You have the right to make a complaint at any time to the Information Commissioner’s Office (ICO), the UK supervisory authority for data protection issues (www.ico.org.uk). We would, however, appreciate the chance to deal with your concerns before you approach the ICO, so please contact us in the first instance. It is important that the personal data we hold about you is accurate and current. Please keep us informed if your personal data changes during your relationship with us.
Who we are?
Our Site is owned and operated by MabelHR Ltd, a limited company registered in England under company number 08171703, whose registered address is 2 Tower House, Hoddesdon, Herts, EN11 8UR and whose business address is 71-75 Shelton Street, Covent Garden, London, WC2H 9JQ. Our VAT number is 140603358.
Our Data Protection Officer is Sharon Gormill, and she can be contacted by email at firstname.lastname@example.org, by telephone on 0203 667 3900, or by post at the above business address.
What do the terms mean?
This Policy applies to Data Protection Law meaning the EU Regulation 2016/679 – the General Data Protection Regulation (GDPR).
Personal data, or personal information, means any and all data that relates to an identifiable person who can be directly or indirectly identified from that data. In this case, it means personal data that you give to us via our site.
What we may collect
Personal data, or personal information, means any information about an individual from which that person can be identified. It does not include data where the identity has been removed (anonymous data).
We may collect, use, store and transfer different kinds of personal data about you depending on whether you are a Website User and/or a Client using our services:
Identity Data includes first name, last name, username or similar identifier. When you email us, phone us , or use live chat, we may collect information such as your first name, last name, email address and phone number.
Marketing and Communications Data includes your preferences in receiving marketing from us.
Technical Data includes internet protocol (IP) address, browser type and version, time zone setting and location, browser plug-in types and versions, operating system and platform and other technology on the devices you use to access this Website.
Usage Data includes information about how you use our Website and Services.
Cookies Data like many websites, we use “cookies” to enhance your experience and gather information about visitors and visits to our websites. Please refer to the “Do we use ‘cookies’?” section below for information about cookies and how we use them and what kind.
We do not collect any Special Categories of Personal Data about you (this includes details about your race or ethnicity, religious or philosophical beliefs, sex life, sexual orientation, political opinions, trade union membership, information about your health and genetic and biometric data). Nor do we collect any information about criminal convictions and offences.
For Clients only:
Contact Data includes billing address, invoicing address, email address and telephone numbers.
Transaction Data includes details about payments and other details of the Services you have purchased from us.
Collection and use of your personal information
Depending on your use of Our Site and/or Services, we may collect and hold some or all of the personal and non-personal data set out in the table below. Your personal information may be used by us, our employees, service providers and disclosed to third parties for the following purposes. For each of these purposes, we have set out the legal basis on which we use your personal information below.
Legal basis for use of your Personal Information
|To provide products, services and information requested by you.||
The legal basis will fall into one of the following four categories, depending on the communication and the purpose for which it was sent:
• our legitimate business interests in order for us to manage our relationship with you;
|To keep you up to date by telephone or email, with information about MabelHR and our services subject to any marketing preferences indicated by you.||This processing is carried out with your consent.|
|To administer your account and provide our customer services.||This processing will be necessary our legitimate business interests in order for us to manage our relationship with you; or the performance of a contract between you and us.|
|To manage complaints, feedback and queries.||This processing will be necessary for the performance of our contractual obligations between you and us to comply with our legal obligations; and/or our legitimate business interests in order for us to manage our relationship with you and to enable us to improve and develop our business operations and the services.|
|To comply with any legal obligations.||This processing is necessary for compliance with legal obligations to which we are subject.|
|To conduct analysis for traffic management, and to support product and service development.||This processing is necessary for our legitimate business interests to ensure that we can fulfil our obligations to you which relate to the provision of the services and to improve/develop our products and services.|
|To carry out our obligations arising from any contracts entered into between you and us and to provide you with the products and services requested.||The processing is necessary for the performance of our contract with you.|
|To contact you for market research purposes.||The processing is carried out for our legitimate business interests because it enables us to develop and improve our website and our products and services offered to you.|
|To notify you about changes to our website.||This processing is necessary for our legitimate business interests in order for us to manage our relationship with you.|
You have the right to withdraw consent to marketing at any time by contacting us at email@example.com and we will either delete your data from our systems or move your data to our “unsubscribe list”.
How long will we keep your personal data?
No personal information has to be given in order to navigate around the MabelHR website. Website visitors may choose to leave us their contact information by contacting us via live chat or one of our webforms. We do not keep your personal data for any longer than is necessary in light of the reason(s) for which it was first collected.
If you choose to provide any information via our website, your details will be added to our CRM database and used by us to contact you in relation to our services. Your details will be held for no longer than 12 months unless we retain your permission to stay in contact beyond the initial 12 month term.
Website visitors signing up to our newsletter will be added to our marketing database until you choose to unsubscribe.
MabelHR may also store and use personal information which you have provided on the website or during communications with us, during relationship management activities, provision of services and commercial administration. Your details will remain on our database while you remain in active communication with us or through our provision of services.
Where we store your data and security
Where we use providers based in the US, we may transfer data to them if they are part of the Privacy Shield which requires them to provide similar protection to personal data shared between the Europe and the US. For further details, see the European Commission: EU-US Privacy Shield.
Data security is of great importance to us, and to protect your data we have put in place suitable physical, electronic and managerial procedures to safeguard and secure data collected through our Website. In addition, we limit access to your personal data to those employees, agents, contractors and other third parties who have a business need to know. They will only process your personal data on our instructions and they are subject to a duty of confidentiality.
We have put in place procedures to deal with any suspected personal data breach and will notify you and any applicable regulator of a breach where we are legally required to do so.
By giving us your personal data, you agree to this arrangement. We will do what we reasonably can to keep your data secure.
Notwithstanding the security measures that we take, it is important to remember that the transmission of data via the internet may not be completely secure and that you are advised to take suitable precautions when transmitting to us data via the internet and you take the risk that any sending of that data turns out to be not secure despite our efforts.
Do We Share Your Data?
We may compile statistics about the use of our Site including data on traffic, usage patterns, user numbers, and other information. All such data will be anonymised and will not include any personally identifying data, or any anonymised data that can be combined with other data and used to identify you. We may from time to time share such data with third parties such as affiliates, partners, and advertisers. Data will only be shared and used within the bounds of the law.
Your personal information may also be processed by other organisations on our behalf for the purpose of providing information or services to you. The use of personal data for these purposes will remain under our control at all times. We may disclose your information to our partners, associates or subcontractors. Some of these parties may reside outside the European Economic Area. If we do this, your information will be teated to the same standards adopted in the UK.
We may share your personal information with service providers where this is required in order to provide the full service you require e.g. legal advice, however this will only be done where appropriate contracts are in place confirming adequate security and protection of data.
In certain circumstances, we may be legally required to share certain data held by us, if we have a legal obligation to do so.
As a data subject, you have the following rights in accordance with data protection legislation:
- The right to obtain a copy of the personal data we hold about you;
- The right to update or amend the personal data we hold about you if it is inaccurate or incomplete;
- The right to erase, or restrict the processing of, the personal data we hold about you;
- The right to object to the processing of the personal data we hold about you;
- The right to withdraw any consents you have provided in respect of our processing of your personal data; and
- The right to lodge a complaint with the ICO (www.ico.org.uk)
To exercise any of these rights please write to us using the contact information stated above in the Who We Are section.
How Can You Access Your Information?
You have the right to ask for a copy of any of your personal data held by us. We will provide any and all information in response to your request free of charge. Please contact us for more details at firstname.lastname@example.org.
Links to other websites
Our Website may contain links to third party websites that are not covered by this Policy. We therefore ask you to review the privacy statements of other websites and applications to understand their information practices. We have no control over how your data is collected, stored or used by other websites and we advise you to check the privacy policies of any such websites before providing any data to them.
Changes to this Policy
If you have any questions about this policy, please email email@example.com.
If it’s urgent, you can also contact our data protection officer directly at firstname.lastname@example.org Our data protection officer ensures that our processing of personal data is carried out in accordance with applicable law.