GDPR Compliance
Our commitment to protecting your data under UK GDPR regulations
Our GDPR Commitment
Enercore Shield is committed to compliance with the UK General Data Protection Regulation (UK GDPR) and the Data Protection Act 2018. We take the protection of your personal data seriously and have implemented appropriate measures to ensure its security and lawful processing.
Legal Basis for Processing
We process your personal data under the following legal bases:
- Consent: When you provide explicit consent for specific processing activities
- Contract: When processing is necessary for the performance of a contract with you
- Legal Obligation: When we must process data to comply with legal requirements
- Legitimate Interests: When processing is necessary for our legitimate business interests, provided your rights and freedoms are not overridden
Your GDPR Rights
Under UK GDPR, you have the following rights regarding your personal data:
Right to Access
You have the right to request copies of your personal data. We may charge a small fee for this service where permitted by law.
Right to Rectification
You have the right to request that we correct any information you believe is inaccurate or complete information you believe is incomplete.
Right to Erasure
You have the right to request that we erase your personal data, under certain conditions.
Right to Restrict Processing
You have the right to request that we restrict the processing of your personal data, under certain conditions.
Right to Object to Processing
You have the right to object to our processing of your personal data, under certain conditions.
Right to Data Portability
You have the right to request that we transfer the data we have collected to another organization, or directly to you, under certain conditions.
How to Exercise Your Rights
If you wish to exercise any of your GDPR rights, please contact us in writing:
Email: [email protected]
Address: 42 Deansgate Approach, Manchester M3 2JH, United Kingdom
We will respond to your request within one month. In certain circumstances, we may extend this period by two additional months where necessary, taking into account the complexity of your request.
Data Protection Officer
For questions specifically related to data protection and GDPR compliance, you may contact our Data Protection Officer at [email protected].
Data Security Measures
We have implemented appropriate technical and organizational measures to ensure a level of security appropriate to the risk, including:
- Encryption of personal data in transit and at rest
- Regular security assessments and updates
- Access controls and authentication procedures
- Staff training on data protection obligations
- Regular backup and recovery procedures
Data Breach Notification
In the event of a data breach that is likely to result in a risk to your rights and freedoms, we will notify you and the Information Commissioner's Office (ICO) within 72 hours of becoming aware of the breach, as required by UK GDPR.
International Data Transfers
We primarily store and process your data within the United Kingdom. If we transfer personal data outside the UK, we ensure appropriate safeguards are in place in accordance with UK GDPR requirements.
Automated Decision Making
We do not use automated decision making or profiling in ways that produce legal effects concerning you or similarly significantly affect you.
Complaints
If you believe we have not handled your personal data in accordance with UK GDPR, you have the right to lodge a complaint with the Information Commissioner's Office (ICO):
Information Commissioner's Office
Wycliffe House
Water Lane
Wilmslow
Cheshire SK9 5AF
Telephone: 0303 123 1113
Website: www.ico.org.uk
Updates to This Statement
We may update this GDPR compliance statement from time to time to reflect changes in our practices or legal requirements. Please check this page periodically for updates.