Privacy Policy - Gardeners Leyton

Gardeners Leyton is committed to protecting the privacy of every customer and website visitor who uses our services in the Leyton area. This Privacy Policy explains how we collect, use, store, share, and protect personal data, and sets out your rights under the UK General Data Protection Regulation (UK GDPR) and the Data Protection Act 2018.

This policy applies to all Gardeners Leyton customers in the area, including anyone who requests, receives, or enquires about our gardening services. It also applies to personal data we receive through phone enquiries, online forms, messages, contracts, service visits, and other interactions connected with our business.

By using our services, you acknowledge that we may process personal data in accordance with this policy. We only collect and use information where we have a lawful basis to do so, and we aim to keep your data safe, relevant, and limited to what is necessary.

1. Information We Collect

We collect and process personal data that is necessary for us to provide gardening services, manage customer relationships, and operate our business efficiently. The type of information we collect may include:

  • Identity details such as your name and, where applicable, the name of your organisation or property manager.
  • Contact details such as your address, email address, and telephone number.
  • Service information including details about the gardening work requested, appointment times, access instructions, and service preferences.
  • Billing and payment information such as payment status, invoicing records, and transaction references.
  • Communication records including messages, notes from calls, complaints, feedback, and service updates.
  • Technical information if you interact with our digital systems, such as device data, IP address, and basic usage logs.
  • Optional information you choose to provide, for example special instructions, accessibility needs, or preferred service times.

We do not intentionally collect special category data unless it is necessary and you have provided it, for example where a customer shares information relevant to access arrangements or safety. If such data is ever processed, we will apply extra care and safeguards.

2. How We Use Your Data

We use personal data for the following purposes:

  • To respond to enquiries and provide quotations.
  • To deliver gardening services and manage bookings.
  • To communicate with you about appointments, changes, or service matters.
  • To issue invoices, process payments, and maintain accounting records.
  • To manage complaints, feedback, and customer support.
  • To maintain internal records and improve service quality.
  • To comply with legal, tax, and regulatory obligations.
  • To prevent fraud, misuse, or unauthorised access to our systems.

We only use your information where it is necessary, proportionate, and lawful. We never sell your personal data.

3. Lawful Basis for Processing

Under UK GDPR, we must have a lawful basis for each processing activity. Gardeners Leyton relies on the following lawful bases:

Contract

We process personal data where it is necessary to enter into or perform a contract with you. This includes managing bookings, delivering services, and handling payments.

Legal Obligation

We process certain data to comply with legal requirements, such as tax, accounting, and record-keeping obligations. In some cases, we may also need to retain information to respond to lawful requests from authorities.

Legitimate Interests

We may process data where it is necessary for our legitimate business interests, provided those interests do not override your rights and freedoms. Examples include improving services, keeping secure records, preventing fraud, and managing customer communications. We balance our interests against your privacy expectations before relying on this basis.

Consent

Where required, we will rely on your consent, for example for certain optional communications or specific processing not covered by another lawful basis. You may withdraw consent at any time, without affecting the lawfulness of processing carried out before withdrawal.

4. Data Sharing and Processors

We may share personal data with trusted third parties who help us run our business. These parties act as data processors or independent controllers, depending on their role.

Processors may include:

  • IT and hosting providers that support our systems, storage, or communications.
  • Accounting and bookkeeping services that assist with invoicing and financial records.
  • Payment service providers that handle transactions securely.
  • Customer management or scheduling tools used to organise appointments and service records.
  • Professional advisers such as insurers, legal advisers, or auditors where needed.

We require processors to handle data securely, to use it only for agreed purposes, and to comply with UK data protection law. Where data is shared with independent controllers, they are responsible for their own privacy practices.

We may also disclose personal data if required by law, court order, or a competent public authority. Any sharing will be kept to the minimum necessary.

5. Data Retention

We keep personal data only for as long as necessary for the purposes for which it was collected, including legal, accounting, and operational requirements. Retention periods vary depending on the type of record and why it is needed.

In general:

  • Customer service and contract records are retained for the duration of the service relationship and for a reasonable period afterwards.
  • Invoices, payment records, and accounting information are retained for the period required by tax and financial law.
  • Communication records may be kept for longer if needed to resolve disputes, maintain service history, or defend legal claims.
  • Data no longer needed is securely deleted, anonymised, or otherwise disposed of.

We regularly review our records to ensure we do not keep information longer than necessary. Retention is based on necessity, not convenience.

6. Data Security

We take appropriate technical and organisational measures to protect personal data from loss, misuse, unauthorised access, alteration, or disclosure. These measures may include access controls, secure storage, staff awareness, and limited data sharing.

While no system can be guaranteed to be completely secure, we work to reduce risks and respond promptly to suspected incidents. If a personal data breach is likely to result in a risk to your rights and freedoms, we will act in line with legal requirements.

7. Your Rights

If you are a customer of Gardeners Leyton in the Leyton area, you have rights regarding your personal data. Subject to legal conditions and exceptions, these rights include:

  • The right of access to obtain confirmation of whether we process your data and a copy of that data.
  • The right to rectification to correct inaccurate or incomplete information.
  • The right to erasure in certain circumstances, sometimes called the right to be forgotten.
  • The right to restriction of processing in specific situations.
  • The right to object to processing based on legitimate interests or direct marketing, where applicable.
  • The right to data portability for data you provided to us, where processing is based on consent or contract and carried out by automated means.
  • The right to withdraw consent where we rely on consent for processing.

If you wish to exercise any of these rights, we will respond within the time limits required by law. We may need to verify your identity before acting on your request.

8. Children’s Data

Our services are intended for adult customers, landlords, property managers, and business clients. We do not knowingly collect data from children. If we become aware that we have inadvertently received such data, we will take appropriate steps to delete it or handle it lawfully.

9. International Transfers

Where any processor or service provider stores or accesses data outside the UK, we will ensure appropriate safeguards are in place to protect your information in line with applicable law. These safeguards may include approved contractual protections or transfers only to countries with adequate legal safeguards.

10. Changes to This Policy

We may update this Privacy Policy from time to time to reflect changes in law, our services, or our data handling practices. Any updated version will apply from the date it is published or otherwise communicated. We encourage customers to review the policy periodically so they remain informed about how their data is used.

11. Our Commitment

Gardeners Leyton respects your privacy and handles personal data with care. We aim to be transparent about what we collect, why we collect it, and how long we keep it. We also work to ensure that your information is processed fairly, securely, and only when there is a valid reason to do so.

In summary, we collect only the information needed to provide and manage our gardening services, rely on clear lawful bases for processing, use trusted processors under proper safeguards, retain records only as long as necessary, and respect your legal rights at all times.

Gardeners Leyton

Gardeners Leyton is committed to protecting the privacy of every customer and website visitor who uses our services in the Leyton area.

Get In Touch With Us.

Please fill out the form below to send us an email and we will get back to you as soon as possible.