-
Privacy Notice on your website
Do you have one? Is it up to date? Are your forms compliant with UKGDPR?
We have moved three websites recently and only one had a Privacy Notice and it was not UK GDPR compliant. Also, one of the companies was not even registered with the ICO, which is mandatory if you are processing “Personbally Identifiable Data”, which, if you have ANYONE’s email address then you do and thus should be registered.
You can check if you are registered here: https://ico.org.uk/esdwebpages/search, input your postcode and the ICO will search their database and instantly tell you if you have a registration.
If you are not registered you can do so easily here: https://ico.org.uk/for-organisations/data-protection-fee/register/new-registration/
Just visit the link above and answer the questions, it will advise cost of your annual fee, which are as follows,-
Tier 1 (Micro): £40 (=10 staff or =£632k turnover).
-
Tier 2 (SME): £60 (>10 staff or =£36m turnover).
It’s likely most smaller business will fall into the £40 band
Note: This is a publicy searchable database, and if you are reported by a customer, or a competitor it could cost time and money to rectify and have the added stress of a compliance audit (unlikely but still a possibility).
If you are unsure comment below with your website or DM me and I will review all and advise with the steps you should take to fix the issues.
Rob Fryer2 Comments-
Does compliance affect offline and handwritten notes too? – I always worry about them going into the recycling.
I do shred – but it is a niggle I have!
-
@sl007 ALL data is affected, whether it is digital or real-world.
There should be a process of how notes are taken, transferred and the original document disposed of. Shredding is good, or secure destruction and any rubbish that contains sensitive info should be stored in a locked bin until it is disposed of.
You should establish a retention policy that sets specific time limits for how long you keep different types of documents. When those retention periods expire, the notes should be shredded.
-
-