020 7193 4905

GDPR Statement

GDPR Statement

With the General Data Protection Regulation now in force, First Response have posted this GDPR Statement in order to provide our clients and future clients transparency on how we collect, store and delete the data our company holds.

THE INFORMATION WE COLLECT

First Response will collect information under 3 separate processing topics. Direct contact, Opt-in & Accounting.

DIRECT CONTACT

The processing topic of direct contact is relevant when a client, prospective client or supplier contacts First Response in the employment or hopeful employment of services. This information can be collected either over the phone, via our websites contact form or through face to face contact (networking, trade shows or client meetings).  This information will always be relevant to the query at hand and will not be used for promotional or marketing (Opt-in) purposes unless permission has been explicitly granted by the owner of this information.

OPT-IN

The processing topic of Opt-in covers any information gathered for the purpose of promotion & marketing. First Response may collect this information by various means including newsletter opt-in’s on our website, competition entries and contact cards at a trade show or conference. In accordance with the GDPR, the information gathered in this format will be lawfully acquired through the use of opt-in checkboxes on forms and competitions on both the website and contact cards.

ACCOUNTING

The processing topic of Accounting covers information acquired in the course of any financial transaction. This will include details provided by the client and also provided by public domain sources, such as Companies House. The kind of information you can expect to be stored would be the name, address, telephone number, company number and VAT number of an organisation and also the name and email address of the main contact at this organisation. This information applies to both clients, suppliers and associates.

THE INFORMATION WE STORE

First Response will store information in multiple ways depending on the processing topic.

DIRECT CONTACT

With direct contact information being acquired in various ways, we follow defined processes in storage of this information. Direct contact information acquired via email will be stored by our email service provider. Direct contact information acquired via a phone call can be stored by either the use of a personal diary, notepad or our cloud based accounting’s estimate system. Our email provider Google Mail stores this information on their secured servers and the data is encrypted both on the server and during transfer to and from the server.

OPT-IN

Opt-in information is stored in a master database on our cloud based accounting system and can be distributed to multiple third party locations depending on our marketing requirements. Before using a third party service for marketing we will first check to see if both the storage on this service and transmission to this service is both safe and encrypted.

THE INFORMATION WE DELETE

First Response will delete information for various reasons depending on our processing topic.

DIRECT CONTACT

Direct contact information as mentioned above is stored by our third party email service provider. To comply with the GDPR we will access this information on a regular basis to ensure that the data that is irrelevant or unneeded is removed. The data of clients or suppliers that we provide services to or request services from will be stored permanently in our email database until this client no longer requires services. These clients will be informed that their data will be stored during this period of time and on request we can delete this data for the client or the data will be deleted if that data is deemed irrelevant by our next assessment date.

Prospective clients, job applications or contact data will be stored by our email service provider up until the next assessment date. On this date if the client has not been in touch for a lengthy period (typically, 90 days) or the job applicant was not successful in employment with us, their details and emails will be deleted from our email server. Any information collected in a physical format (notepad or diary) will be transferred to a securely encrypted online location such as our network server and the physical format will be destroyed.

OPT-IN

Information collected for Opt-in promotion and marketing will be deleted on request of the information owner. This may be by unsubscribing from our marketing services or asking First Response to delete their details.

ACCOUNTING

All accounting data will be stored for a period of 6 financial years. Any prospective client who has requested a quotation through our accounting software but have not engaged with the service will have their details and quote deleted in the next assessment period.