[et_pb_section fb_built=”1″ theme_builder_area=”post_content” _builder_version=”4.24.0″ _module_preset=”default”][et_pb_row _builder_version=”4.24.0″ _module_preset=”default” theme_builder_area=”post_content”][et_pb_column _builder_version=”4.24.0″ _module_preset=”default” type=”4_4″ theme_builder_area=”post_content”][et_pb_text _builder_version=”4.24.0″ _module_preset=”default” theme_builder_area=”post_content” hover_enabled=”0″ sticky_enabled=”0″]

Privacy Policy

Introduction

The European Union General Data Protection Regulation (GDPR) has been in effect across the EU since 25th May 2018, representing a significant overhaul of data protection legislation. Designed with a focus on privacy by design and a risk-based approach, the GDPR responds to the diverse privacy challenges posed by the digital age. With the proliferation of technology, evolving definitions of personal data, and increased cross-border data processing activities, the Regulation aims to standardize data protection laws and practices across the EU. Its objective is to empower individuals with stronger and more consistent rights to access and control their personal information, ensuring a harmonized approach to data privacy and security.

 

Our Commitment

Incr-edibles.co.uk (referred to as “we,” “us,” or “our”) is dedicated to ensuring the security and protection of the personal information we process, and to maintaining a compliant and uniform approach to data protection. Our existing data protection program aligns with current laws and adheres to data protection principles. As we acknowledge our responsibilities to comply with the GDPR and the United Kingdom’s Data Protection Bill/United Kingdom’s DP law, we have expanded and updated our program to meet the requirements of these regulations. Incr-edibles.co.uk is committed to safeguarding the personal information under our control and to developing a robust and purpose-driven data protection framework that reflects an understanding of and respect for the GDPR. Our readiness and objectives for GDPR compliance are outlined in this statement, encompassing the establishment and implementation of new data protection roles, policies, procedures, controls, and measures to ensure ongoing compliance.

Incr-edibles.co.uk already upholds a consistent level of data protection and security throughout our organization. However, our goal is to achieve full compliance with the GDPR by 25th May 2018. Our preparation encompasses various aspects, such as revising or implementing:

Data Subject Rights

In addition to our revised policies and procedures, we provide easy access to information about individuals’ rights regarding their personal data processed by Incr-edibles.co.uk. This includes the right to access, rectify, erase, restrict processing, object to direct marketing, and seek automated decision-making details, as well as the right to lodge complaints or seek judicial remedy.

Information Security & Technical and Organizational Measures

We take the privacy and security of personal information seriously, implementing robust information security policies, and technical and organizational measures to protect personal data from unauthorized access or misuse, including employing SSL, access controls, encryption, and other security protocols.

GDPR Roles and Employees

Incr-edibles.co.uk has designated Gordon Stark as our Appointed Person and established a data privacy team to drive and monitor our GDPR compliance efforts. We recognize the importance of maintaining employee awareness and understanding of the GDPR, and as such, a dedicated training program has been implemented to ensure all employees are well-informed and compliant.

For any inquiries regarding our GDPR preparations, please contact Gordon Stark

[/et_pb_text][/et_pb_column][/et_pb_row][/et_pb_section]