Privacy Policy - Gardeners Hornsey
Gardeners Hornsey is committed to protecting personal data and handling it in a fair, transparent, and secure manner. This Privacy Policy explains how we collect, use, store, share, and protect personal information when providing gardening services to customers in the Hornsey area. It applies to all Gardeners Hornsey customers in the area, including people who enquire about services, receive quotations, book appointments, or use our ongoing maintenance and landscaping services.
We follow the principles of the UK General Data Protection Regulation (UK GDPR) and the Data Protection Act 2018. This means we only collect information that we need, we use it for clear purposes, and we keep it only for as long as necessary. We also aim to make sure that customers understand their rights and how to exercise them.
1. Information We Collect
We collect personal data that is relevant to providing gardening services, managing customer relationships, and meeting legal or operational obligations. The types of information we may collect include:
- Identity details such as your name and, where necessary, company or property name.
- Contact details such as phone number, email address, and service address.
- Service information such as details of requested gardening work, scheduling preferences, property access instructions, and notes about the condition of the garden or outdoor space.
- Payment and billing information where needed to issue invoices, receive payments, or maintain financial records.
- Communication records including enquiries, quotes, complaints, feedback, and service updates.
- Technical information when you interact with our digital systems, such as basic device or usage data if relevant to security and functionality.
We do not intentionally collect more data than required. In some cases, you may choose to provide additional information to help us complete a service effectively, such as instructions about pets, access arrangements, or preferred work times. Where such information is relevant to the service, we will treat it with care and only use it for the purpose it was provided.
2. How We Use Personal Data
We use personal data for the following purposes:
- To respond to enquiries and provide quotations.
- To arrange, deliver, and manage gardening services.
- To communicate about appointments, updates, and service changes.
- To process payments and maintain financial records.
- To handle customer service issues and complaints.
- To improve service quality, planning, and administration.
- To meet legal, tax, accounting, and insurance obligations.
- To prevent fraud, abuse, or misuse of our services.
We only use personal information in ways that are compatible with the reason it was collected. Where we need to use data for a new purpose, we will ensure there is a valid lawful basis before doing so.
3. Lawful Basis for Processing
Under UK GDPR, we must have a lawful basis for each type of processing. Gardeners Hornsey generally relies on the following bases:
Contract
We process personal data where it is necessary to enter into or perform a contract with you. This includes preparing quotations, booking services, carrying out garden work, and managing payments related to those services.
Legal Obligation
We may process and retain information to comply with legal requirements, such as tax rules, accounting obligations, record keeping, and other regulatory duties.
Legitimate Interests
We may process information where it is reasonably necessary for our legitimate business interests, provided these interests do not override your rights and freedoms. Examples include managing customer communications, improving service delivery, maintaining internal records, preventing misuse, and ensuring our operations run efficiently.
Consent
In limited situations, we may rely on your consent, for example where it is appropriate to send certain optional communications or process information beyond what is needed for a contract or legal duty. Where consent is used, you may withdraw it at any time.
4. Data Sharing and Processors
We may share personal data only when necessary and only with parties who help us deliver services or meet legal obligations. These third parties act as processors or, in some cases, independent controllers. We require appropriate safeguards to protect your information.
Processors may include:
- Payment processors that handle card or online payments securely.
- Accounting and bookkeeping providers that help with invoicing, financial administration, and compliance.
- IT and cloud service providers that support secure data storage, email, and system maintenance.
- Scheduling or administration tools used to manage appointments and job records.
- Professional advisers such as insurers, legal advisers, or auditors where necessary.
We may also disclose information where required by law, court order, or official request from a public authority. We do not sell personal data.
Where processors act on our behalf, they are expected to follow confidentiality obligations and process personal data only according to our instructions. We take reasonable steps to choose suppliers who can provide appropriate data protection standards.
5. Data Retention
We keep personal data only for as long as necessary for the purpose it was collected, including for legal, accounting, or reporting obligations. Retention periods depend on the type of information and the reason for holding it.
- Customer service and quotation records are normally kept for a reasonable period to manage enquiries, customer history, and follow-up work.
- Contract and job records may be retained while services are active and for a period afterwards in case of disputes, claims, or follow-up issues.
- Financial records are retained for the periods required by tax and accounting law.
- Communication records may be kept to support customer service and operational continuity.
When data is no longer required, we will delete it securely or anonymise it so that it can no longer identify you. We review retained data periodically to make sure it is still needed.
6. Data Security
We use reasonable technical and organisational measures to protect personal information against loss, misuse, unauthorised access, alteration, or disclosure. These measures may include access controls, secure storage practices, staff confidentiality expectations, and limiting access to people who need the data for legitimate work purposes.
Although no system can be guaranteed to be completely secure, we work to reduce risk and to handle personal data responsibly. If a data breach were to affect your information and we were legally required to notify you, we would do so in accordance with applicable law.
7. Your Rights
As a data subject under UK GDPR, you have important rights in relation to your personal data. These rights may be subject to certain legal conditions and exemptions, but we will always consider requests carefully and respond appropriately.
- Right of access – you may request confirmation of whether we hold your data and obtain a copy of it.
- Right to rectification – you may ask us to correct inaccurate or incomplete data.
- Right to erasure – in some cases, you may request deletion of your data.
- Right to restriction – you may ask us to limit how we use your data in certain situations.
- Right to object – you may object to processing based on legitimate interests or direct marketing where applicable.
- Right to data portability – where processing is based on consent or contract and carried out by automated means, you may request transfer of certain data.
- Right to withdraw consent – where we rely on consent, you may withdraw it at any time.
If you wish to exercise any of these rights, we will respond within the time period required by law. We may ask for information to verify your identity before acting on a request, especially where data is sensitive or the request is complex.
8. Children’s Data
Our gardening services are directed to adults and property holders or authorised representatives. We do not intentionally collect personal data from children. If we become aware that we have collected information about a child without the appropriate basis, we will take reasonable steps to address the matter.
9. Changes to This Privacy Policy
We may update this Privacy Policy from time to time to reflect changes in our services, legal obligations, or data handling practices. Any updated version will apply from the date it is published or otherwise made available. We encourage customers to review this policy periodically so they remain informed about how their data is used.
10. Our Commitment to Privacy
Gardeners Hornsey values trust, reliability, and respect for personal privacy. We aim to process data fairly, keep it accurate where possible, and use it only for clear and legitimate purposes. Whether you contact us for a one-off garden visit or ongoing maintenance, your information will be handled in line with this Privacy Policy and applicable data protection law.
In summary: we collect only the data needed to deliver and manage our gardening services, we rely on lawful bases such as contract, legal obligation, legitimate interests, and consent where appropriate, we retain data for justified periods, we use trusted processors under appropriate safeguards, and we respect your rights as a customer in the Hornsey area.