Tara Rehl Coaching & Consulting takes very seriously the responsibility of maintaining its clients’ privacy. It has long been, and will continue to be, my policy not to share or sell client’s personal information, including contact information.
I have read the Information Commissioner’s Office guidelines for compliance with the new General Data Protection Regulation (GDPR) rules. This document that follows explains how I comply. If you have given me your email address and contact details (by emailing me, buying something from my website or subscribing to my website or newsletter, for example) you should read this to reassure yourself that I am looking after your data extremely responsibly. I value the security of your information extremely highly and will never intentionally breach the rules.
Awareness: I am a sole trader so there is no one else in my organisation to make aware.
The information I hold: Contact information for people who have contacted me through my website and via Gmail is automatically saved in Gmail. I use this information to follow up on enquiries. I do not share this information with anyone. Ever. If someone randomly asks for another person’s email address, unless both are known closely to me, I always check with the other person first.
Communicating privacy information: I have put this document on my website, with a link. I have added a link to my contact page.
Individuals’ rights: On request, I will delete data. If someone asked to see their data, I would take a screenshot of their entry/entries and send it to them.
Subject access requests: I aim to respond to all requests within 24 hours, or as soon as possible.
Lawful basis for processing data: If people have emailed me, they have given me their email address and contact details. I do not actively add it to a list but Gmail will save it. I will not add it to any database or spreadsheet unless someone asks me to or gives me explicit and detailed permission.
Consent: Once I’ve contacted everyone with a reminder about the T&C of my holding their data, I regard this consent as confirmed for a year, or until the person asks me to remove the data. I have never harvested email addresses, nor would I. Anyone on my lists has contacted me. Consent is not indefinite, so I will make sure that I remind subscribers that they can unsubscribe or ask for their data to be removed.
Children: I do not work with children. (Children are any individuals under the age of 18.)
Data breaches: I have done everything I can to prevent this, by strongly password-protecting my computer and website as well as Google with two-step authentication. If any of those organisations were compromised I would take steps to follow their advice immediately.
Data Protection by Design and Data Protection Impact Assessments: I have familiarised myself with the ICO’s code of practice on Privacy Impact Assessments as well as the latest guidance from the Article 29 Working Party, and believe that I am using best practice.
Data Protection Officers: I am not a major organisation so I do not need to appoint a Data protection Officer.
International: My lead data protection supervisory authority is the UK’s Information Commissioner's Office (ICO) .
Important note concerning data processing in connection with Google Analytics:
This website uses Google Analytics, a web analytics service provided by Google Ireland Limited. If the responsible body for the data processing that occurs via this website has their basis outside of the European Economic area and Switzerland, then the associated Google Analytics data processing is carried out by Google LLC. Google Ireland Limited and Google LLC. will hereinafter be referred to as “Google”.
Google Analytics uses “cookies”, which are text files saved on the site visitor’s computer, to help the website analyze their use of the site. The information generated by the cookie (including the truncated IP address) about the use of the website will normally be transmitted to and stored by Google.
Google Analytics is used exclusively with the extension "_anonymizeIp ()" on this website. This extension ensures an anonymization of the IP address by truncation and excludes a direct personal reference. Via this extension Google truncates the site visitor’s IP address within member states of the European Union or other parties to the Agreement on the European Economic Area. Only in exceptional situations will the site visitor’s full IP address be transmitted to Google servers in the United States and truncated there. The IP address, that is provided by the site visitor’s browser in using Google Analytics will not be merged by Google with other data from Google.
On behalf of the site operator, Google will use the information collected to evaluate the use of the website, to compile reports on website activity and to provide other website and internet related services to the site operator (Art. 6 (1)( f) GDPR). The legitimate interest in data processing lies in the optimization of this website, the analysis of the use of the website and the adaptation of the content. The interests of the users are adequately protected by the pseudonymization of their data.
Google LLC. offers a guarantee to maintain an adequate level of data protection on the basis of European standard contractual clauses. The data sent and linked to the Google Analytics cookies, e.g. user IDs or advertising IDs will be automatically deleted after 50 months. The deletion of data whose retention period has been reached is carried out automatically once a month.
The website visitor can prevent data collection via Google Analytics on this website by clicking here. An "Opt-out Cookie" shall then be applied which shall prevent any future collection of the site visitors data when visiting this website.
We use the reCAPTCHA service provided by Google LLC (Google) to protect your submissions via internet submission forms on this site. This plugin checks if you are a person in order to prevent certain website functions from being (ab)used by spam bots (particularly comments). This plugin query includes the sending of the IP address and possibly other data required by Google for the Google reCAPTCHA service. For this purpose your input will be communicated to and used by Google. However, your IP address is previously truncated by Google within member states of the European Union or in other states which are party to the agreement on the European Economic Area and is, as such, anonymized. Only in exceptional cases is a full IP address transmitted to a Google server in the United States and truncated there. On behalf of the operator of this website, Google will use this information to evaluate your use of this service. The IP address provided by reCaptcha from your browser shall not be merged with any other data from Google.
By using the reCAPTCHA service, you consent to the processing of data about you by Google in the manner and for the purposes set out above.