Privacy Policy - Gardeners Abbey Wood
Gardeners Abbey Wood is committed to protecting the privacy and personal data of all customers in the Abbey Wood area. This Privacy Policy explains how we collect, use, store, share, and protect personal information when we provide gardening services. It applies to all Gardeners Abbey Wood customers in the area, including enquiries, quotations, bookings, ongoing maintenance, and related service communications.
1. Who We Are
For the purposes of data protection law, Gardeners Abbey Wood acts as the data controller for personal information collected in connection with our services. This means we decide why and how your personal data is processed. We handle personal information in accordance with the UK GDPR and the Data Protection Act 2018, and we aim to ensure that all processing is lawful, fair, transparent, and limited to what is necessary.
2. Information We Collect
We collect only the information needed to deliver our services properly and manage our business responsibly. The types of data we may collect include:
- Identity details such as your name and title.
- Contact details such as your address, telephone number, and email address.
- Service details such as the type of gardening work requested, property access notes, appointment preferences, and service history.
- Payment information such as billing records and transaction references.
- Communication records such as emails, phone call notes, quotes, complaints, and feedback.
- Technical information if you interact with our digital systems, including basic device or usage data where relevant for security and operational purposes.
We do not intentionally collect special category data unless it is strictly necessary and you have provided it for a specific reason. If such information is ever shared with us, it will be handled with additional care and only where a valid legal basis applies.
3. How We Use Your Data
Your personal data is used to support the delivery and administration of our services. This may include:
- Responding to enquiries and providing quotations.
- Scheduling, carrying out, and managing gardening services.
- Processing payments and maintaining financial records.
- Communicating about appointments, service changes, or follow-up matters.
- Handling complaints, queries, and service improvements.
- Meeting legal, regulatory, accounting, and insurance obligations.
- Protecting our business, customers, staff, and property against fraud, misuse, or security risks.
We process personal data only for specified purposes and do not use it in ways that are incompatible with those purposes.
4. Lawful Basis for Processing
We rely on one or more lawful bases under data protection law depending on the nature of the processing. These may include:
Contract
We process personal data where it is necessary to enter into or perform a contract with you. For example, we use your name, address, and contact details to provide a quote, arrange a visit, and complete the services you request.
Legal Obligation
Some information must be processed to meet legal obligations, such as tax, accounting, record-keeping, or responding to lawful requests from authorities.
Legitimate Interests
We may process personal data where it is necessary for our legitimate interests, provided those interests are not overridden by your rights and freedoms. Examples include improving service quality, maintaining business records, managing customer relationships, and protecting against fraud or misuse.
Consent
In limited cases, we may rely on your consent, for example where you explicitly agree to receive certain optional communications. If consent is used, you may withdraw it at any time, without affecting the lawfulness of processing carried out before withdrawal.
5. Data Sharing and Processors
We may share personal data with trusted processors and service providers who help us run our business. These parties are only permitted to use your data on our instructions and must keep it secure and confidential. Processors may include:
- Payment service providers who handle transaction processing.
- IT and hosting providers who support secure data storage and communications.
- Accountants or bookkeeping services for financial administration.
- Administrative tools used for scheduling, invoicing, or customer management.
- Professional advisers, insurers, or legal representatives where necessary.
We may also disclose personal data if required by law, to enforce our rights, or to protect the safety of our customers, staff, or others. We do not sell your personal information.
6. Data Retention
We keep personal data only for as long as necessary for the purpose it was collected, including to satisfy legal, accounting, or reporting requirements. Retention periods vary depending on the category of data and the reason it is held.
- Customer records are generally retained for the duration of the service relationship and for a reasonable period afterwards.
- Financial and invoicing records are kept for the period required by tax and accounting law.
- Communication records are kept as long as needed to manage enquiries, disputes, or service follow-up.
- Security-related records are retained only for a limited time unless needed longer for investigation or legal reasons.
When data is no longer needed, it is securely deleted, anonymised, or destroyed in a safe and proportionate manner.
7. Data Security
We take appropriate technical and organisational measures to protect personal data against unauthorised access, loss, alteration, or disclosure. These measures are designed to reflect the nature of the information we hold and the risks involved. While no system can be guaranteed completely secure, we work to maintain reasonable safeguards and limit access to authorised persons only.
8. Your Rights
Under data protection law, you have several rights in relation to your personal data. These include the right to:
- Access the personal data we hold about you.
- Rectify inaccurate or incomplete information.
- Erase your data in certain circumstances.
- Restrict processing in certain situations.
- Object to processing based on legitimate interests or direct marketing.
- Data portability where processing is based on consent or contract and carried out by automated means.
- Withdraw consent where consent is the legal basis for processing.
You also have the right to be informed about how your data is used and to lodge a complaint with the relevant data protection authority if you believe your rights have been breached. Exercising your rights will not usually involve a fee, though requests may be limited where they are manifestly unfounded or excessive, or where legal exceptions apply.
9. Automated Decision-Making
We do not use personal data for automated decision-making that produces legal or similarly significant effects. If this changes in the future, we will update this policy and ensure that appropriate safeguards are in place.
10. Changes to This Policy
We may update this Privacy Policy from time to time to reflect changes in our services, legal requirements, or operational practices. Any updates will apply from the date they are published or otherwise communicated. We encourage customers to review the policy periodically so they remain informed about how personal data is handled.
11. Summary of Our Commitment
Gardeners Abbey Wood respects privacy and aims to keep personal data limited, accurate, secure, and only as long as necessary. We process information lawfully, use trusted processors under proper safeguards, and recognise the rights of every customer. This policy applies to all Gardeners Abbey Wood customers in the area and reflects our ongoing commitment to responsible data protection.