Glass Partition Company is committed to protecting personal data and respecting the privacy rights of customers, prospective customers, suppliers, contractors and website visitors.

This GDPR Policy explains how we handle personal data in accordance with the UK General Data Protection Regulation, the Data Protection Act 2018 and other applicable UK data protection legislation.

This policy applies to personal data collected through glasspartitioncompany.co.uk and through our business activities.

1. Our Commitment to Data Protection

Glass Partition Company processes personal data fairly, lawfully and transparently.

We only collect and use personal data where we have a valid reason because UK data protection law requires organisations to have a lawful basis for processing personal information.

We take reasonable steps to ensure that personal data is:

  • Processed lawfully, fairly and transparently

  • Collected for specified and legitimate purposes

  • Limited to information that is relevant and necessary

  • Accurate and kept up to date where necessary

  • Retained only for as long as necessary

  • Protected against unauthorised access, loss, destruction or damage

2. Personal Data We Collect

Personal data means information that identifies an individual or could reasonably be used to identify an individual.

We may collect:

  • First and last name

  • Email address

  • Telephone number

  • Postcode

  • Business or organisation name

  • Business address

  • Property or project address

  • Information about a proposed glass partition project

  • Details contained in enquiries and correspondence

  • Customer and supplier records

  • Quotations and project information

  • Invoice and transaction information

  • Website usage and technical information

  • IP address and device information

  • Any other personal information voluntarily provided to us

We only collect information that is reasonably necessary for our business activities and the services we provide.

3. How We Collect Personal Data

We may collect personal data when you:

  • Complete an enquiry form on our website

  • Request a quotation

  • Contact us by telephone or email

  • Discuss a project with us

  • Become a customer

  • Supply products or services to us

  • Work with us as a contractor or business partner

  • Visit or interact with our website

  • Communicate with us during a project

We may also receive personal information from contractors, suppliers, business partners or other organisations where there is a legitimate and lawful reason for them to provide it.

4. Why We Process Personal Data

We may process personal data to:

  • Respond to enquiries

  • Prepare and provide quotations

  • Assess project requirements

  • Arrange surveys and site visits

  • Deliver glass partition services

  • Manage projects and installations

  • Communicate with customers

  • Manage supplier and contractor relationships

  • Process payments and maintain financial records

  • Maintain customer and business records

  • Improve our services

  • Operate and improve our website

  • Protect our website, systems and business

  • Prevent fraud and misuse

  • Resolve complaints and disputes

  • Comply with legal and regulatory obligations

  • Establish, exercise or defend legal claims

We will not use personal data for purposes that are incompatible with the reason it was originally collected unless permitted by law.

5. Lawful Bases for Processing

We rely on one or more lawful bases when processing personal data.

Contract

We may process personal data when necessary to take steps before entering into a contract or to fulfil our obligations under an existing contract.

This can include processing information to provide a quotation, arrange an installation or manage a customer project.

Legitimate Interests

We may process personal data where this is necessary for our legitimate business interests and those interests do not override the rights and freedoms of the individual.

Legitimate interests may include:

  • Responding to business enquiries

  • Managing customer relationships

  • Maintaining business records

  • Improving our services

  • Protecting our systems and website

  • Managing suppliers and contractors

  • Establishing or defending legal claims

Legal Obligation

We may process personal data where necessary to comply with legal, tax, accounting or regulatory obligations.

Consent

Where required, we may process personal data based on consent.

Consent may be relevant to certain marketing activities and non-essential website cookies.

Where we rely on consent, you can withdraw it at any time.

6. Data Minimisation

We aim to collect only the personal information necessary for a specific purpose.

We do not intentionally request excessive personal information because collecting unnecessary data increases privacy and security risks.

7. Accuracy of Personal Data

We take reasonable steps to ensure that personal information is accurate and, where necessary, kept up to date.

Customers and other individuals should tell us if their information changes or if they believe information we hold about them is inaccurate.

Where we identify inaccurate information, we will take reasonable steps to correct or update it.

8. Data Security

We take reasonable technical and organisational measures to protect personal data.

These measures are designed to reduce the risk of:

  • Unauthorised access

  • Accidental disclosure

  • Loss of information

  • Destruction of information

  • Alteration of information

  • Misuse of personal data

Access to personal data should be limited to people who require the information for legitimate business purposes.

Anyone handling personal data on our behalf is expected to treat it confidentially and securely.

9. Sharing Personal Data

We do not sell personal data.

We may share personal data with third parties where this is necessary for legitimate business purposes, to provide our services or to comply with legal requirements.

These third parties may include:

  • Website hosting providers

  • IT and technical support providers

  • Email and communications providers

  • Customer management systems

  • Accountants and professional advisers

  • Contractors and installation partners

  • Suppliers

  • Payment and financial service providers

  • Website analytics providers

  • Government authorities

  • Regulators

  • Courts and law enforcement agencies

Where a third party processes personal data on our behalf, we take reasonable steps to ensure appropriate data protection arrangements are in place.

10. Contractors and Suppliers

Some projects require us to work with contractors, manufacturers, suppliers or installation partners.

We only share personal information with these parties where it is reasonably necessary for the project or another legitimate business purpose.

Information shared should be limited to what the recipient reasonably needs to perform their role.

11. International Data Transfers

Some technology providers and other service providers may process personal data outside the United Kingdom.

Where personal data is transferred internationally, we take appropriate steps to ensure the transfer complies with UK data protection requirements.

Depending on the circumstances, these safeguards may include adequacy regulations, approved contractual safeguards or another legally recognised transfer mechanism.

12. Data Retention

We retain personal data only for as long as reasonably necessary.

The appropriate retention period depends on:

  • Why the information was collected

  • The nature of our relationship with the individual

  • Contractual requirements

  • Legal obligations

  • Tax and accounting requirements

  • Potential disputes or legal claims

When personal information is no longer required, we will delete, anonymise or securely dispose of it where reasonably practicable.

13. Individual Data Protection Rights

UK data protection law provides individuals with a number of rights.

Depending on the circumstances, you may have the right to:

  • Be informed about how your personal data is used

  • Request access to personal data we hold about you

  • Request correction of inaccurate or incomplete personal data

  • Request deletion of your personal data

  • Request restriction of processing

  • Object to certain processing

  • Request data portability

  • Withdraw consent where processing relies on consent

  • Object to direct marketing

Some rights are subject to legal conditions and exemptions.

14. Subject Access Requests

You can ask us for a copy of personal information we hold about you.

This is commonly known as a subject access request.

You can make a request by contacting Glass Partition Company using the contact details available on our website.

We may ask you to provide information that allows us to verify your identity because we must protect personal information from unauthorised disclosure.

We will respond to valid requests within the period required by applicable data protection law.

15. Right to Rectification

You can ask us to correct personal information that is inaccurate or complete information that is incomplete.

We will take reasonable steps to investigate and correct information where appropriate.

16. Right to Erasure

You may have the right to ask us to delete personal data in certain circumstances.

This right is not absolute. We may need to retain information where we have a legal obligation or another lawful reason to do so.

17. Right to Restrict Processing

You may have the right to ask us to restrict the processing of your personal information in certain circumstances.

Where processing is restricted, we may retain the information while limiting how it is otherwise used.

18. Right to Object

You may have the right to object to processing based on legitimate interests.

If you object, we will consider your circumstances and determine whether we have compelling legitimate grounds to continue processing the information.

You can object to the use of your personal data for direct marketing at any time.

19. Data Portability

Where applicable, you may have the right to receive certain personal data in a structured, commonly used and machine-readable format.

You may also have the right to ask us to transfer qualifying information directly to another organisation where technically feasible.

20. Marketing

We will only send electronic marketing communications where we have a lawful basis to do so.

Where consent is required, we will obtain consent before sending marketing communications.

You can opt out of marketing communications at any time.

Submitting an enquiry or requesting a quotation does not automatically mean that you have agreed to receive unrelated marketing communications.

21. Cookies and Tracking Technologies

Our website may use cookies and similar technologies.

Some cookies are necessary for the website to function. Other cookies may collect information about website usage, performance or advertising.

Where consent is legally required, non-essential cookies should not be placed on your device until you have provided consent.

You can manage cookies through the controls available on the website and through your browser settings.

22. Personal Data Breaches

A personal data breach can include the accidental or unlawful loss, alteration, destruction, disclosure of or access to personal data.

If we become aware of a personal data breach, we will assess its nature, potential consequences and the individuals who may be affected.

Where required by law, we will report a qualifying personal data breach to the Information Commissioner's Office within the applicable legal timeframe.

Where a breach is likely to result in a high risk to an individual's rights and freedoms, we will notify affected individuals where required by law.

23. Data Protection by Design

We aim to consider data protection when introducing new systems, processes or services that involve personal data.

Where a proposed activity presents a potentially high risk to individuals, we will consider whether a Data Protection Impact Assessment is required.

This approach helps us identify and reduce privacy risks before new processing activities begin.

24. Staff and Contractor Responsibilities

Anyone who handles personal data on behalf of Glass Partition Company should:

  • Keep personal information confidential

  • Only access information required for legitimate business purposes

  • Follow appropriate security practices

  • Avoid sharing personal information unnecessarily

  • Report suspected data breaches or security incidents promptly

  • Dispose of personal information securely when it is no longer required

25. Complaints

If you are concerned about how Glass Partition Company handles your personal data, please contact us using the contact details available on our website.

We will take reasonable steps to investigate data protection concerns and respond appropriately.

You also have the right to complain to the Information Commissioner's Office, the UK's independent regulator for data protection and information rights.

26. Changes to This GDPR Policy

We may update this GDPR Policy when our business practices, technology, services or legal obligations change.

The latest version will be published on our website.

27. Contact Us

For questions about this GDPR Policy, requests relating to your personal data or concerns about how your information is handled, please contact Glass Partition Company using the contact details provided on glasspartitioncompany.co.uk.

Skip to

Social links