Back to Home

GDPR Compliance

Our commitment to data protection and privacy

GDPR Compliant

FlexiPartners Ltd is fully compliant with the General Data Protection Regulation (GDPR) and UK data protection laws.

Our GDPR Commitment

We are committed to protecting your personal data and respecting your privacy rights. Our GDPR compliance program ensures that we:

  • Process personal data lawfully, fairly, and transparently
  • Collect data only for specified, explicit, and legitimate purposes
  • Ensure data is adequate, relevant, and limited to what is necessary
  • Keep personal data accurate and up to date
  • Store data only for as long as necessary
  • Process data securely with appropriate technical and organizational measures

Your Rights Under GDPR

Under GDPR, you have the following rights regarding your personal data:

Right to Information

You have the right to know how your personal data is being processed.

Right of Access

You can request a copy of the personal data we hold about you.

Right to Rectification

You can request correction of inaccurate or incomplete personal data.

Right to Erasure

You can request deletion of your personal data in certain circumstances.

Right to Restrict Processing

You can request limitation of how we process your personal data.

Right to Data Portability

You can request your data in a structured, machine-readable format.

Right to Object

You can object to certain types of processing of your personal data.

Data Security Measures

We implement comprehensive security measures to protect your personal data:

Technical Measures

  • • End-to-end encryption
  • • Secure data transmission
  • • Regular security updates
  • • Access controls
  • • Data backup systems

Organizational Measures

  • • Staff training programs
  • • Data protection policies
  • • Regular audits
  • • Incident response procedures
  • • Vendor assessments

Legal Basis for Processing

We process your personal data based on the following legal grounds:

  • Contract: To fulfill our umbrella company services
  • Legal Obligation: To comply with tax and employment laws
  • Legitimate Interest: To improve our services and prevent fraud
  • Consent: For marketing communications (where applicable)

Data Retention

We retain personal data only for as long as necessary:

  • Employment Records: 6 years after termination
  • Tax Records: As required by HMRC (typically 6 years)
  • Financial Records: 7 years for accounting purposes
  • Marketing Data: Until consent is withdrawn

Exercising Your Rights

To exercise any of your GDPR rights, please contact our Data Protection Officer:

Email: dpo@flexipaye.co.uk

Address: Data Protection Officer, FlexiPartners Ltd, 128 City Road, London, EC1V 2NX

Phone: 020 7946 0958

We will respond to your request within 30 days. If you are not satisfied with our response, you have the right to lodge a complaint with the Information Commissioner's Office (ICO).