1. Policy Statement
Bash EcoCleaners Service Ltd is committed to ensuring that all personal data is handled in accordance with the UK General Data Protection Regulation (UK GDPR) and the Data Protection Act 2018. This policy sets out how we collect, process, store and protect personal data.
2. Scope
This policy applies to all employees, contractors, franchisees and third parties who process personal data on behalf of Bash EcoCleaners Service Ltd.
3. Data Protection Principles
We adhere to the following data protection principles:
- Lawfulness, Fairness and Transparency: Data is processed lawfully, fairly and transparently
- Purpose Limitation: Data is collected for specified, explicit and legitimate purposes
- Data Minimisation: Only data that is necessary is collected
- Accuracy: Data is kept accurate and up to date
- Storage Limitation: Data is kept only as long as necessary
- Integrity and Confidentiality: Data is processed securely
- Accountability: We are responsible for demonstrating compliance
4. Roles and Responsibilities
Data Protection Officer (DPO): Responsible for overseeing data protection strategy and implementation
All Staff: Responsible for handling personal data in accordance with this policy
Management: Responsible for ensuring compliance within their departments
5. Data Subject Rights
We respect the rights of data subjects and ensure they can exercise:
- Right to be informed
- Right of access
- Right to rectification
- Right to erasure
- Right to restrict processing
- Right to data portability
- Right to object
- Rights related to automated decision-making
6. Data Security Measures
We implement appropriate technical and organisational measures:
- Encryption of data in transit and at rest
- Regular security assessments
- Access controls and authentication mechanisms
- Staff training on data protection
- Incident response procedures
- Regular backups and disaster recovery plans
7. Data Breach Procedures
In the event of a data breach:
- Contain the breach and assess the risk
- Notify the ICO within 72 hours if required
- Notify affected data subjects if high risk
- Document the breach and response
- Review and improve security measures
8. Contact Information
Data Protection Officer
Bash EcoCleaners Service Ltd
Suite 2, Ellen House, 31-33 London Street
Andover, Hampshire, SP10 2NU
Email: dataprotection@bashecocleanersservice.co.uk
Phone: 01264 527009
9. Policy Review
This policy is reviewed annually and updated as necessary to ensure compliance with current legislation.
Last Reviewed: April 2026