General Data Protection Regulation Policy Privacy Notice

1. Your personal data – what is it?

Personal data relates to a living individual who can be identified from that data. Identification can be by the information alone or in conjunction with any other information in the data controller’s possession or likely to come into such possession. The processing of personal data is governed by the General Data Protection Regulation (the “GDPR”).

2. Who are we?

Christ Church Salisbury is the data controller (contact details below). This means it decides how your personal data is processed and for what purposes.

3. How do we process your personal data?

Christ Church Salisbury complies with its obligations under the “GDPR” by: collecting and processing data for a lawful reason and in a fair and transparent way; only using it for the purposes we originally collected it; by not collecting or retaining excessive amounts of data; by keeping personal data up to date; by storing personal data securely (manually or electronically); by keeping personal data for only as long as is necessary and destroying out-of-date data quickly and effectively; by protecting the personal data from loss, misuse, unauthorised access and disclosure.

We use your personal data for the following purposes:

  1. To enable us to provide a voluntary service for the benefit of the public in the Salisbury area;
  2. To administer membership records;
  3. To fundraise and promote the interests of the charity;
  4. To provide appropriate pastoral care;
  5. To manage our employees and volunteers e.g. information for DBS (Disclosure and Barring Service);
  6. To maintain our own accounts and records (including the processing of gift aid applications);
  7. To inform you of news, events, activities and services running at Christ Church Salisbury.

4. What is the legal basis for processing your personal data?

  • Explicit consent of the data subject (or the parent/guardian of children) so that we can keep you informed about news, events, activities and services;
  • Processing is necessary for carrying out legal obligations in relation to Gift Aid or under employment, social security or social protection law, or a collective agreement;
  • Processing is carried out by a not-for-profit body with a political, philosophical, religious or trade union aim provided:
  • the processing relates only to members or former members (or those who have regular contact with it in connection with those purposes); and
  • there is no disclosure to a third party without consent.

5. Sharing your personal data

Your personal data will be treated as strictly confidential and will only be shared with other members of the church in order to carry out a service to other church members or for purposes connected with the church. We will only share your data with third parties with your explicit consent or in pursuant of a court order.

6. How long do we keep your personal data?

We retain registration data while it is still current; gift aid declarations and associated paperwork for up to 6 years after the calendar year to which they relate.

7. Your rights and your personal data

Unless subject to an exemption under the GDPR, you have the following rights with respect to your personal data:

  • The right to request a copy of your personal data which Christ Church Salisbury holds about you;
  • The right to request that Christ Church Salisbury corrects any personal data if it is found to be inaccurate or out of date;
  • The right to request your personal data is erased where it is no longer necessary for Christ Church Salisbury to retain such data;
  • The right to withdraw your consent to the processing at any time;
  • The right to request that the data controller provide the data subject with his/her personal data and where possible, to transmit that data directly to another data controller, (known as the right to data portability), (where applicable) [Only applies where the processing is based on consent or is necessary for the performance of a contract with the data subject and in either case the data controller processes the data by automated means].
  • The right, where there is a dispute in relation to the accuracy or processing of your personal data, to request a restriction is placed on further processing;
  • The right to object to the processing of personal data, (where applicable) [Only applies where processing is based on legitimate interests (or the performance of a task in the public interest/exercise of official authority); direct marketing and processing for the purposes of scientific/historical research and statistics]
  • The right to lodge a complaint with the Information Commissioners Office.

8. Further processing

If we wish to use your personal data for a new purpose, not covered by this Data Protection Notice, then we will provide you with a new notice explaining this new use prior to commencing the processing and setting out the relevant purposes and processing conditions. Where and whenever necessary, we will seek your prior consent to the new processing.

9. Contact Details

To exercise all relevant rights, queries of complaints please in the first instance contact Christ Church Salisbury at info@christchurchsalisbury.org.uk

You can contact the Information Commissioners Office on 0303 123 1113 or via email https://ico.org.uk/global/contact-us/email/ or at the Information Commissioner’s Office, Wycliffe House, Water Lane, Wilmslow, Cheshire. SK9 5AF

Cookies

We use cookies on our website. By using our website you agree to this Policy and you consent to our use of cookies in accordance with the terms of this Policy.

About Cookies

A cookie is a small file which asks permission to be placed on your computer’s hard drive. Once you agree, the file is added and the cookie helps analyse web traffic or lets you know when you visit a particular site. Cookies allow web applications to respond to you as an individual. The web application can tailor its operations to your needs, likes and dislikes by gathering and remembering information about your preferences.

There are two main kinds of cookies: “session” cookies and “persistent” cookies. Session cookies only last for the duration of users using the website and are deleted from your computer when you close your browser, whereas persistent cookies outlast user sessions and remain stored on your computer until deleted, or until they reach their expiry date.

Cookies on this website

We use both Session Cookie and Persistent Cookies on this website.

Generally, we use cookies to help us administer this website, to improve the website’s usability and for marketing purposes. We may also use cookies to identify which pages are being used. This helps us analyse data about webpage traffic and improve our website in order to tailor it to user needs. We only use this information for statistical analysis purposes and then the data is removed from the system.

Overall, cookies help us provide you with a better website, by enabling us to monitor which pages you find useful and which you do not.Cookies do not contain any information that personally identifies you, a cookie in no way gives us access to your computer or any information about you.

You can choose to accept or decline cookies. Most web browsers automatically accept cookies, but you can usually modify your browser setting to decline cookies if you prefer. This may prevent you from taking full advantage of the website.

Cookie NameCookie CategoryDescriptionDuration
wordpress_2WordPress cookie for a logged in user.session
wordpress_logged_in_2WordPress cookie for a logged in usersession
wordpress_test_2WordPress cookie for a logged in usersession
wordpress_test_cookie2WordPress test cookiesession
wp-settings-1Wordpress also sets a few wp-settings-[UID] cookies. The number on the end is your individual user ID from the users database table. This is used to customize your view of admin interface, and possibly also the main site interface. 1 year
wp-settings-time-2Wordpress also sets a few wp-settings-{time}-[UID] cookies. The number on the end is your individual user ID from the users database table. This is used to customize your view of admin interface, and possibly also the main site interface. 1 year
PHPSESSID1To identify your unique session on the websitesession
SESS1To ensure that you are recognised when you move from page to page within the site and that any information you have entered is remembered.session

Third Party Cookies

We also use third party cookies to analyse the use of this website and improve its performance.

For this purpose we use Google Analytics. Google Analytics generates statistical and other information about website use by means of cookies, which are stored on users’ computers. The information generated relating to our website is used to create reports about the use of the website. Google will store and use this information. Read Google’s privacy policy. Find out more about Google Analytics opt out.

Most browsers allow you to reject all cookies, whilst some browsers allow you to reject just third party cookies.