breach. Where appropriate, we will also notify affected individuals.
If you are unhappy with how we have handled your personal data, you have the right to lodge a complaint with the Information Commissioner's Office:
Information Commissioner's Office
Wycliffe House
Water Lane
Wilmslow
Cheshire, SK9 5AF
Website: ico.org.uk
We may update this GDPR compliance notice from time to time. Changes will be posted on this page with an updated revision date.