GDPR Data Protection Policy

  • Home
  • GDPR Data Protection Policy

GDPR Data Protection Policy

At Albert Chauffeur, we are committed to protecting the privacy and security of our clients, employees, and partners. This Data Protection Policy outlines our adherence to the General Data Protection Regulation (GDPR) and other relevant UK data protection laws, ensuring transparency in how we collect, use, and safeguard personal data.

1. Legal Framework

We operate in full compliance with -

  • UK Data Protection Act 2018 – Governing the processing and protection of personal data in the UK.
  • General Data Protection Regulation (GDPR) – Providing strict guidelines for transparency, consent, and data security.

2. Data Collection and Use

We collect and process personal data lawfully, fairly, and transparently, ensuring it is relevant and adequate for the purpose for which it is collected.

2.1 Client Data

To provide our chauffeur services, we may collect the following personal information -

  • Name – To identify and address clients.
  • Contact Information – Including phone number and email address for booking confirmations and communication.
  • Travel Details – Pickup and drop-off locations, dates, and times to facilitate the service.
  • Payment Information – Processed securely for billing purposes.

2.2 Employee and Driver Data

For operational and legal purposes, we collect -

  • Identification Details – Name, address, and contact information.
  • Professional Credentials – Licensing information, driving records, and certifications.
  • Financial Information – Bank account details for salary payments.
  • Background Checks – Criminal records, as required by law.

3. Data Protection Principles

We adhere to the following GDPR principles –

  • Lawfulness, Fairness, and Transparency – Data is collected and used with full transparency, and individuals are informed about its purpose.
  • Purpose Limitation – Data is used only for the purposes explicitly stated at the time of collection.
  • Data Minimization – Only data relevant and necessary for the intended purpose is collected.
  • Accuracy – We maintain accurate and up-to-date records. Individuals can request corrections.
  • Storage Limitation – Data is retained only as long as necessary or as required by law.
  • Integrity and Confidentiality – Robust measures are in place to secure data and prevent unauthorized access or loss.

4. Data Retention Policy

We retain data for periods necessary to fulfil the purposes outlined or as required by law -

  • Client Data – Retained for 12 months for accounting and service improvement purposes.
  • Employee and Driver Data – Retained for 12 months after the end of employment, in compliance with legal obligations.

5. Data Sharing and Third Parties

We may share personal data with -

  • Authorized Personnel – Chauffeurs, dispatchers, and support staff for service delivery.
  • Regulatory Authorities – Law enforcement or other government bodies upon lawful request.
  • Third-Party Providers – Payment processors, IT service providers, and maintenance partners, all of whom are contractually obligated to comply with data protection laws.

6. Data Security Measures

We implement appropriate technical and organizational measures to protect personal data against unauthorized access, alteration, disclosure, or destruction, including -

  • Encryption – Sensitive data is encrypted during transmission and storage.
  • Access Controls – Only authorized personnel have access to personal data necessary for their roles.
  • Regular Audits – We conduct regular reviews of our data processing activities and security measures.

7. Individual Rights

Under the GDPR, individuals have the right to -

  • Access – Request information about the personal data we hold.
  • Rectification – Correct inaccurate or incomplete data.
  • Erasure – Request deletion of personal data, subject to legal constraints.
  • Restriction – Limit processing of their data under certain conditions.
  • Data Portability – Receive their data in a structured, commonly used format.
  • Objection – Object to data processing based on legitimate interests or direct marketing.

To exercise these rights, individuals can contact us at info@albertchauffeur.co.uk

8. Data Breach Response

In the event of a data breach, we will -

  • Assess and Contain – Immediately identify and mitigate the breach.
  • Notify Authorities – Inform the Information Commissioner’s Office (ICO) within 72 hours, if required.
  • Communicate with Affected Individuals – Notify those impacted when there is a high risk to their rights and freedoms.

9. Policy Review

We regularly review and update this Data Protection Policy to ensure ongoing compliance with legal requirements and best practices. This policy was last updated on 24th March 2025.

10. Contact Information

For questions or concerns regarding this policy or data protection practices, please contact -Albert Chauffeur
[Your Business Address]
info@albertchauffeur.co.uk
[Your Contact Phone Number]