GDPR - sole trader advice.

Newbienoclue

Free Member
Jul 8, 2017
30
0
Quick question on GDPR.
I run a small gardening business (sole trader)
I use a laptop to create and store invoices on, these contain people's addresses, I also use it to email customer invoices. The laptop is password protected.
I also keep files with paper copies of invoices, again with customer addresses on. My files are stored away in a locked box. I also have customers phone numbers in my mobile, my mobile is password protected. I'm wondering if I need to change anything to become compliant to the new GDPR rules?
All my customers details are only on invoices which I need to keep for my tax purposes. Am I required to tell customers or new customers I keep these and that I have their phone number in my phone or have their email address stored?
I also have a Facebook page which potential and existing customers message me on. With regards to this am I needing to change anything?

Any pointers on this matter would be greatly appreciated. Thanks.
 

Newbienoclue

Free Member
Jul 8, 2017
30
0
I have read that because I only use the details for business purposes ( contacting customer and invoices) I do not need to register with the ISO? Can someone please confirm this?
My customer information is very basic, literally a name, address and sometimes a phone number or email depending how they contact me. I believe I don't need consent for this because I need this information to carry out either work for them or a quote.
Thanks
 
Upvote 0

Newbienoclue

Free Member
Jul 8, 2017
30
0
From what I have read and done the GDPR self assesment, I don't need to register. My information held is basic and is only used by me for my core business needs. I have posted on my business Facebook page (I don't have a website) how and why customers data is used and that anyone who wishes to know more or wishes me to remove their information to contact me. I already keep personal details under password protection and lock and key, so as far as I'm aware I don't need to do anymore.
 
Upvote 0

Bob Morgan

Free Member
Apr 15, 2018
2,216
922
My situation is very similar to yours, the difference is that I'm a ltd company and an architectural designer, so it will be interesting to see if anyone can advise us as the legislation is quite wordy.

The RIBA has already issued a Guide to GDPR and the ARB anticipated it, in the 2017 Code of Conduct. It is also worthwhile checking with your Professional Indemnity Insurer with regard to 'Document Retention.'

https://www.architecture.com/knowle...ledge-landing-page/are-you-ready-for-the-gdpr

http://www.arb.org.uk/wp-content/uploads/2016/05/Architects-Code-2017.pdf
 
  • Like
Reactions: Gecko001
Upvote 0

Latest Articles

Join UK Business Forums for free business advice