GDPR Compliance

Our commitment to the UK General Data Protection Regulation.

Read Policy

1. Our GDPR Commitment

Sussex Subsidence is fully committed to compliance with the UK General Data Protection Regulation (UK GDPR) and the Data Protection Act 2018. We treat the personal data you share with us, whether you're requesting a survey, claiming on insurance, or contacting us with an enquiry, with the care and confidentiality it deserves.

Sussex Subsidence acts as an introducer: where appropriate, we pass enquiries to qualified structural repair contractors and insurance partners who carry out the work. Any data shared with those partners is limited to what they need to deliver the service you've asked us to arrange, and they are required to handle it in line with UK GDPR.

2. Data Controller

Sussex Subsidence is the data controller for all personal information collected through our website and during the course of our work. You can contact us at Bell Tower Industrial Estate, Brighton and Hove, Brighton BN2 5RU.

3. Lawful Bases for Processing

We only process your personal data when we have a lawful basis under Article 6 of the UK GDPR:

  • Contract: To respond to your quote request and deliver the repair services you've engaged us for.
  • Legal obligation: To comply with tax, accounting and health and safety law.
  • Legitimate interests: To manage our business, prevent fraud, and improve our service.
  • Consent: Where you've opted in to marketing or other optional communications.

4. Your Rights

Under the UK GDPR you have the following rights, and we will respond to any request within one month:

  • Right of access to your personal data
  • Right to rectification of inaccurate data
  • Right to erasure ("right to be forgotten") where appropriate
  • Right to restrict processing
  • Right to data portability
  • Right to object to processing
  • Rights relating to automated decision-making (we do not carry out automated decision-making)

5. Data Minimisation

We only collect the personal information we genuinely need to deliver a survey, prepare a quote, complete the repair, and meet our legal and insurance obligations. We do not request data "just in case", and we never sell your information to third parties.

6. Security Measures

We protect your personal data with appropriate technical and organisational measures including:

  • Encrypted storage and transmission
  • Role-based access controls and authentication
  • Regular staff training on data protection
  • A documented breach response procedure with 72-hour notification to the ICO where required

7. Data Retention

Enquiry data is retained for up to 24 months. Client and project records are kept for 6 years in line with professional indemnity insurance and contractual limitation periods. When these periods expire we securely delete or anonymise the data.

8. International Transfers

All personal data is processed and stored within the United Kingdom. We do not routinely transfer data outside the UK, and any future transfer would only take place under an appropriate UK GDPR safeguard.

9. Complaints

If you have a concern about how we handle your personal data, please contact us first so we can put it right. If you remain unhappy, you have the right to lodge a complaint with the Information Commissioner's Office at www.ico.org.uk or 0303 123 1113.

10. Contact

For any data protection enquiry, including exercising your rights above, write to us at Bell Tower Industrial Estate, Brighton and Hove, Brighton BN2 5RU.