Privacy Policy (UK GDPR Compliant)
Last Updated: [Insert Date]
1. Introduction
This Privacy Policy explains how BookCPD.com (“BookCPD”, “we”, “us”, or “our”), operated by Kent Healthcare Limited, collects, uses, and protects your personal data when you use our website and services.
We are committed to protecting your privacy and processing your personal data in accordance with the UK General Data Protection Regulation (UK GDPR) and the Data Protection Act 2018.
For the purpose of applicable data protection laws, Kent Healthcare Limited is the data controller of your personal data.
2. Personal Data We Collect
We collect personal data necessary to provide our services. This may include:
2.1 Information You Provide Directly
- Full name
- Postal address
- Email address
- Telephone number
- Professional/work-related details
- Payment and billing information
- Any information submitted through forms, surveys, or support requests
2.2 Information Collected Automatically
When you use our website, we may collect:
- IP address
- Browser type and version
- Device type and operating system
- Usage data (pages visited, time spent, clicks)
- Location data (approximate)
- Cookies and tracking data (see Section 12)
2.3 Account and Transaction Data
- Booking history
- Payment records
- Communication records
- Support interactions
2.4 Data from Third Parties
We may receive data from:
- Payment processors (e.g., Stripe, PayPal)
- Analytics providers
- Public databases or partners (where lawful)
3. How We Use Your Personal Data
We only process your personal data where we have a lawful basis. These include:
3.1 Contractual Necessity
To:
- Process bookings and payments
- Provide tickets and confirmations
- Manage user accounts
3.2 Legitimate Interests
To:
- Improve platform performance and usability
- Prevent fraud and misuse
- Provide customer support
- Analyse usage and trends
3.3 Legal Obligations
To:
- Comply with regulatory requirements
- Maintain financial and tax records
- Respond to lawful requests
3.4 Consent (Where Required)
To:
- Send marketing communications
- Provide promotional offers
You may withdraw consent at any time.
4. Role of BookCPD as a Platform
BookCPD operates as a marketplace platform connecting event organisers and delegates.
- Event organisers are independent data controllers for attendee-related data used in delivering events.
- BookCPD processes personal data to facilitate bookings, payments, and communication.
- We are not responsible for how organisers use your data beyond the scope of our platform.
5. Sharing Your Personal Data
We may share your data with:
5.1 Service Providers
Including:
- Payment processors (e.g., Stripe, PayPal)
- Hosting providers
- Email and communication tools
- Analytics providers
5.2 Event Organisers
Where necessary to:
- Deliver the event
- Communicate event details
5.3 Legal and Regulatory Authorities
Where required by law or to:
- Enforce legal rights
- Prevent fraud or illegal activity
All third parties are contractually bound to protect your data and process it only as instructed.
6. International Data Transfers
Your personal data may be transferred outside the UK or EEA.
Where this occurs, we ensure appropriate safeguards are in place, such as:
- UK-approved Standard Contractual Clauses
- Transfers to countries deemed adequate by the UK
7. Data Retention
We retain personal data only as long as necessary for:
- Providing services
- Legal, tax, and accounting requirements
- Resolving disputes and enforcing agreements
When no longer required, your data will be securely deleted or anonymised.
8. Your Data Protection Rights
Under UK GDPR, you have the right to:
- Access your personal data
- Rectify inaccurate data
- Request erasure (“right to be forgotten”)
- Restrict processing
- Object to processing
- Data portability
- Withdraw consent
You may exercise these rights by contacting us at:
contact@bookcpd.com
9. Security of Your Data
We implement appropriate technical and organisational measures, including:
- Encryption (where appropriate)
- Secure servers and access controls
- Regular monitoring for vulnerabilities
However, no system is completely secure, and we cannot guarantee absolute security.
10. Communications
We may contact you regarding:
- Bookings and transactions
- Service updates
- Customer support
Marketing communications will only be sent:
- With your consent, or
- Where permitted under legitimate interests
You can opt out at any time via unsubscribe links or account settings.
11. Third-Party Links
Our website may contain links to third-party websites.
We are not responsible for:
- Their content
- Their privacy practices
You should review their privacy policies before providing data.
12. Cookies and Tracking Technologies
We use cookies to:
- Enable core functionality (e.g., bookings)
- Analyse website performance
- Improve user experience
Types of Cookies Used
- Strictly Necessary Cookies – essential for site operation
- Performance Cookies – analytics (e.g., Google Analytics)
- Third-Party Cookies – social media and advertising
You can manage cookie preferences via:
- Browser settings
- Cookie banner on our website
Disabling certain cookies may impact functionality.
13. Children’s Data
Our services are not intended for individuals under the age of 16.
We do not knowingly collect personal data from children.
If such data is identified, it will be deleted promptly.
14. Changes to This Privacy Policy
We may update this Privacy Policy from time to time.
Where changes are material, we will:
- Notify you via email or website notice
- Provide reasonable notice before changes take effect
15. Data Protection Authority
If you are not satisfied with our response, you have the right to lodge a complaint with:
Information Commissioner’s Office (ICO)
Wycliffe House, Water Lane
Wilmslow, Cheshire, SK9 5AF
Website: www.ico.org.uk
Telephone: 0303 123 1113
16. Contact Us
For any questions regarding this Privacy Policy or your data:
Data Protection Officer
Kent Healthcare Limited
Email: contact@bookcpd.com
We aim to respond within 30 days.
17. Warranties and Disclaimers (Platform Context)
BookCPD provides an online platform facilitating event registration and payment processing.
- We do not guarantee the accuracy, quality, or delivery of events listed.
- Event organisers are solely responsible for event content and execution.
- We are not liable for cancellations, changes, or disputes arising from events.
All services are provided “as is” without warranties to the fullest extent permitted by law.
18. Governing Law and Jurisdiction
This Privacy Policy shall be governed by and construed in accordance with the laws of England and Wales.
Any disputes shall be subject to the exclusive jurisdiction of the courts of England and Wales.