Data Protection Policy

1. Overview

Adam & Hawa is committed to protecting your personal data and complying with all applicable data protection laws, including the General Data Protection Regulation (GDPR) and the UK Data Protection Act 2018.

2. Data Protection Principles

We adhere to the following principles:

  • Lawfulness, fairness, and transparency
  • Purpose limitation
  • Data minimization
  • Accuracy
  • Storage limitation
  • Integrity and confidentiality
  • Accountability

3. Legal Basis for Processing

We process personal data on the following legal bases:

  • Consent
  • Contract performance
  • Legal obligations
  • Legitimate interests
  • Vital interests

4. Data Subject Rights

You have the following rights:

  • Right to be informed
  • Right of access
  • Right to rectification
  • Right to erasure
  • Right to restrict processing
  • Right to data portability
  • Right to object
  • Rights related to automated decision making

5. Data Security Measures

We implement the following security measures:

  • Encryption of personal data
  • Regular security testing
  • Access controls and authentication
  • Staff training and awareness
  • Incident response procedures
  • Regular backups
  • Physical security measures

6. International Data Transfers

When transferring data outside the UK/EEA, we ensure appropriate safeguards are in place, including:

  • Standard contractual clauses
  • Adequacy decisions
  • Binding corporate rules
  • Specific derogations where applicable

7. Data Retention

We retain personal data only for as long as necessary to fulfill the purposes for which it was collected, including legal, accounting, or reporting requirements.

8. Data Protection Officer

Our Data Protection Officer can be contacted at:
Email: dpo@adamhawa.com

9. Complaints

You have the right to lodge a complaint with a supervisory authority. In the UK, this is the Information Commissioner's Office (ICO).

Last Updated: March 14, 2024