This privacy notice applies to individuals who:
“UK Healthcare” (referred to in this policy as “we”, “us” and “our”) is:
Bolton and District Hospital Saturday Council
Westfield House
60 Charter Row
Sheffield
S1 3FZ
Company Number: 00518573
ICO Registration Number: Z5979687
We have appointed a Data Protection Officer (DPO), who can be contacted in the following ways should you have any questions or feedback about the way your data is processed:
Email: dpo@westfieldhealth.com
Mail: Data Protection Officer
Bolton and District Hospital Saturday Council
Westfield House
60 Charter Row
Sheffield
S1 3FZ
We get information about you from the following sources:
We collect, use, store and process the following information, which we have categorised and grouped together as follows:
PROVIDING AND IMPROVING OUR PRODUCTS AND SERVICES
We collect or use the following information to provide and improve our products and services:
DEALING WITH QUERIES, COMPLAINTS OR CLAIMS
We collect or use the following personal information for dealing with queries, complaints or claims:
MARKETING AND RESEARCH
We collect or use the following personal information for information updates or marketing and research purposes:
PREVENTION OR DETECTION OF CRIME
We collect or use the following information for the prevention, detection, investigation and prosecution of crimes (e.g. fraud):
RECRUITMENT
We collect or use the following personal information for recruitment purposes:
WHEN VISITING OUR OFFICES
We collect or use the following personal information for physical security purposes, when you visit our offices:
Under UK data protection law, we must have a “lawful basis” for collecting and using your personal information. There is a list of possible lawful bases in the UK GDPR. You can find out more about lawful bases on the ICO’s website.
Purpose/ Activity | Lawful Basis |
Providing and improving our products and services | 1) Performance of a contract
2) Legal/ regulatory obligation
3) Legitimate Interests:
a. To ensure the security of our websites and systems. b. To improve and enhance our products and services. c. To provide a personalised service. d. To understand the usage of our website and services.
4) Substantial public interest condition: Insurance |
Dealing with queries, complaints and claims. | 1) Performance of a contract
2) Legal/ regulatory obligation
3) Legitimate Interests:
a. To improve and enhance our products and services. b. To provide a personalised service.
4) Substantial public interest condition: Insurance
|
Marketing and Research | 1) Consent
2) Legitimate interests:
a. To improve and enhance our products and services. b. To provide a personalised service. c. To promote our products and services via direct marketing. d. To determine the effectiveness of promotional campaigns.
|
Prevention and Detection of Crime | 1) Performance of contract
2) Legal/ regulatory obligation
3) Legitimate interests:
a. To detect, prevent and stop financial fraud.
|
Recruitment | 1) Performance of a contract
2) Legal/ regulatory obligation
|
Physical Visits | 1) Legal/ regulatory obligation
2) Legitimate interests:
a. For the safety and security of our people, visitors and assets. |
The lawful basis we rely on may affect your data protection rights which are in brief set out below. You can find out more about your data protection rights and the exemptions which may apply on the ICO’s website:
YOUR DATA PROTECTION RIGHTS
If you make a request, we must respond to you without undue delay and in any event within one month.
To make a data protection rights request, please contact us using the contact details at the top of this privacy notice.
Profiling and Automated Decision Making
We may use profiling to enable us to give you the best possible service, so that we can produce more relevant and tailored communications by having a deeper understanding of your behaviours, interests and personal preferences.
You have the right not to be subject to a decision based solely on automated processing, which has legal effects for you or affects you in any other significant way. We ensure that there are simple ways for you to request human intervention or challenge an automated decision. We also carry out regular checks to ensure that our systems and processes are working as intended.
We will share personal data with a limited number of third parties in the following circumstances for them to perform specific services for us:
We’ll never make your personal data available to anyone outside UK Healthcare for them to use for their own marketing purposes without your prior consent.
Your information is stored and processed within the UK and Europe.
In the future, should we transfer personal data overseas, we will ensure that we comply with UK data protection legislation, ensuring appropriate safeguards are in place and appropriate transparent notification is provided to you.
We have put in place appropriate security measures to prevent your personal data from being accidentally lost, used or accessed in an unauthorised way.
We are ISO 27001 certified and in addition, we limit access to your personal data to those employees, agents, contractors and other third parties who have a business need to know. They will only process your personal data on our instruction, and they are subject to a duty of confidentiality.
External Links
Please remember that if you use a link to go from our websites to another website, or you request a service from a third party, this privacy notice will no longer apply once you have left this website. Please note, your activity and interaction on any other website is subject to that website’s own rules and policies.
We will only retain your personal data for as long as is necessary to fulfil the purposes for which it is collected. Our core, documented, retention periods are:
When assessing what retention period is appropriate for your personal data, we take into consideration:
After such time, we will securely delete or destroy your personal data.
Please let us know if you are unhappy with how we have used your personal data by contacting the Data Protection Officer (details can be found in section 2).
You also have a right to complain to the Information Commissioner’s Office. You can find their contact details at www.ico.org.uk. We would be grateful for the chance to deal with your concerns before you approach the ICO so please contact us in the first instance.
If you would like this privacy notice in another format (for example: audio or large print) please contact us (see the ’Who we are’ section above).
We will keep this privacy notice up to date and notify you of any significant changes to the way we process data.
Last updated December 2024.