UK GDPR Data Privacy Notice & Cookies Policy for Triad's website
This Privacy Notice sets out the data processing practices of Triad Limited. Please note that all data captured will be used and held in accordance with the requirements of the Data Protection Act 2018, The UK General Data Protection Regulation (UK-GDPR) and The Privacy and Electronic Communications Regulations (PECR).Privacy promise
We promise that we will tell you how we use your data, and we'll make sure that any data we collect and store, will be stored securely.
What is the purpose of this privacy notice?
This privacy notice aims to give you information on how we collect and process your personal data through your use of this website, including any data you may provide through this website when you sign up to complete our contact form.Safety is our number one priority
We may have to collect and keep some data about you, for example your name, phone number and email address. We may also have to share your data with our trusted partners, in order to provide you with services.Third-party links outside of our control
This website may include links to third-party websites, plug-ins and applications. Clicking on those links or enabling those connections may allow third parties to collect or share data about you. We do not control these third-party websites and are not responsible for their privacy statements.You are in control
If you have subscribed but would like to stop receiving marketing from us, you can email us at [email protected] with the header “Unsubscribe', or click on the unsubscribe link at the bottom of any email you receive relating to marketing or general communications from us. You can also email us at the same address if the information we hold on you is wrong; just let us know what needs to be updated and we will make the corrections.1. Who is responsible for your data
Our Privacy Notice applies to the personal data that Triad collects and uses.
References in this Privacy Notice to “Triad”, “we”, “us” or “our” mean Triad Limited (a company registered in England and Wales with registration no 02958101 and registered office at The Stables, Holdenby House, Northampton, Northamptonshire, NN6 8DJ). We control the ways your personal data are collected and the purposes for which your personal data are used by us and are the “data controller” for the purposes of the UK Data Protection Act 1998, and other currently applicable data protection legislation.2. Personal data we collect about you
Personal data, or personal information, means any information about an individual from which that person can be identified, either directly or in combination with other information that we may hold. You can find out more about personal data from the Information Commissioners Office.
We may collect, use, store and transfer different kinds of personal data about you which we have grouped together as follows:Categories of data we may collect
We may collect and process the following categories of information about you if there is a legitimate or contractual interest / need to do so:Example 1
Activity: When you complete a contact form requesting more information about us or our servicesExample 2
Activity: When you contact us requesting more information about us or our servicesExample 3
Activity: When you interact with us on social mediaExample 4
Activity: When you reply to our requests for feedback or participate in our customer surveysSensitive personal data
In the course of providing services to you, we do not request information that could reveal your racial or ethnic origin, physical or mental health, religious beliefs or alleged commission or conviction of criminal offences. Such information is considered “sensitive personal data” under the UK Data Protection Act 1998 and other data protection laws. You should only ever provide this information if you are happy to give your explicit consent, it is necessary, or you have deliberately made it public. By providing any sensitive personal data you explicitly agree that it may be collected and used in order to provide any agreed services. Triad will not collect or store sensitive personal data unless you are an employee of the company or we have a legitimate reason to do so in the proper provision of our engagement with you.The legal basis on which we rely are:
Contract – processing is necessary for us to administer the pre-contract and contractual relationship between ourselves and our suppliers/customers/potential employees in connection with the performance of a contract.Legitimate interests – Legitimate interests can include commercial interests, individual interests or broader societal benefits including your social media interactions
3. How and why we use your personal data
The collection and processing of your personal data is carried out using computers and/or IT enabled tools and any collected data will be strictly and solely used for the purpose it was given. Your data may be accessible to certain persons within Triad whom are involved with the operation of the website and services from an administration, sales, marketing, legal and system administration perspective, or external parties (such as third party technical service providers, mail carriers, hosting providers, IT companies and communications agencies (Data Sub-Processors). A list of these parties may be requested from Triad at any time.To communicate with you and manage our relationship with you
We would like to use your personal data to send you details of products or services that we offer that we have identified as likely to be of interest to you. We will only send you information in line with the preferences you indicated when you provided the personal data.To personalise and improve your customer experience
We may use your personal data in order to tailor our services to your needs and preferences and to provide you with a personalised customer experience.To inform you about our news and offers that you may like
We may send you marketing communications, if you have indicated that you are happy to receive these, for example when you complete the form on our website and you do not express a wish to not receive such communications.To improve our services, fulfil our administrative purposes and protect our business interests
The business purposes for which we will use your information include accounting, billing and audit and legal purposes, statistical and marketing analysis, systems testing, maintenance and development.To comply with our legal obligations
This means processing your personal data where it is necessary for compliance with a legal or regulatory obligation that we are subject to. For example, to fulfil a contract of services with you.Change of purpose
We will only use your personal data for the purposes for which we collected it, unless we reasonably consider that we need to use it for another reason and that reason is compatible with the original purpose. If you wish to get an explanation as to how the processing for the new purpose is compatible with the original purpose, please contact our Compliance Officer using the details in section 13 of this document.4. Recipients/categories of recipients
In carrying out our business including our obligations to you, we may use sub-contractors. These will be email broadcasters and email hosting service providers. We will ensure that they respect your privacy and abide by all data protection laws.5. Retention periods
We will only retain your personal data for as long as necessary to fulfil the purposes we collected it for, including for the purposes of satisfying any legal, accounting, or reporting requirements.6. Your Legal Rights
Unless subject to an exemption under the data protection laws, you have the following rights with respect to your personal data:Data subject’s rights
You have rights in respect of your personal data. We may need to request specific information from you to help us confirm your identity and ensure your right to access your personal data (or to exercise any of your other rights). This is a security measure to ensure that personal data is not disclosed to any person who has no right to receive it. We may also contact you to ask you for further information in relation to your request to speed up our response.The right to be informed
– you have the right to be told about the collection and use of the personal data you provide. This privacy notice sets out the purpose for which we process your personal data, how long we will keep your data, who we will share your data with. If you have any questions on how and why we process your data please contact the DPO. If you want to know more about this right, the ICO has more guidance on their website: https://ico.org.uk/for-organisations/uk-gdpr-guidance-and-resources/individual-rights/individual-rights/right-to-be-informed/Right of access
– you have the right to know whether we are processing your personal data, and to a copy of that data. We would need as much information as possible to enable us to locate your data. We will respond to your request within 28 days of receipt of your request. If you want to exercise this right, please contact the DPO at the contact details above. If you want to know more about this right, the ICO has more guidance on their website: https://ico.org.uk/for-organisations/uk-gdpr-guidance-and-resources/individual-rights/right-of-access/Right to rectification
– you have the right to have any incorrect personal data corrected or completed if it is incomplete. You can make this request verbally or in writing. We will need as much information as possible to enable us to locate your data. We will look at any request and inform you of our decision within 28 days of receiving the request. If you want to exercise this right, please contact the DPO at the contact details above. If you want to know more about this right, the ICO has more guidance on their website: https://ico.org.uk/for-organisations/uk-gdpr-guidance-and-resources/individual-rights/individual-rights/right-to-rectification/Right to erasure
– this right, often referred to as the right to be forgotten allows you to ask us to erase personal data where there is no valid reason for us to keep it. We will look at any request and inform you of our decision within 28 days of receiving the request. If you want to exercise this right, please contact the DPO at the contact details above. If you want to know more about this right, the ICO has more guidance on their website: https://ico.org.uk/for-organisations/uk-gdpr-guidance-and-resources/individual-rights/individual-rights/right-to-erasure/Right to restrict processing
– you have the right to ask us to restrict processing of your data. We will look at any request and inform you of our decision within 28 days of receiving the request. If you want to exercise this right, please contact the DPO at the contact details above. If you want to know more about this right, the ICO has more guidance on their website: https://ico.org.uk/for-organisations/uk-gdpr-guidance-and-resources/individual-rights/individual-rights/right-to-restrict-processing/Right to data portability
– you have the right to move, copy or transfer your personal data from one IT environment to another. This right applies to data that you have provided to us and that we are processing on the legal basis of consent or in the performance of a contract and that processing is by automated means. We will respond to your request within 28 days of receipt of your request. If you want to exercise this right, please contact the DPO at the contact details above. If you want to know more about this right, the ICO has more guidance on their website: https://ico.org.uk/for-organisations/uk-gdpr-guidance-and-resources/individual-rights/individual-rights/right-to-data-portability/Right to object
– you have the right to object to our processing of your personal data based on (i) legitimate interests, or for the performance of a task in the public interests/exercise of official authority (including profiling); (ii) direct marketing (including profiling); and (iii) for purposes of scientific/historical research and statistics.Rights relating to automated decision making including profiling
– you have the right in respect of automated decision making, including profiling. Where we carry out solely automated decision making, including profiling, which has legal or similarly significant effects on you, we can only do this if it is in connection with a contract with you, we have a right under law or you have provided your explicit consent. We will tell you if this happens and tell you how you can request human intervention or challenge the decision. If you want to exercise this right, please contact the DPO at the contact details above. If you want to know more about this right, the ICO has more guidance on their website: https://ico.org.uk/for-organisations/uk-gdpr-guidance-and-resources/individual-rights/individual-rights/rights-related-to-automated-decision-making-including-profiling/No fee required – with some exceptions
You will not have to pay a fee to access your personal data (or to exercise any of the other rights). However, we may charge a reasonable admin fee if your request is clearly unfounded, repetitive or excessive. Alternatively, we may refuse to comply with your request in these circumstances.Time limit to respond
We try to respond to all legitimate requests within one month. Occasionally it may take us longer than a month if your request is particularly complex or you have made a number of requests. In this case, we will notify you and keep you updated.7. Security of your personal data
We are committed to taking appropriate technical and organisational measures to protect your personal data against unauthorised or unlawful processing and against accidental loss/disclosure, unauthorised use/access, alterations, destruction or damage to personal data. When you provide your personal data through our website this information is transmitted across the internet securely using high-grade encryption.8. Cookie Policy - Cookies or other tracking technologies
A cookie is a small file of letters and numbers that we store on your browser or the hard drive of your computer if you agree. Cookies contain information that is transferred to your computer's hard drive.Strictly Necessary Cookies – NONE!
We are acutely aware of privacy and data protection issues and have crafted our website in such a way that it can be used albeit with some limitations, without placing any cookies on your computer at all.Preference Cookies
'triad_gdpr_consent'Preference Cookies
'triad_gdpr_consent'Benign Cookies
Various cookies beginning 'exp_'.Performance Cookies
For our forms, maps and videos to run we use third party cookies from Vimeo and Google.9. Sharing your personal data
We may share some of your personal data with, or obtain your personal data from, the following categories of third parties:10. International Transfers
Some of our external third parties are based outside the UK so their processing of your data will involve a transfer outside the UK. Whenever we transfer your personal data out of the UK, we ensure a similar degree of protection is afforded to it by implementing safeguards.11. Changes to this notice and your duty to inform us of changes
This version was last updated in February 2022. Historic versions can be obtained by contacting us. We may make changes to this Notice from time to time, including as part of any new data protection legislation which results from the UK GDPR, the Data Protection Act 2018 and The Privacy and Electronic Communications (EC Directive) Regulations 2003 (PECR).12. Queries, requests or concerns
To exercise all relevant rights, queries or complaints in relation to this notice or any other data protection matter between you and us, please in the first instance contact our Compliance Officer using the details below.13. Contact information
Triad Limited is the data controller. If you have any requests concerning your personal data or any queries with regard to how we handle your data you can contact us by phone on 01604 771100, email [email protected]or write to us at Triad Limited, The Stables, Holdenby House, Holdenby, Northamptonshire, NN6 8DJ; marking for the attention of the Compliance Officer.