GDPR Compliance

Our commitment to protecting your data under UK GDPR regulations

Our GDPR Commitment

Enercore Shield is committed to compliance with the UK General Data Protection Regulation (UK GDPR) and the Data Protection Act 2018. We take the protection of your personal data seriously and have implemented appropriate measures to ensure its security and lawful processing.

Legal Basis for Processing

We process your personal data under the following legal bases:

  • Consent: When you provide explicit consent for specific processing activities
  • Contract: When processing is necessary for the performance of a contract with you
  • Legal Obligation: When we must process data to comply with legal requirements
  • Legitimate Interests: When processing is necessary for our legitimate business interests, provided your rights and freedoms are not overridden

Your GDPR Rights

Under UK GDPR, you have the following rights regarding your personal data:

Right to Access

You have the right to request copies of your personal data. We may charge a small fee for this service where permitted by law.

Right to Rectification

You have the right to request that we correct any information you believe is inaccurate or complete information you believe is incomplete.

Right to Erasure

You have the right to request that we erase your personal data, under certain conditions.

Right to Restrict Processing

You have the right to request that we restrict the processing of your personal data, under certain conditions.

Right to Object to Processing

You have the right to object to our processing of your personal data, under certain conditions.

Right to Data Portability

You have the right to request that we transfer the data we have collected to another organization, or directly to you, under certain conditions.

How to Exercise Your Rights

If you wish to exercise any of your GDPR rights, please contact us in writing:

Email: [email protected]
Address: 42 Deansgate Approach, Manchester M3 2JH, United Kingdom

We will respond to your request within one month. In certain circumstances, we may extend this period by two additional months where necessary, taking into account the complexity of your request.

Data Protection Officer

For questions specifically related to data protection and GDPR compliance, you may contact our Data Protection Officer at [email protected].

Data Security Measures

We have implemented appropriate technical and organizational measures to ensure a level of security appropriate to the risk, including:

  • Encryption of personal data in transit and at rest
  • Regular security assessments and updates
  • Access controls and authentication procedures
  • Staff training on data protection obligations
  • Regular backup and recovery procedures

Data Breach Notification

In the event of a data breach that is likely to result in a risk to your rights and freedoms, we will notify you and the Information Commissioner's Office (ICO) within 72 hours of becoming aware of the breach, as required by UK GDPR.

International Data Transfers

We primarily store and process your data within the United Kingdom. If we transfer personal data outside the UK, we ensure appropriate safeguards are in place in accordance with UK GDPR requirements.

Automated Decision Making

We do not use automated decision making or profiling in ways that produce legal effects concerning you or similarly significantly affect you.

Complaints

If you believe we have not handled your personal data in accordance with UK GDPR, you have the right to lodge a complaint with the Information Commissioner's Office (ICO):

Information Commissioner's Office
Wycliffe House
Water Lane
Wilmslow
Cheshire SK9 5AF
Telephone: 0303 123 1113
Website: www.ico.org.uk

Updates to This Statement

We may update this GDPR compliance statement from time to time to reflect changes in our practices or legal requirements. Please check this page periodically for updates.