Privacy Policy
This statement sets out the LAG approach to handling personal data, in compliance with the 2018 UK GDPR legislation.
THE LAG POLICY FOR HOLDING MEMBERS‘ PERSONAL DATA
THE LAG POLICY FOR HOLDING MEMBERS‘ PERSONAL DATA
- The LAG Committee is the ’controller‘ of personal data and determines what personal information is collected, how it is used and who within LAG is designated as the ’processor‘ of that information.
- The LAG secretary is the designated ‘processor’ of members’ personal data.
- LAG holds only the personal data on current members given to us by the members (name, postal address (optional), phone numbers (optional) and email address) on our GDPR consent form. The LAG secretary will provide new members with a consent form to complete, allowing them to opt in and give their consent to LAG holding their essential personal data.
- This form is held as a hard copy by LAG’s secretary (the data processor) as a record that consent has been given. All members can change their consent options or withdraw consent at any time by informing the LAG secretary and updating their hard copy form.
- The email addresses of all current members are held in electronic form and distributed to the members of the Committee only.
- The Committee, when communicating with the membership in part or as a whole, will generally BCC the email addresses so that there is not a general distribution to all members of those email addresses, in order to protect their privacy. The exception to this is when a Committee member emails a small number of members who need to communicate with each other, perhaps independently, over some matter.
- The Committee and membership have been asked to destroy/delete all personal data” that they may still have from the days when the membership list was distributed to all members (i.e. mainly the lists prior to 1 January 2018).
- The Committee has been asked to destroy/delete all membership data that is not current, and which may include personal data of members who left the Group or who are deceased, prior to 1 January 2018.
- All personal data held on a member who leaves the Group or who is deceased will be destroyed/deleted both in its hardcopy form (held by the Secretary) and electronic form (held by the Committee).