Privacy Policy
Privacy Policy
Effective Date: 1st of April
Reviewed By: Director
Meridian HealthCare Services Ltd
Company Number: 16324019
ICO Registration Number: ZB878027
Website: www.meridianhealthcare.uk
1. Introduction
This privacy policy outlines how Meridian HealthCare Services Ltd (“we”, “our”, or “us”) collects, uses, discloses, and protects your personal data. We take your privacy seriously and are committed to maintaining the confidentiality and integrity of your information in accordance with the UK General Data Protection Regulation (UK GDPR), the Data Protection Act 2018, and other relevant legislation.
2. Who This Policy Applies To
- This policy applies to:
- Job applicants
- Employees and contractors
- Clients and service users
- Website visitors
- Business partners and suppliers
3. What Data We Collect
- We may collect the following personal information:
- For Staff and Job Applicants:
- Full name, address, email, phone number
- Date of birth, nationality
- CV and employment history
- Education and qualifications
- Identification documents (e.g. passport, driving licence)
- Criminal records (DBS) checks
- Health and immunisation status
- Bank details and NI number
- Right to work documentation
- For Clients and Service Users:
- Full name, address, emergency contacts
- Care plans and health/medical information
- GP and social worker details
- Next of kin details
- Payment and billing information
- Website Users:
- IP address and location data
- Browser type and version
- Usage and navigation patterns
- Cookies (see Section 11)
4. How We Collect Your Data
- We collect personal information through:
- Job application forms
- Employment and compliance documents
- Client service agreements and referrals
- Telephone, email, online contact forms
- Cookies and analytics tools on our website
- Third parties (e.g. DBS, referees, NHS services)
5. How We Use Your Information
- We use your data for the following lawful purposes:
- Recruitment and onboarding
- Staff compliance and training records
- Delivery of care services
- Monitoring quality and safeguarding
- Communication and support
- Payroll and financial administration
- Compliance with legal and regulatory obligations
6. Legal Bases for Processing
- We rely on the following legal grounds:
- Consent (for marketing or optional services)
- Contractual obligation (e.g. employment or care agreements)
- Legal obligation (e.g. CQC or safeguarding laws)
- Vital interests (for emergency health and safety)
- Legitimate interests (e.g. business operations, risk management)
7. Data Retention
- We retain personal data only as long as necessary:
- Staff records: 6 years after employment ends
- Client records: 7 years after service ends
- Job applications (unsuccessful): 6–12 months
- Financial records: 6 years
- Website usage data: typically 12 months
- Secure disposal or anonymisation procedures are followed after the retention period.
8. Sharing Your Information
- We may share personal data with trusted third parties:
- DBS and vetting services
- Payroll and pension providers
- Regulatory authorities (e.g. CQC, HMRC)
- Emergency services and safeguarding bodies
- IT support and hosting providers (under strict data agreements)
- Professional advisors (e.g. legal or accounting)
- We never sell or rent your data for marketing.
9. International Data Transfers
- Your data is stored in the UK. If we use services that transfer data outside the UK (e.g., cloud providers), we ensure:
- Data is stored in countries with adequate protection laws, or
- We use Standard Contractual Clauses or equivalent safeguards.
10. Children’s Data
- We do not knowingly collect data from individuals under the age of 16 unless it is part of service delivery to clients and with explicit consent from a parent or guardian.
11. Cookies and Website Analytics
- Our website uses cookies to:
- Remember user preferences
- Monitor website performance
- Improve user experience
- You can accept or decline cookies via your browser settings. See our [Cookie Policy] for more details.
12. Your Rights
- Under the UK GDPR, you have the right to:
- Access your personal data
- Request correction of inaccurate data
- Request deletion (“right to be forgotten”)
- Object to or restrict processing
- Request data portability
- Withdraw consent (where applicable)
- Lodge a complaint with the ICO (www.ico.org.uk)
- To exercise your rights, contact us at info@meridianhealthcareservices.co.uk.
13. Automated Decision-Making
- We do not use your personal data for automated decision-making or profiling that has a legal or significant impact.
14. Third-Party Links
- Our website may include links to external sites. We are not responsible for the privacy practices of other websites and recommend reviewing their privacy policies.
15. Policy Updates
- We may update this policy periodically. The latest version will always be posted on our website with the revised effective date.
Contact Us
- Meridian HealthCare Services Ltd
- 217 Conway House 31 Worcester Street Gloucester Gloucestershire GL1 3AJ
- Email: info@meridianhealthcare.uk
- Phone: 0788 026 8940