Essential Trading Co-operative Privacy and Data Protection Policy
1.
Policy Statement
Every day our business will receive, use, and store information about a range of data subjects, including but limited to customers, suppliers, job applicants, and general enquiries. This policy sets out how we ensure that this information is processed lawfully and appropriately, in line with the requirements of the Data Protection Act 2018 and the General Data Protection Regulation (collectively referred to as the ‘Data Protection Requirements’).
We take our data protection duties seriously, because we respect your privacy. We will not sell or otherwise transfer your information to third parties for marketing purposes without your explicit consent.
2.
About This Policy
Essential Trading Co-operative is responsible for ensuring compliance with the Data Protection Requirements and with this policy. Any questions about the operation of this policy or any concerns that the policy has not been followed should be referred in the first instance to your usual contact at the Co-op; if you are unsure who to contact then write or call the HR team: hr@essential-trading.coop, 0117 9430 830.
3.
What is Personal Data?
Personal data means data (whether stored electronically or paper based) relating to a living individual who can be identified directly or indirectly from that data (or from that data and other information in our possession).
Processing is any activity that involves use of personal data. It includes obtaining, recording, holding or transferring data; organising, amending, retrieving, using, disclosing, erasing or destroying it.
4.
Data Protection Principles
As your data controller, we will ensure that your personal data is:
Processed fairly, lawfully and in a transparent manner.
Collected for specified, explicit and legitimate purposes and any further processing is completed for a compatible purpose.
Adequate, relevant and limited to what is necessary for the intended purposes.
Accurate, and where necessary, kept up to date.
Kept in a form which permits identification for no longer than necessary for the intended purposes.
Processed in line with the individual’s rights and in a manner that ensures appropriate security of the personal data, including protection against unauthorised or unlawful processing and against accidental loss, destruction or damage, using appropriate technical or organisational measures.
Not transferred to people or organisations situated in countries without adequate protection and without firstly having advised the individual.
5.
Fair and Lawful Processing
The Data Protection Requirements are not intended to prevent the processing of personal data, but to ensure that it is done fairly and without adversely affecting the rights of the individual.
In accordance with the Data Protection Requirements, we will only process personal data where it is required for the following lawful purposes: where the processing is necessary for performing a contract with the individual, for compliance with a legal obligation, in the legitimate interests of the business, or where the individual has given their consent.
6.
Processing for Limited Purposes
We have in place detailed policies and procedures for all categories of data subjects. These will be kept up to date with all Data Protection requirements and are available to data subjects upon request.
7.
Accurate Data
We will ensure that personal data we hold is accurate and kept up to date. We will check the accuracy of any personal data at the point of collection and at regular intervals afterwards. We will take all reasonable steps to amend or destroy inaccurate or out-of-date data.
8.
Timely Processing
We will not keep personal data longer than is necessary for the purpose or purposes for which it was collected. We will take all reasonable steps to destroy, or erase from our systems, all data which is no longer required.
9.
Processing in line with Data Subject’s Rights
We will process all personal data in line with data subjects’ rights, in particular their rights to:
Confirmation as to whether or not personal data concerning the individual is being processed.
Request access to any data held about them.
Request rectification, erasure or restriction on processing of their personal data.
Lodge a complaint with a supervisory authority.
Data portability.
Object to processing, including for direct marketing.
Not be subject to automated decision making including profiling in certain circumstances.
10.
Data Security
We take appropriate and adequate security measures against unlawful or unauthorised processing of personal data, and against the accidental or unlawful destruction, damage, loss, alteration, unauthorised disclosure of or access to personal data transmitted, stored or otherwise processed.
We have in place industry-standard procedures and technologies to maintain the security of all personal data from the point of the determination of the means for processing and point of data collection to the point of destruction. Additionally, we use a secure connection when collecting personal financial information from you, which conforms to PCI standards. All forms which request credit card or bank details use the SSL (Secure Sockets Layer) protocol for encryption.
Wherever possible, we will store all personal data inside the European Economic Area (EEA). Any time that data is transferred outside the EEA, we ensure that exactly the same provisions on data security and processing are applied.
11.
Changes to this Policy
Our Privacy Policy may change from time to time. The amended version will be published on our website and any significant changes will be communicated to you either on the website or directly. This will replace any previous privacy policy. Last Updated: 18 May 2018.
12.
Cookies
eu_cookie_law - this stores whether the EU Cookie legislation notification on the site has been acknowledged. XSRF-TOKEN - prevents malicious cross-site request forgeries. Ow - identifies the user, avoiding the need to log in on every page visited or when performing an action requiring authentication.
We Value Your Privacy
We use cookies to ensure that you receive the best possible experience whilst you're accessing our site aswell as allowing both us and third parties to customise the marketing content you see across websites and social media. For further information please Read Our Privacy Policy.
Manage Cookies
Learn more about what each cookie category does and choose your settings.
Category
Description
Status
Necessary
These cookies are needed to enable our website to run and to keep it secure.
Functional
These cookies allow us to provide enhanced functionality and personalise content for you. For example they're used to recognise you when you return to our website. If you do not allow these cookies then some or all of these services may not function properly.
Marketing
These cookies help us decide which products, services and offers may be relevant for you. We use this data to customise the marketing content you see on websites, apps and social media. They also help us understand the performance of our marketing activities. These cookies are set by us or our carefully-selected third parties.
Performance
These cookies tell us how customers use our site and provide information to help us improve the website and your browsing experience.
Google Analytics Storage
Used by Google to enable storage, such as cookies (web) or app identifiers (apps), related to analytics, e.g. visit duration.
Google Ads Storage
Used by Google to enable storage, such as cookies (web) or device identifiers (apps), related to advertising.
Google Ads User Data
Used by Google to enable obtaining user data for advertising purposes.
Google Ads Personalization
Used by Google to enable personalized advertising.
Necessary
These cookies are needed to enable our website to run and to keep it secure.
Functional
These cookies allow us to provide enhanced functionality and personalise content for you. For example they're used to recognise you when you return to our website. If you do not allow these cookies then some or all of these services may not function properly.
Marketing
These cookies help us decide which products, services and offers may be relevant for you. We use this data to customise the marketing content you see on websites, apps and social media. They also help us understand the performance of our marketing activities. These cookies are set by us or our carefully-selected third parties.
Performance
These cookies tell us how customers use our site and provide information to help us improve the website and your browsing experience.
Google Analytics Storage
Used by Google to enable storage, such as cookies (web) or app identifiers (apps), related to analytics, e.g. visit duration.
Google Ads Storage
Used by Google to enable storage, such as cookies (web) or device identifiers (apps), related to advertising.
Google Ads User Data
Used by Google to enable obtaining user data for advertising purposes.
Google Ads Personalization
Used by Google to enable personalized advertising.