OTB Repair Ltd Data Protection Policy
​
1. Introduction OTB Repair Ltd ("the Company") is committed to protecting the privacy and security of personal data. This policy outlines how we collect, process, store, and protect personal data in compliance with the UK General Data Protection Regulation (UK GDPR) and the Data Protection Act 2018.
2. Scope This policy applies to all employees, contractors, and third parties handling personal data on behalf of OTB Repair Ltd. It covers all personal data processed by the Company, including customer, employee, supplier, and partner information.
3. Principles of Data Protection OTB Repair Ltd adheres to the following data protection principles:
-
Lawfulness, Fairness, and Transparency: Personal data is processed lawfully, fairly, and transparently.
-
Purpose Limitation: Data is collected for specified, explicit, and legitimate purposes and not further processed in a manner incompatible with those purposes.
-
Data Minimisation: Only necessary data for the intended purpose is collected and processed.
-
Accuracy: Personal data is kept accurate and up to date.
-
Storage Limitation: Data is retained only for as long as necessary.
-
Integrity and Confidentiality: Data is processed securely to maintain its integrity and confidentiality.
4. Data Collection and Processing OTB Repair Ltd collects and processes personal data for the following purposes:
-
Providing repair services to customers.
-
Managing employee records and payroll.
-
Complying with legal and regulatory obligations.
-
Communicating with suppliers and partners.
-
Improving business operations and customer service.
5. Data Security OTB Repair Ltd implements appropriate technical and organisational measures to ensure data security, including:
-
Secure storage and encryption of personal data.
-
Restricted access to personal data based on job roles.
-
Regular cybersecurity assessments and staff training.
-
Secure disposal of data when no longer required.
6. Data Subject Rights Individuals have the following rights regarding their personal data:
-
Right to access their data.
-
Right to rectification of inaccurate data.
-
Right to erasure (‘right to be forgotten’).
-
Right to restrict processing.
-
Right to data portability.
-
Right to object to processing.
-
Right not to be subject to automated decision-making. Requests related to data subject rights should be submitted to admin@otb.repair.
7. Data Sharing and Third Parties Personal data may be shared with third-party service providers for business operations, such as IT support, payment processing, and delivery services. All third parties must comply with UK GDPR and have data protection agreements in place.
8. Data Breach Management OTB Repair Ltd has a data breach response plan that includes:
-
Immediate containment and assessment of the breach.
-
Notification of affected individuals and regulatory authorities where required.
-
Implementation of corrective actions to prevent future breaches.
9. Policy Review and Updates This policy is reviewed annually or when significant changes occur in data protection laws or business operations.
For any queries regarding this policy, please contact admin@otb.repair.
Effective Date: 21/02/2025
