Privacy Policy - Gardeners Hayes

Effective Date: This Privacy Policy applies to all Gardeners Hayes customers in the area and explains how we collect, use, store, share, and protect personal data when providing gardening and related services.

We are committed to handling personal information in a lawful, fair, and transparent manner in accordance with the UK General Data Protection Regulation (UK GDPR) and the Data Protection Act 2018. This policy is intended to help you understand what information we collect, why we collect it, how long we keep it, who may process it on our behalf, and what rights you have over your personal data.

1. Who This Policy Applies To

This policy applies to all Gardeners Hayes customers in the area, including current, former, and prospective customers, as well as individuals who make an enquiry, request a quote, book a service, or otherwise interact with us in relation to our gardening services.

By using our services or providing us with your information, you acknowledge that your data will be processed in line with this Privacy Policy.

2. Information We Collect

We only collect personal data that is necessary for the provision and management of our services. The categories of information we may collect include:

  • Identity information such as your name and title.
  • Contact details such as your address, phone number, and email address.
  • Service details such as property access notes, job preferences, appointment history, and service instructions.
  • Billing and payment information such as invoice details, payment status, and transaction records.
  • Communication records such as messages, notes from calls, complaint details, and correspondence.
  • Technical information if you interact with us online, including basic device and usage data where relevant to service administration.

We do not intentionally collect special category data unless it is necessary and you have provided it voluntarily, or we are otherwise permitted by law to process it. If you choose to share sensitive information, it will be handled with appropriate safeguards.

3. How We Use Your Data

We use personal data only for clear and legitimate purposes related to our services. These may include:

  • Responding to enquiries and providing quotations.
  • Scheduling, delivering, and managing gardening services.
  • Processing payments, invoices, and account administration.
  • Maintaining service records and customer preferences.
  • Communicating about bookings, changes, and service updates.
  • Handling feedback, complaints, and service follow-up.
  • Complying with legal, tax, accounting, and record-keeping obligations.
  • Improving our service quality, customer experience, and operational efficiency.

We will not use your data for purposes that are incompatible with the reasons for which it was collected, unless we have a valid legal basis to do so.

4. Lawful Basis for Processing

Under data protection law, we must have a lawful basis to process personal data. Gardeners Hayes relies on the following bases where appropriate:

Contract

We process your data when it is necessary to enter into or perform a contract with you. This includes providing quotations, arranging services, carrying out work, and managing customer accounts.

Legal Obligation

We process certain information to meet legal requirements, such as tax, accounting, health and safety, and record-keeping obligations.

Legitimate Interests

We may process data where it is necessary for our legitimate business interests, provided your interests and rights do not override those interests. This can include service administration, preventing fraud, maintaining records, and improving our operations.

Consent

Where required, we may rely on your consent, for example if you agree to receive certain types of optional communications. You can withdraw consent at any time where processing is based on consent.

5. Data Sharing and Processors

We may share personal data with trusted third parties who act as processors on our behalf. These processors only handle data under our instructions and are required to protect it appropriately. They may include:

  • IT and cloud service providers used for storing emails, records, or service information.
  • Accounting and bookkeeping processors used for invoicing, financial administration, and tax records.
  • Payment service providers used to process transactions securely.
  • Administrative software providers used to manage appointments, customer records, or quotations.

We may also disclose data where required by law, court order, regulatory authority, or where necessary to protect our rights, the rights of our customers, or the safety of others.

Where a third party is acting as an independent controller rather than a processor, they will be responsible for their own privacy practices. We take reasonable steps to ensure any sharing is limited, secure, and lawful.

6. International Transfers

If any of our processors store or access data outside the UK, we will ensure appropriate safeguards are in place. These safeguards may include adequacy regulations, standard contractual clauses, or other lawful transfer mechanisms recognised under data protection law.

7. Data Retention

We keep personal data only for as long as necessary for the purpose for which it was collected, and no longer than is required by law or good business practice. Retention periods may vary depending on the type of data and the reason for processing.

  • Customer and service records are generally retained for the duration of the customer relationship and for a reasonable period afterwards.
  • Financial and tax records are retained in line with legal accounting requirements.
  • Correspondence and complaint records may be kept for an appropriate period to allow us to respond to issues and maintain business records.

When data is no longer needed, we will delete, anonymise, or securely destroy it. Retention is always limited to what is necessary and lawful.

8. Data Security

We implement appropriate technical and organisational measures to protect personal data against unauthorised access, loss, misuse, alteration, or disclosure. These measures may include access controls, secure storage, password protection, and limiting access to those who need the information for legitimate business purposes.

Although no system can be guaranteed to be completely secure, we regularly review our practices to reduce risk and maintain a high standard of data protection.

9. Your Rights

As a data subject, you have rights under UK data protection law. These rights may apply depending on the circumstances of the processing:

  • Right of access – you can request a copy of the personal data we hold about you.
  • Right to rectification – you can ask us to correct inaccurate or incomplete data.
  • Right to erasure – you can ask us to delete your data in certain situations.
  • Right to restrict processing – you can ask us to limit how we use your data in certain circumstances.
  • Right to data portability – you can request that we provide certain data in a structured, commonly used format.
  • Right to object – you can object to processing based on legitimate interests or direct marketing.
  • Right to withdraw consent – where processing relies on consent, you may withdraw it at any time.

If you exercise any of these rights, we may need to verify your identity before responding. Some rights are not absolute and may be subject to legal exceptions.

10. Automated Decision-Making

We do not use personal data to make decisions based solely on automated processing that produce legal or similarly significant effects. If this changes in the future, we will update this policy and provide appropriate information about the process involved.

11. Children’s Data

Our services are directed to adults and property owners or occupiers arranging gardening services. We do not knowingly collect personal data from children unless it is incidental to a service request and is necessary for legitimate business or safeguarding reasons.

12. Changes to This Policy

We may update this Privacy Policy from time to time to reflect changes in the law, our services, or how we process data. When we make significant changes, we will take reasonable steps to ensure customers are aware of the updated terms.

Summary: Gardeners Hayes processes customer data lawfully, securely, and only as needed to provide services, meet legal duties, and protect customer rights.

This policy applies to all Gardeners Hayes customers in the area.

Gardeners Hayes

Gardeners Hayes processes customer data lawfully, securely, and only as needed to provide services, meet legal duties, and protect customer rights.

Get In Touch With Us.

Please fill out the form below to send us an email and we will get back to you as soon as possible.