Privacy Policy - Gardeners New Cross

This Privacy Policy explains how Gardeners New Cross handles personal data for customers and prospective customers in the New Cross area. It applies to all Gardeners New Cross customers in the area, including individuals who request services, receive quotations, book appointments, or communicate with us about gardening work. We are committed to protecting personal information and processing it in line with the UK GDPR and the Data Protection Act 2018.

We aim to be clear, lawful, and transparent about what data we collect, why we collect it, how long we keep it, who may process it on our behalf, and the rights available to you. This policy should be read alongside any other privacy notices or service terms that may apply to a specific interaction.

1. Who We Are

Gardeners New Cross provides gardening and related outdoor maintenance services to residential and commercial customers. In the context of this policy, we act as a data controller for the personal data we determine the purposes and means of processing. This means we decide how and why certain data is used in order to manage enquiries, deliver services, handle payments, maintain records, and meet legal obligations.

2. Personal Data We Collect

We collect only data that is relevant and necessary for our service operations. The categories of personal data we may collect include:

  • Identity details, such as your name and any preferred title.
  • Contact details, such as address, email address, and telephone number.
  • Service information, including details about the type of gardening work requested, site access notes, and appointment preferences.
  • Transaction information, such as invoices, payment records, and service history.
  • Communication records, including correspondence by phone, email, or message relating to bookings, estimates, complaints, or changes to services.
  • Technical data that may be collected when using digital systems, such as IP address or device information, where relevant to security and fraud prevention.
  • Special category data only where strictly necessary and with appropriate safeguards, for example if you choose to provide accessibility information that helps us carry out a service safely and appropriately.

We do not seek to collect unnecessary information. Where possible, we use the minimum amount of data needed to deliver the service effectively and responsibly.

3. How We Use Your Data

We process personal data for the following purposes:

  • To respond to enquiries and provide quotations.
  • To manage bookings, appointments, and service delivery.
  • To communicate about scheduling, changes, and service updates.
  • To issue invoices, process payments, and maintain financial records.
  • To handle complaints, feedback, and customer support matters.
  • To improve service quality, record customer preferences, and maintain internal administration.
  • To comply with legal, tax, accounting, and regulatory obligations.
  • To protect our business, staff, and customers from misuse, fraud, or security incidents.

We process information in a way that is fair, lawful, and limited to specific purposes. We do not use personal data for unrelated purposes unless the law allows it or you have provided valid consent where required.

4. Lawful Basis for Processing

Under GDPR, we must identify a lawful basis for each processing activity. Gardeners New Cross relies on the following lawful bases where appropriate:

Contract

We process personal data when it is necessary to enter into or perform a contract with you. This includes handling enquiries, confirming services, carrying out gardening work, and managing billing and service delivery.

Legal Obligation

We may process and retain certain records where required to comply with legal obligations, including tax, accounting, business, and record-keeping requirements.

Legitimate Interests

We may process information based on our legitimate interests where those interests are not overridden by your rights and freedoms. Examples may include managing our customer relationship, preventing fraud, improving services, and keeping secure administrative records.

Consent

In some limited situations, we may rely on your consent, particularly where processing is not covered by another lawful basis. Where consent is used, it will be informed, specific, and freely given, and you may withdraw it at any time.

We do not rely on a single lawful basis for every activity. The basis depends on the particular purpose and context of the processing.

5. How We Share Data and Processors

We may share personal data with trusted third parties only when needed for service delivery, administration, or compliance. These third parties may act as processors or independent controllers, depending on their role.

Processors may include:

  • IT and cloud service providers that support data storage, scheduling, or communication systems.
  • Accounting or bookkeeping providers that help with invoicing and financial administration.
  • Payment processors that handle secure payment transactions.
  • Administrative service providers that support record management or customer coordination.
  • Professional advisers, such as accountants or legal advisers, where necessary.

Where a processor acts on our behalf, they are required to handle personal data only under our instructions, use it securely, and keep it confidential. We take reasonable steps to ensure processors provide appropriate safeguards and comply with data protection requirements.

We may also disclose data if required by law, court order, regulatory authority, or to protect the rights, property, or safety of Gardeners New Cross, our customers, employees, or others.

6. International Transfers

Where any service provider stores or processes data outside the UK, we will ensure that appropriate safeguards are in place. These may include adequacy regulations, standard contractual clauses, or equivalent protective measures recognised under data protection law.

7. Data Retention

We retain personal data only for as long as necessary for the purpose for which it was collected, or as required by law. Retention periods depend on the type of data and the reason for keeping it.

  • Customer and service records are generally kept for the duration of the relationship and for a reasonable period afterwards for administration, audit, and dispute resolution.
  • Financial and tax records are retained for the period required by law and regulatory guidance.
  • Communication records may be retained for a limited period to deal with service queries, evidence of agreements, and customer support.
  • Security and technical logs may be kept for a shorter period where needed for system protection and troubleshooting.

When data is no longer needed, we will securely delete, anonymise, or archive it in line with internal retention procedures.

8. Your Rights

As a data subject under GDPR, you have a number of rights regarding your personal data. Subject to legal conditions and exemptions, you may have the right to:

  • Access the personal data we hold about you.
  • Rectify inaccurate or incomplete data.
  • Erase your data in certain circumstances.
  • Restrict how we process your data in certain situations.
  • Object to processing based on legitimate interests or direct marketing, where applicable.
  • Data portability for data you have provided to us and where the legal conditions are met.
  • Withdraw consent at any time where processing is based on consent.

You also have the right to be informed about how your data is used, and the right to raise a concern if you believe your data has been handled improperly. Exercising your rights will not usually affect the services you receive, unless the data is necessary to provide them.

9. Security of Personal Data

We use appropriate technical and organisational measures to help protect personal data from unauthorised access, loss, misuse, alteration, or disclosure. These measures may include access controls, secure storage, staff confidentiality expectations, and data minimisation practices. While no system can be guaranteed completely secure, we work to maintain a level of protection that is suitable to the nature of the data we handle.

10. Children’s Data

Our services are generally aimed at adults who arrange gardening services for homes or businesses. We do not knowingly collect children’s personal data except where it is incidental, limited, and necessary for service delivery or safety. If we become aware that we have collected unnecessary children’s data, we will take appropriate steps to remove it.

11. Changes to This Policy

We may update this Privacy Policy from time to time to reflect changes in law, business practices, or service arrangements. Any revised version will apply from the date it is published or otherwise communicated. We encourage customers in New Cross to review this policy periodically so they remain aware of how their data is handled.

12. Final Statement

This policy is designed to give a clear and honest explanation of how Gardeners New Cross handles personal data. We are committed to maintaining privacy, acting lawfully, and respecting the rights of everyone who uses our services in the New Cross area. If you have concerns about how your data is used, you may exercise your rights under data protection law and request appropriate action in line with those rights.

Gardeners New Cross

This Privacy Policy explains how Gardeners New Cross handles personal data for customers and prospective customers in the New Cross area.

Get In Touch With Us.

Please fill out the form below to send us an email and we will get back to you as soon as possible.