GDPR Compliance
How ServiPro complies with UK and EU General Data Protection Regulation requirements.
GDPR Overview
The General Data Protection Regulation (GDPR) is a comprehensive data protection law that applies to the processing of personal data of individuals located in the European Union and United Kingdom. ServiPro is fully committed to GDPR compliance in all our data processing activities.
This page explains how we implement GDPR principles and ensure the protection of your personal data.
GDPR Principles We Follow
Lawfulness, Fairness & Transparency
We process data lawfully and transparently, providing clear information about our practices. All data processing has a legal basis and is conducted fairly.
Purpose Limitation
Personal data is collected for specified, explicit, and legitimate purposes and not further processed in a manner incompatible with those purposes.
Data Minimisation
We collect and process only the minimum amount of personal data necessary for our legitimate purposes.
Accuracy
We take reasonable steps to ensure personal data is accurate, complete, and kept up to date.
Storage Limitation
Personal data is kept in a form that permits identification for no longer than necessary.
Integrity & Confidentiality
Personal data is processed securely and protected against unauthorized access, loss, or damage.
Your GDPR Rights
Under GDPR, you have the following rights regarding your personal data:
Right to Access
Request a copy of your personal data and information about how it's processed.
Right to Rectification
Request correction of inaccurate or incomplete personal data.
Right to Erasure
Request deletion of your personal data in certain circumstances.
Right to Restriction
Request limitation of processing in certain situations.
Right to Portability
Receive your data in a structured, commonly used format.
Right to Object
Object to processing based on legitimate interests or direct marketing.
Legal Basis for Processing
We process personal data based on the following legal grounds:
- Contract: Processing necessary for contract performance with managing agents and contractors
- Legal Obligation: Processing required by law (tax, health & safety, regulatory compliance)
- Legitimate Interest: Processing necessary for our legitimate business interests
- Consent: Where you have given clear consent for specific processing activities
Data Protection Officer
We have appointed a Data Protection Officer (DPO) to oversee our GDPR compliance:
Name: Data Protection Officer
Email: dpo@servipro.co.uk
Address: ServiPro Ltd, Data Protection Office, London, UK
Data Breach Notification
In the event of a personal data breach, we will:
- Notify the relevant supervisory authority within 72 hours
- Inform affected individuals without undue delay
- Document all breaches and our response actions
- Implement measures to prevent future breaches
International Data Transfers
When transferring personal data outside the UK/EU, we ensure adequate protection through:
- Adequacy decisions by the European Commission
- Standard Contractual Clauses
- Binding Corporate Rules
- Certification schemes and codes of conduct
Contact Us About GDPR
For GDPR-related inquiries, including exercising your rights or reporting concerns:
Email: gdpr@servipro.co.uk
Phone: +44 (0) 20 1234 5678
Response Time: We aim to respond within 30 days