Privacy Policy Framework for TNT Fire Consultancy
This Privacy Policy Framework sets out the principles and conditions governing how TNT Fire Consultancy collects, processes, stores, and protects personal and business data in compliance with UK Data Protection Laws, including the UK GDPR and the Data Protection Act 2018.
1. Data Collection
TNT Fire Consultancy will only collect personal and business data necessary for providing fire safety consultancy services, including but not limited to:
- Client contact details (name, address, email, phone number).
- Company and property details related to fire safety assessments.
- Payment and invoicing information for financial transactions.
- Correspondence records relating to service provision.
- Client contact details (name, address, email, phone number).
- Company and property details related to fire safety assessments.
- Payment and invoicing information for financial transactions.
- Correspondence records relating to service provision.
1.1 Methods of Data Collection
Data may be collected via:
- Direct interactions (phone, email, online forms, face-to-face meetings).
- Service agreements and contractual documents.
- Fire risk assessments, fire strategy reports, and consultancy projects.
2. Purpose of Data Processing
TNT Fire will process collected data solely for the purpose of:
- Providing fire safety consultancy services.
- Conducting fire risk assessments and generating reports.
- Issuing invoices and processing payments.
- Maintaining internal records and client correspondence.
- Meeting regulatory compliance obligations.
TNT Fire does not use client data for marketing without explicit consent.
3. Data Storage and Security
3.1 Data Storage Methods
- Client data will be stored on secure servers and cloud-based systems with restricted access.
- Physical documents will be stored in locked and access-controlled filing systems.
3.2 Security Measures
TNT Fire will ensure:
- Encrypted storage of sensitive data.
- Password-protected access to digital records.
- Access restrictions, ensuring only authorized personnel handle client data.
- Regular security audits to mitigate data breaches.
4. Data Sharing and Disclosure
The Client agrees to:
- Provide accurate and complete information regarding the property and fire safety systems.
- Ensure safe and unrestricted access to the site for inspections.
- Implement fire safety recommendations where necessary.
- Comply with all payment obligations as outlined in future service agreements.
5. Data Retention
5.1 Retention Period
- TNT Fire will retain fire risk assessments and reports for a minimum of 6 years in line with UK regulatory requirements.
- Client personal data will be deleted when no longer necessary for service delivery.
5.2 Data Deletion and Disposal
- Digital records will be securely deleted.
- Physical documents will be shredded and disposed of in compliance with data protection laws.
6. Client Rights and Data Access
6.1 Client Rights Under UK GDPR
Clients have the right to:
- Access personal data held by TNT Fire.
- Request corrections to inaccurate or incomplete data.
- Withdraw consent for data processing (where applicable).
- Request data deletion (subject to legal and contractual obligations).
6.2 How to Make a Data Request
- Clients can submit a data access or deletion request in writing to TNT Fire via email or letter.
- Requests will be processed within 30 days.
7. Payment and Financial Data Protection
7.1 Billing Information
- Payment details are processed securely in line with PCI DSS (Payment Card Industry Data Security Standard).
- TNT Fire does not store client payment card details.
7.2 Late Payment & Financial Penalties
- Unpaid invoices will be subject to LIBOR rate plus 3% per month.
- Payment data will be retained for audit and financial record-keeping purposes.
8. Cookies and Website Data (If Applicable)
If TNT Fire operates a website, the following policies apply:
- Cookies may be used to enhance the user experience.
- Clients will be informed of cookie tracking policies and given opt-out options.
9. Data Breach Policy
9.1 Incident Response
- TNT Fire will investigate any data breach within 24 hours.
- Affected clients will be notified if their data is compromised.
9.2 Regulatory Reporting
- Significant breaches will be reported to the UK Information Commissioner's Office (ICO) within 72 hours.
10. Amendments to This Privacy Policy
- TNT Fire reserves the right to update this policy to align with legal changes or operational updates.
- Clients will be notified of material changes via email or company website.
11. Contact Information
For privacy concerns or data access requests, contact:
TNT Fire Consultancy
The Shard 32 London Bridge Street
Info@TNTFire.co.uk