Privacy Policy - Gardeners Thamesmead

Gardeners Thamesmead is committed to protecting your privacy and handling personal data in a lawful, fair, and transparent way. This Privacy Policy explains how we collect, use, store, share, and protect personal information in connection with our gardening services. It applies to all Gardeners Thamesmead customers in the Thamesmead area, including current, former, and prospective customers who contact us, request a quotation, book a service, or receive gardening work from us.

1. Who We Are

For the purposes of data protection law, Gardeners Thamesmead acts as the data controller for personal information that we collect and use in the course of providing our services. This means we decide how and why your personal data is processed. We take our responsibilities under the UK GDPR and the Data Protection Act 2018 seriously and ensure that personal data is handled with appropriate care.

2. Information We Collect

We only collect personal data that is relevant and necessary for delivering our services, managing customer relationships, and meeting legal or operational obligations. Depending on your interaction with us, we may collect the following categories of information:

  • Identity details such as your name, title, and, where relevant, the name of your business or property manager.
  • Contact details such as your address, email address, and telephone number.
  • Service information such as details of the gardening work requested, service preferences, notes about your garden, and instructions provided by you.
  • Billing and payment information such as invoice records, payment status, and transaction history.
  • Communication records including enquiries, feedback, complaints, and correspondence relating to bookings or services.
  • Technical data where applicable, such as basic website or device information if you interact with our online services.

We do not intentionally collect special category data unless it is strictly necessary and you have provided it in a relevant context. If any sensitive information is shared with us, we will treat it with additional care and only process it where permitted by law.

3. How We Use Your Data

We use personal data for legitimate business purposes connected to our gardening services. These purposes include:

  • providing quotations, estimates, and service information;
  • managing bookings and carrying out gardening work;
  • communicating with you about appointments, service updates, or changes;
  • issuing invoices, processing payments, and maintaining financial records;
  • responding to enquiries, complaints, and customer support requests;
  • maintaining internal records and service history;
  • meeting legal, tax, accounting, and insurance obligations;
  • protecting our business, staff, and customers from fraud, misuse, or unlawful activity.

We will only use your personal data in ways that are compatible with the original purpose for which it was collected, unless we have a lawful reason to do otherwise.

4. Lawful Basis for Processing

We process personal data only where we have a valid lawful basis under the UK GDPR. The main lawful bases we rely on are:

Contract

We process data when it is necessary to enter into or perform a contract with you. This includes managing quotations, delivering gardening services, and handling payment arrangements.

Legal Obligation

We may process and retain certain information to comply with legal duties such as tax, accounting, insurance, or regulatory requirements.

Legitimate Interests

We may use your data where it is necessary for our legitimate business interests and where those interests are not overridden by your rights and freedoms. Examples include maintaining records, improving service quality, managing customer relationships, and protecting our operations.

Consent

In limited situations, we may rely on your consent, particularly where processing is optional and not required for a contract or legal obligation. Where consent is used, you can withdraw it at any time.

5. Data Sharing and Processors

We may share personal data with carefully selected third parties known as processors or service providers. These organisations process data on our behalf and only under our instructions. We require them to maintain appropriate security and confidentiality measures.

Examples of processors or third parties may include:

  • Payment processors that handle secure payment transactions;
  • Accounting or bookkeeping services that support invoicing and financial administration;
  • IT and hosting providers that store or protect business records and systems;
  • Communication tools used for email, messaging, or appointment management;
  • Professional advisers such as accountants, insurers, or legal advisers when necessary;
  • Public authorities where disclosure is required by law.

We do not sell your personal data. Any sharing is limited to what is necessary for service delivery, compliance, or business administration. If data is transferred outside the UK, we will ensure appropriate safeguards are in place.

6. Data Retention

We keep personal data only for as long as necessary for the purposes described in this policy. Retention periods depend on the type of information, the nature of our relationship with you, and any legal requirements.

  • Customer and service records are generally kept for the duration of the service relationship and for a reasonable period afterwards to manage follow-up queries and dispute resolution.
  • Financial records are retained for the period required by tax and accounting law.
  • Communication records may be held for as long as needed to support customer service, quality assurance, or legal defence.
  • Consent-based records are kept until consent is withdrawn or the information is no longer needed.

When personal data is no longer required, we will delete it securely or anonymise it so it can no longer identify you.

7. Data Security

We use appropriate technical and organisational measures to protect personal data from loss, misuse, unauthorised access, alteration, or disclosure. These measures are designed to reflect the nature of the data and the risks involved. While no system can be guaranteed completely secure, we take reasonable steps to safeguard the information we hold.

Gardeners Thamesmead also expects any processors we use to apply comparable security standards and to process data only according to our instructions.

8. Your Rights

You have rights under data protection law in relation to the personal data we hold about you. These rights may be subject to conditions or exemptions depending on the circumstances. They include:

  • Right of access – you can request a copy of the personal data we hold about you.
  • Right to rectification – you can ask us to correct inaccurate or incomplete information.
  • Right to erasure – in some cases, you can ask us to delete your personal data.
  • Right to restrict processing – you can ask us to limit how we use your data in certain situations.
  • Right to object – you can object to processing based on legitimate interests or direct marketing, where applicable.
  • Right to data portability – you can request certain information in a structured, commonly used format.
  • Right to withdraw consent – where processing relies on consent, you may withdraw it at any time.

If you wish to exercise any of these rights, we will respond in accordance with applicable law. We may need to verify your identity before actioning your request.

9. Complaints and Supervisory Authority

If you have concerns about how your personal data is handled, we encourage you to raise them with us first so we can address the issue promptly. You also have the right to lodge a complaint with the UK data protection supervisory authority if you believe your rights have been infringed.

10. Changes to This Policy

We may update this Privacy Policy from time to time to reflect changes in our services, legal requirements, or data handling practices. Any updated version will apply from the date it becomes effective. We recommend reviewing this policy periodically to stay informed about how your information is protected.

11. Summary of Our Approach

In summary, Gardeners Thamesmead processes personal data carefully, lawfully, and only where necessary for service delivery, administration, and compliance. We aim to keep information accurate, secure, and relevant, while respecting your rights and maintaining transparency at every stage. Our commitment is to treat the privacy of every customer in Thamesmead with fairness, respect, and accountability.

Gardeners Thamesmead

Gardeners Thamesmead is committed to protecting your privacy and handling personal data in a lawful, fair, and transparent way.

Get In Touch With Us.

Please fill out the form below to send us an email and we will get back to you as soon as possible.