Privacy Policy - Gardeners Stanmore
Gardeners Stanmore is committed to protecting the privacy and personal data of all customers in the Stanmore area. This Privacy Policy explains how we collect, use, store, share, and protect personal information when you use our gardening services. It also explains the lawful bases we rely on under the UK GDPR, how long we keep data, the types of third parties we may use as processors, and the rights available to you.
This policy applies to all Gardeners Stanmore customers in the area, including prospective customers, active customers, and former customers whose information we are required to retain for legitimate business or legal purposes.
1. Personal Data We Collect
We only collect personal data that is necessary to provide and manage our services. The information we collect may include:
- Identity details such as your name and, where relevant, the name of a property owner, tenant, or authorised representative.
- Contact details such as telephone number, email address, and service address.
- Service information such as the type of gardening work requested, preferred schedules, access instructions, and property notes.
- Billing and payment information such as invoice records, payment status, and transaction references.
- Communication records including emails, messages, notes from calls, and service-related correspondence.
- Technical data where relevant, such as basic website or device information if you interact with our digital services.
We do not intentionally collect special category data unless it is required for a specific legal or service-related reason and you have provided the appropriate information voluntarily. We ask that you only share data that is relevant to your service enquiry or ongoing contract.
2. How We Use Your Data
Gardeners Stanmore uses personal data for clear and limited purposes. These include:
- Providing quotes and assessing service requests.
- Arranging, delivering, and managing gardening services.
- Scheduling appointments and planning site visits.
- Invoicing, payment processing, and accounting.
- Responding to enquiries, complaints, and service updates.
- Maintaining service records and customer history.
- Improving the quality, efficiency, and safety of our work.
- Meeting legal, tax, insurance, and regulatory obligations.
We use your information only where it is necessary and proportionate. Our approach is based on data minimisation, which means we keep our collection and use of personal data limited to what is needed for the service.
3. Lawful Basis for Processing
Under the UK GDPR, we must have a lawful basis for using your personal data. Depending on the circumstances, Gardeners Stanmore may rely on the following bases:
Contract
We process data where it is necessary to enter into or perform a contract with you. This includes preparing quotes, delivering gardening work, scheduling services, and handling invoicing.
Legal obligation
We may process certain information to comply with legal requirements, such as tax rules, record-keeping duties, insurance obligations, and fraud prevention measures.
Legitimate interests
We may use your data for our legitimate business interests, provided those interests are not overridden by your rights and freedoms. Examples include managing customer relationships, maintaining internal records, improving services, and protecting our business from misuse.
Consent
Where required, we will ask for your consent before using your personal data for specific optional purposes. You may withdraw consent at any time, without affecting the lawfulness of processing carried out before withdrawal.
We do not rely on consent where another lawful basis is more appropriate. Each processing activity is assessed to ensure we choose the right basis.
4. Data Sharing and Processors
We may share personal data with trusted third parties who act as processors on our behalf. These parties are only permitted to use your data according to our instructions and for the specific services they provide. Such processors may include:
- Accounting and bookkeeping providers used for invoicing and financial administration.
- Payment service providers who help process transactions securely.
- IT and cloud service providers who store data, maintain systems, or support secure communications.
- Scheduling or administrative platforms used to manage bookings and service records.
- Professional advisers such as insurers, legal advisers, or auditors where necessary.
Where personal data is shared, we take reasonable steps to ensure appropriate safeguards are in place. We do not sell personal data. We only disclose data when necessary for service delivery, compliance, or the protection of our legitimate interests.
In rare cases, we may also disclose information to public authorities, regulators, or law enforcement where required by law.
5. Data Retention
We keep personal data only for as long as needed for the purposes set out in this policy. Retention periods depend on the type of data and the reason it was collected. In general:
- Customer enquiry data is kept for a reasonable period if no service is booked.
- Contract and service records are kept for the duration of the service relationship and for a period afterwards to handle follow-up matters.
- Financial and tax records are retained for the period required by law.
- Complaint and correspondence records may be kept to support service quality, dispute resolution, and legal defence.
When data is no longer needed, it is securely deleted, anonymised, or otherwise disposed of in a safe and appropriate manner. We review retention periods periodically to ensure they remain justified.
6. Your Rights Under GDPR
You have several rights regarding your personal data. Subject to legal limits and exemptions, these may include:
- Right of access – to request a copy of the personal data we hold about you.
- Right to rectification – to ask us to correct inaccurate or incomplete information.
- Right to erasure – to request deletion of your data where there is no valid reason to keep it.
- Right to restrict processing – to ask us to limit how we use your information in certain cases.
- Right to data portability – to receive certain data in a structured, commonly used format.
- Right to object – to object to processing based on legitimate interests, including direct marketing where applicable.
- Right to withdraw consent – where processing is based on consent, you may withdraw it at any time.
You also have the right to raise concerns with the relevant data protection authority if you believe your rights have been infringed. We encourage you to review any concerns with us first so we can try to resolve the matter promptly and fairly.
7. Security of Personal Data
We use appropriate technical and organisational measures to protect personal data against unauthorised access, accidental loss, misuse, alteration, or disclosure. These measures may include access controls, secure storage, restricted permissions, and staff awareness practices.
While no system can be guaranteed completely secure, we take data protection seriously and review our safeguards regularly. Where a personal data breach occurs and is likely to result in a risk to your rights and freedoms, we will take the required steps under applicable law.
8. International Transfers
If any processor or service provider stores or accesses data outside the UK, we will ensure that appropriate safeguards are in place so the information remains protected to an adequate standard. These safeguards may include approved contractual protections or other lawful transfer mechanisms.
9. Children’s Data
Our services are intended for adult customers and property-related service arrangements. We do not knowingly collect personal data from children except where it is incidental and necessary for service delivery, for example where a household contact is referenced in a property note. If we become aware that we have collected data improperly, we will take appropriate steps to delete or correct it.
10. Changes to This Policy
We may update this Privacy Policy from time to time to reflect changes in law, business practices, or service arrangements. Any updates will take effect when published in the revised version. We encourage customers to review this policy periodically so they remain informed about how their data is handled.
11. Summary of Our Commitment
Gardeners Stanmore handles personal data responsibly, lawfully, and transparently. We collect only the information needed to provide gardening services, rely on clear lawful bases for processing, retain records only as long as necessary, and work with trusted processors under appropriate safeguards. Most importantly, we respect your rights and aim to keep your information secure, accurate, and used only for legitimate purposes.
This policy applies to all Gardeners Stanmore customers in the area.