Privacy Policy - Gardeners Enfield Lock

Gardeners Enfield Lock is committed to protecting the privacy and personal data of all customers in the Enfield Lock area. This Privacy Policy explains how we collect, use, store, share, and protect personal information in connection with our gardening services. It also sets out the rights available to individuals under the UK General Data Protection Regulation (UK GDPR) and the Data Protection Act 2018.

This policy applies to all Gardeners Enfield Lock customers in the area, including current, former, and prospective customers, as well as anyone who contacts us about our services. By engaging with our services, you acknowledge that we may process personal data in the ways described below.

1. Information We Collect

We collect only the information necessary to provide and manage our gardening services effectively. The personal data we may collect includes:

  • Identity details, such as your name.
  • Contact details, such as address and email address.
  • Service details, including information about your garden, property access, service preferences, and requested work.
  • Billing and payment information, where relevant to invoicing and payment processing.
  • Communication records, such as messages, service instructions, complaints, and feedback.
  • Technical information if you interact with our online systems, such as device or usage data collected for security and functionality purposes.

We generally do not seek to collect special category data unless it is strictly necessary and you choose to provide it, or unless we are legally required to do so. If such data is provided, it will be handled with additional care and only where a lawful basis applies.

2. How We Use Personal Data

We use personal data to deliver gardening services and to manage our relationship with customers. This may include:

  • Arranging and carrying out gardening work.
  • Managing bookings, schedules, and service changes.
  • Preparing quotes, estimates, and invoices.
  • Communicating about appointments, service issues, and customer requests.
  • Maintaining records for administration, accounting, and legal compliance.
  • Improving our services and customer experience.
  • Protecting our business, staff, and customers from fraud, misuse, or security incidents.

We only process personal data for specified, explicit, and legitimate purposes. We do not use your personal information in a way that is incompatible with the purposes outlined in this policy.

3. Lawful Basis for Processing

Under UK GDPR, we must have a lawful basis for processing personal data. Gardeners Enfield Lock relies on the following lawful bases, depending on the context:

Contract

We process personal data where it is necessary to enter into or perform a contract with you. This includes providing quotes, booking services, completing work, and handling payments.

Legal Obligation

We may process personal data when necessary to comply with legal requirements, such as tax, accounting, record-keeping, or regulatory obligations.

Legitimate Interests

We may process personal data for our legitimate business interests, provided these interests are not overridden by your rights and freedoms. Examples include service improvement, record management, fraud prevention, and business administration. Where we rely on legitimate interests, we consider the potential impact on your privacy and take steps to minimise any risk.

Consent

In limited situations, we may rely on your consent, for example where optional marketing or non-essential communications are involved. If we rely on consent, you may withdraw it at any time.

4. Sharing and Processors

We may share personal data with trusted third parties when necessary to operate our services. These third parties act as data processors or independent controllers, depending on the circumstances.

Processors may include:

  • Accounting and invoicing providers used for financial administration.
  • IT and cloud storage providers used to securely store and manage records.
  • Communication service providers used for email, messaging, or customer correspondence.
  • Payment service providers used to process transactions.
  • Professional advisers such as legal or tax advisers, where necessary.

All processors are required to protect personal data and may only use it in accordance with our instructions and applicable law. We do not sell personal data. We do not disclose information to third parties for their own marketing purposes unless you have given explicit permission or we are otherwise legally permitted to do so.

Where personal data is shared with independent controllers, such as banks or public authorities, those organisations are responsible for their own privacy practices.

5. Data Retention

We keep personal data only for as long as necessary to fulfil the purposes for which it was collected, including legal, accounting, and reporting requirements. Retention periods may vary depending on the type of data and the reason for processing.

In general:

  • Customer and service records are retained for the duration of the customer relationship and for a reasonable period afterwards.
  • Financial records are kept for the period required by tax and accounting law.
  • Communication records are retained as needed to handle service issues, disputes, or ongoing support.
  • Security and technical logs are retained for a limited time necessary to protect systems and investigate incidents.

When data is no longer required, we will delete it securely or anonymise it so that it can no longer identify an individual.

6. Data Security

We take appropriate technical and organisational measures to protect personal data against unauthorised access, alteration, loss, or destruction. These measures may include access controls, secure storage, password protection, staff confidentiality obligations, and limited access to information on a need-to-know basis.

While no system can be guaranteed to be completely secure, we work continuously to reduce risks and to ensure that personal data is handled responsibly.

7. Your Rights Under UK GDPR

As a customer or data subject, you have a number of rights regarding your personal data. Subject to legal limitations, these rights include:

  • Right of access – to request a copy of the personal data we hold about you.
  • Right to rectification – to ask us to correct inaccurate or incomplete information.
  • Right to erasure – to request deletion of your personal data in certain circumstances.
  • Right to restriction – to ask us to limit how we use your data in certain situations.
  • Right to object – to object to processing based on legitimate interests or direct marketing.
  • Right to data portability – to receive certain data in a structured, commonly used format, where applicable.
  • Right to withdraw consent – where processing is based on consent.

You also have the right to lodge a complaint with the Information Commissioner’s Office (ICO) if you believe your data has not been handled in accordance with applicable law.

8. Automated Decision-Making

We do not use personal data for decisions based solely on automated processing that produce legal or similarly significant effects. If this changes in the future, we will update this policy and provide appropriate safeguards.

9. Children’s Data

Our services are intended for adults and property-related customers. We do not knowingly collect personal data from children unless it is provided incidentally and is necessary for service-related communication or legal compliance. If we become aware that data has been collected inappropriately, we will take steps to delete or safeguard it as required.

10. International Transfers

Where any processor stores or accesses data outside the UK, we will ensure that appropriate safeguards are in place so that your personal data remains protected in accordance with UK GDPR standards. Such safeguards may include approved contractual protections or equivalent legal measures.

11. Changes to This Privacy Policy

We may update this Privacy Policy from time to time to reflect changes in legal requirements, operational practices, or service arrangements. The most current version will apply to all Gardeners Enfield Lock customers in the area. We encourage customers to review this policy periodically to stay informed about how their personal data is handled.

12. Summary of Our Privacy Commitments

In summary, Gardeners Enfield Lock processes personal data fairly, lawfully, and transparently. We collect only what we need, use it for clear business purposes, retain it for no longer than necessary, and share it only with trusted processors or where required by law. We respect your rights and aim to handle all information with care, confidentiality, and accountability.

This Privacy Policy applies to all Gardeners Enfield Lock customers in the area.

Gardeners Enfield Lock

Gardeners Enfield Lock is committed to protecting the privacy and personal data of all customers in the Enfield Lock area.

Get In Touch With Us.

Please fill out the form below to send us an email and we will get back to you as soon as possible.