FFBA  GDPR Policy

1. Introduction

Framlingham & District Business Association is committed to protecting and respecting the privacy and security of personal data. This policy outlines how we collect, use, store, and protect the personal data of our members, partners and others who interact with us, in compliance with the General Data Protection Regulation (GDPR).

2. Scope of this Policy

This policy applies to all personal data collected by Framlingham & District Business Association in relation to:

  • Members of the business association
  • Contractors of the association
  • Suppliers, vendors, and other business partners
  • Individuals who attend events, webinars, or conferences organized by the association
  • Individuals who interact with us through our website or other channels

3. Data Controller

Data Controller: Framlingham & District Business Association, 10c Church St, Framlingham, Woodbridge IP13 9BH

4. Personal Data We Collect

We may collect the following types of personal data:

  • Identifiable Information: Name, contact details (email address, phone number), job title, organization, etc.
  • Transaction Information: Membership details, payment information, invoicing details, event registration details.
  • Online Activity: IP addresses, cookies, browsing behaviour on our website, and participation in online events.

5. Legal Basis for Processing Personal Data

Under the GDPR, we must have a lawful basis to process personal data. The lawful bases we rely on include:

  • Consent: When you provide explicit consent for us to process your data (e.g., subscribing to newsletters).
  • Contractual Necessity: To fulfill a contract (e.g., managing membership, processing payments).
  • Legal Obligation: To comply with legal obligations (e.g., tax or regulatory requirements).
  • Legitimate Interests: When processing data is in our legitimate interests, provided that your rights are not overridden.

6. How We Use Your Personal Data

We may use your personal data for the following purposes:

  • To administer your membership and provide related services
  • To process payments and transactions
  • To communicate with you about upcoming events, webinars, and other activities
  • To comply with legal and regulatory requirements
  • To improve our website and services
  • To send marketing materials with your consent

7. Data Retention

We will retain your personal data for as long as necessary to fulfill the purposes outlined in this policy, including for the purpose of satisfying any legal, accounting, or reporting requirements. Typically, we retain data for:

  • Membership data: For the duration of membership and up to 1 year after the membership ends.
  • Event and transaction data: For 1 year in compliance with tax and legal obligations.

8. Data Sharing and Disclosure

We may share your personal data with third parties in the following circumstances:

  • Service Providers: We may share data with third-party vendors who provide services on our behalf (e.g., payment processors, event management software providers).
  • Legal Compliance: We may disclose personal data if required by law or in response to legal requests.
  • Business Transfers: In the event of a merger, acquisition, or sale of assets, your personal data may be transferred as part of that transaction.

9. Your Rights under GDPR

Under the GDPR, you have the following rights:

  • Right to Access: You can request a copy of the personal data we hold about you.
  • Right to Rectification: You can request corrections to inaccurate or incomplete data.
  • Right to Erasure: You can request that we delete your personal data under certain conditions.
  • Right to Restriction: You can request that we restrict the processing of your data in certain situations.
  • Right to Data Portability: You can request to transfer your data to another service provider.
  • Right to Object: You can object to certain types of processing, including marketing communications.

To exercise any of these rights, please contact us at Framlingham & District Business Association, 10c Church St, Framlingham, Woodbridge IP13 9BH or email us admin@framlinghambusiness.co.uk.

10. Data Security

We implement appropriate technical and organizational measures to ensure the security of your personal data and protect it from unauthorized access, disclosure, alteration, or destruction.

11. Cookies and Tracking Technologies

Our website uses cookies and similar tracking technologies to improve user experience. You can manage your cookie preferences through your browser settings.

12. Changes to This Policy

We may update this GDPR policy from time to time. Any changes will be communicated to you via email or posted on our website, with an updated “Effective Date.”

13. Contact Us

If you have any questions or concerns about this policy or how we handle your personal data, please contact us at: Framlingham & District Business Association, 10c Church St, Framlingham, Woodbridge IP13 9BH or email us admin@framlinghambusiness.co.uk.