Privacy Policy - Gardeners Bedford Park

This Privacy Policy explains how personal data is collected, used, stored, shared, and protected by Gardeners Bedford Park. It applies to all Gardeners Bedford Park customers in the area, including individuals who enquire about services, receive quotations, book appointments, request ongoing maintenance, or otherwise interact with our gardening services.

We are committed to handling personal information in a lawful, fair, and transparent manner under the UK General Data Protection Regulation (UK GDPR) and the Data Protection Act 2018. We respect your privacy and aim to keep our practices clear, proportionate, and limited to what is necessary for providing our services. By using our services, you acknowledge that your personal information may be processed as described in this policy.

1. Information We Collect

We may collect and process the following categories of personal data:

  • Identity information: name, title, and any details needed to identify you as a customer or potential customer.
  • Contact information: address, phone number, and email address.
  • Service information: details of the gardening services requested, work preferences, appointment dates, property access notes, and service history.
  • Billing and transaction information: payment records, invoice details, and related administrative information.
  • Communication records: messages, enquiries, complaints, and notes from conversations relating to service delivery.
  • Technical data: limited information that may be collected through digital communication systems, such as device details or basic usage logs where relevant to security and system administration.

We generally only collect personal data that is necessary for the provision, administration, and improvement of our services. We do not intentionally collect special category data unless it is strictly required and a lawful basis applies. If such information is ever provided voluntarily, it will be handled with enhanced care and only for a legitimate purpose.

2. How We Use Personal Data

We use personal data for the following purposes:

  • to respond to enquiries and provide quotations;
  • to arrange, deliver, and manage gardening services;
  • to maintain service records and customer preferences;
  • to process payments and manage invoices;
  • to communicate with customers about appointments, updates, or service changes;
  • to handle complaints, disputes, and service-related queries;
  • to meet legal, accounting, and tax obligations;
  • to protect the security of our systems, staff, and customers;
  • to improve the quality and efficiency of our services.

We will only use personal data for the purpose for which it was collected unless we reasonably consider that another compatible purpose applies or we are required by law to do otherwise. Gardeners Bedford Park does not use personal data for unrelated purposes without a lawful basis.

3. Lawful Basis for Processing

Under UK GDPR, we rely on one or more of the following lawful bases when processing personal data:

Contract

We process personal data where it is necessary to enter into or perform a contract with you. This includes providing quotations, scheduling services, carrying out agreed work, managing payments, and communicating about the services you requested.

Legal obligation

We may process and retain certain information to comply with legal duties, including record-keeping, taxation, accounting, and any lawful requests from authorities.

Legitimate interests

We may process data where it is necessary for our legitimate business interests, provided your rights and freedoms do not override those interests. This may include maintaining service records, improving operations, preventing fraud, ensuring system security, and managing customer relationships. Where we rely on legitimate interests, we assess the impact on your privacy before processing.

Consent

In limited circumstances, we may rely on your consent, especially where processing is optional and not necessary for service delivery. If we rely on consent, you can withdraw it at any time. Withdrawal of consent does not affect processing already carried out before the withdrawal.

4. Sharing and Processors

We may share personal data with trusted third parties who help us operate our services. These third parties act as processors or, in some cases, independent controllers. We ensure that appropriate data processing agreements and safeguards are in place where required.

Examples of processors may include:

  • administrative and scheduling service providers;
  • payment and invoicing service providers;
  • IT and hosting providers;
  • email or communication platform providers;
  • professional advisers such as accountants or legal advisers where needed;
  • service contractors working on our behalf under instruction.

We only share information that is necessary for the relevant task. Processors are not permitted to use your data for their own purposes and must process it only in accordance with our instructions and applicable law. We may also disclose personal data where required by law, to enforce our rights, or to protect the safety and security of our customers, staff, and business.

5. Data Retention

We keep personal data only for as long as necessary to fulfil the purposes for which it was collected, including the purposes of satisfying legal, accounting, tax, and reporting requirements. Retention periods vary depending on the type of data and the reason for processing.

  • Customer service records are typically kept for a period necessary to manage the ongoing relationship and any follow-up issues.
  • Financial and billing records may be retained for the period required by tax and accounting law.
  • Communication records may be retained for a reasonable period to evidence instructions, resolve disputes, or maintain service continuity.
  • Enquiry records relating to individuals who do not become customers may be kept for a limited time for business administration and then securely deleted or anonymised.

When data is no longer needed, we will take reasonable steps to delete, destroy, or anonymise it securely. Retention decisions are based on necessity, legal obligations, and the practical need to defend or establish legal claims.

6. Your Rights

As a data subject, you have rights in relation to your personal data. These rights may be subject to legal limitations and exemptions. They include:

  • Right of access: you may request a copy of the personal data we hold about you.
  • Right to rectification: you may ask us to correct inaccurate or incomplete data.
  • Right to erasure: you may request deletion of your data in certain circumstances.
  • Right to restriction: you may ask us to limit how we use your data in certain cases.
  • Right to object: you may object to processing based on legitimate interests or direct marketing.
  • Right to data portability: you may request certain data in a structured, commonly used format where applicable.
  • Right to withdraw consent: where processing is based on consent, you may withdraw it at any time.

To exercise your rights, you should provide sufficient information to help us identify the relevant data and verify your identity. We will respond within the timeframe required by law. If you believe your rights have not been respected, you may also have the right to lodge a complaint with the UK Information Commissioner’s Office (ICO).

7. Data Security

We take appropriate technical and organisational measures to protect personal data from unauthorised access, loss, misuse, alteration, or disclosure. These measures may include access controls, secure storage, restricted permissions, and staff awareness practices. While no system can be guaranteed completely secure, we regularly review our handling procedures to reduce risk and maintain reasonable safeguards.

8. International Transfers

If personal data is transferred outside the UK, we will ensure that appropriate safeguards are in place in accordance with applicable data protection law. Such safeguards may include adequacy regulations or approved contractual protections designed to preserve an equivalent level of privacy protection.

9. Changes to This Policy

We may update this Privacy Policy from time to time to reflect legal, operational, or service-related changes. Any updated version will apply from the date of publication. We encourage customers to review the policy periodically so they remain informed about how their personal data is handled.

10. Summary of Our Commitment

Gardeners Bedford Park is committed to processing personal data responsibly, lawfully, and only when necessary. We collect limited information, use it for clear service-related purposes, rely on appropriate lawful bases, share it only with trusted processors when needed, and retain it only for as long as required. We also respect your rights and will handle requests in line with GDPR principles. This policy applies to all Gardeners Bedford Park customers in area and is intended to provide a clear and accessible explanation of our privacy practices.

Gardeners Bedford Park

This Privacy Policy explains how Gardeners Bedford Park collects, uses, shares, and retains personal data for customers in the area under UK GDPR.

Get In Touch With Us.

Please fill out the form below to send us an email and we will get back to you as soon as possible.