Effective Date: April 01, 2024
Introduction
At Sameday Express Couriers, we are committed to protecting the privacy and personal data of our customers, employees, and other individuals with whom we interact. This GDPR Policy outlines our approach to ensuring compliance with the General Data Protection Regulation (GDPR) and the protection of personal data in accordance with UK data protection laws.
Scope
This GDPR Policy applies to all personal data processed by Sameday Express Couriers, whether collected online or offline, in electronic, paper, or any other format.
Principles of Data Protection
We adhere to the following principles when processing personal data:
- Lawfulness, Fairness, and Transparency: We process personal data lawfully, fairly, and transparently, ensuring that individuals are aware of how their data is used.
- Purpose Limitation: We only collect and process personal data for specified, explicit, and legitimate purposes, and we do not process it in a manner incompatible with those purposes.
- Data Minimisation: We limit the collection of personal data to what is necessary for the purposes for which it is processed.
- Accuracy: We ensure that personal data is accurate and, where necessary, kept up to date.
- Storage Limitation: We store personal data for no longer than is necessary for the purposes for which it is processed.
- Integrity and Confidentiality: We process personal data in a manner that ensures appropriate security, including protection against unauthorised or unlawful processing, accidental loss, destruction, or damage.
Data Collection and Processing
- Types of Personal Data: We collect and process personal data such as names, addresses, contact details, delivery information, and payment details necessary for the provision of our courier services.
- Legal Basis for Processing: We process personal data based on legal grounds such as contract performance, legitimate interests, consent, and compliance with legal obligations.
- Data Subject Rights: We respect individuals’ rights under the GDPR, including the right to access, rectify, erase, restrict processing, and object to processing of their personal data. Requests to exercise these rights should be directed to our Data Protection Officer.
- Data Transfers: We ensure that any transfers of personal data outside the UK or the European Economic Area (EEA) comply with GDPR requirements, including the use of appropriate safeguards such as Standard Contractual Clauses or adequacy decisions.
Data Security
We implement appropriate technical and organisational measures to ensure the security of personal data against unauthorised or unlawful processing and accidental loss, destruction, or damage. These measures include:
- Encryption of personal data
- Access controls and authentication mechanisms
- Regular security assessments and audits
- Employee training on data protection best practices
Data Breach Management
In the event of a personal data breach, we have procedures in place to detect, investigate, and report breaches to the relevant supervisory authority and affected individuals in accordance with GDPR requirements.
Privacy by Design and Default
We incorporate privacy and data protection considerations into the design and implementation of our systems, processes, products, and services to ensure that personal data is protected by default.
Data Protection Officer
Sameday Express Couriers has appointed a Data Protection Officer (DPO) responsible for overseeing compliance with GDPR requirements and serving as a point of contact for data protection inquiries and requests.
Training and Awareness
We provide regular training and awareness programmes to our employees to ensure they understand their responsibilities regarding data protection and GDPR compliance.
Compliance Monitoring and Review
We regularly review and update this GDPR Policy and our data protection practices to ensure ongoing compliance with GDPR requirements and any changes in data protection legislation.
Contact Information
For inquiries or requests regarding data protection and GDPR compliance, please contact our Data Protection Officer at dpo.samedayexpresscouriers@gmail.com.