In very basic terms I totally respect your personal information and will only ask you for information I actually need from you, and will look after it in the same way I would want mine looked after, keeping it secure! I will only share it with others where I need their help to deliver my service to you (such as my professional printing laboratory who may need your name and address to post your purchases). Be assured that I will never share your information in any other circumstances –nor will I sell it on elsewhere.
Here are more details:
1. The Data I collect
As a data controller I collect a variety of data in order to deliver my services, and I will manage your personal data transparently, fairly and securely. I may ask you to provide us the following data –First and Last Name / Address / Postcode, Telephone Number(s) / Email. Being a photographic business I also create and manage images as per my contractual agreement(s). I use the above data to provide the service you have booked, and which meet the GDPR legal requirements; To deliver my service to you / For marketing purposes / Personalise your experience / To provide account access. I collect this data on the following lawful basis: to arrange or fulfil a Contract.
When you visit my website I also collect Cookies. These are small pieces of data that websites send to a user’s computer and are stored on the user’s web browser. They are designed to enable the website to remember information, such as what a user might have put in a shopping cart for example. This helps to personalise your experience, deliver my service to you, and for marketing purposes.
2. Which third parties do I share Personal Data with?
I only share personal data with a small number of third parties which include Printing Labs, Gallery Providers & Back Up Providers. Where Data is transferred outside of the European Economic Area, it is done so under the protection of EU/US Privacy Shield. There are also certain situations in which I may share access to your personal data without your explicit consent; for example, if required by law, to protect the life of an individual, or to comply with any valid legal process, government request, rule or regulation.
3. Why do I share your Personal Data with the above?
I share your data in order to deliver my service to you, for marketing purposes, to personalise your experience or to provide account access. I may transfer personal data to a country outside of the European Economic Area (EEA) if necessary e.g. a third party I utilise could have servers located outside of the EEA. If this is the case, I will either obtain your consent or otherwise ensure that the transfer is legal and your data is secure by following the EU’s guidelines.
4. How do I keep your personal data secure?
I keep your data secure by following internal policies of best practice and training, Encryption, using Secure Socket Layer (SSL) technology when information is submitted to me online. In the unlikely event of a criminal breach of our security I will inform the relevant regulatory body within 72 hours and, if your personal data were involved in the breach, I will also inform you.
6. You have the following rights:
– the right to be informed about the collection and use of your personal data
– the right of access to your personal data and any supplementary information
– the right to have any errors in your personal data rectified
– the right to have your personal data erased
– the right to block or suppress the processing of your personal data
– the right to move, copy or transfer your personal data from one IT environment to another
– the right to object to processing of your personal data in certain circumstances, and
– rights related to automated decision making (i.e. where no humans are involved) and profiling (i.e. where certain personal data is processed to evaluate an individual).
I also give you the option to manage your data by emailing me. While I do not hold personal data any longer than I need to, the duration will depend on your relationship with me, and whether it is on-going. I may keep some of your personal data for up to 7 years after our working contract with you has finished for Tax legislation purposes. After this time I will archive your photographs indefinitely along with your relevant details and consent forms. This is due to requests for replacement images being made several years after being taken.