UK GDPR Compliance

Your data protection rights and how MyDayLogs complies with UK GDPR and the Data Protection Act 2018.

Right to Access

You have the right to request a copy of all personal data we hold about you.

Email info@mydaylogs.co.uk to request your data. We will respond within 30 days.

Right to Rectification

You can correct any inaccurate or incomplete personal data we hold about you.

Update your information directly in your account settings or contact our support team.

Right to Erasure

You have the right to request deletion of your personal data in certain circumstances.

Delete your account or contact us to request data deletion. We will comply within 30 days.

Right to Data Portability

You can receive your personal data in a structured, commonly used format.

Export your data from your account or request a complete data package from us.

Right to Restriction

You can request that we limit how we use your personal data in certain situations.

Contact us to discuss restricting the processing of your data.

Right to Object

You can object to processing of your data based on our legitimate interests.

Email us to object to specific processing activities.

Our UK GDPR Commitments

Data Protection Principles

MyDayLogs processes your personal data in accordance with the six data protection principles under UK GDPR:

  1. Lawfulness, fairness, and transparency: We process data lawfully and transparently
  2. Purpose limitation: We collect data for specific, legitimate purposes
  3. Data minimization: We only collect data that is necessary
  4. Accuracy: We keep your data accurate and up to date
  5. Storage limitation: We don't keep data longer than necessary
  6. Integrity and confidentiality: We protect your data with appropriate security measures

Legal Basis for Processing

We process your personal data under the following legal bases:

  • Contract: To provide the Service you've signed up for
  • Legitimate Interests: To improve our Service and prevent fraud
  • Legal Obligation: To comply with UK laws
  • Consent: For marketing communications (where applicable)

Data Security Measures

We implement industry-standard security measures including:

  • End-to-end encryption for data transmission
  • Encryption at rest for stored data
  • Regular security audits and penetration testing
  • Strict access controls and authentication
  • Employee training on data protection
  • Incident response procedures

Data Processors and International Transfers

We work with trusted service providers who act as data processors. All processors are required to comply with UK GDPR standards.

Your data is primarily stored in the UK and EU. Any international data transfers comply with UK GDPR requirements using Standard Contractual Clauses or other approved mechanisms.

Data Breach Notification

In the unlikely event of a data breach that poses a risk to your rights and freedoms, we will notify you and the ICO within 72 hours as required by UK GDPR.

Data Protection Impact Assessments

We conduct Data Protection Impact Assessments (DPIAs) for processing activities that may pose high risks to your data protection rights.

Your Organization's Responsibilities

If you use MyDayLogs to process personal data of others (employees, clients, etc.), you are responsible for:

  • Obtaining appropriate consent or establishing legal basis
  • Providing privacy notices to data subjects
  • Responding to data subject rights requests
  • Ensuring compliance with UK GDPR in your use of the Service

Exercising Your Rights

To exercise any of your UK GDPR rights, please contact us:

Email: info@mydaylogs.co.uk

Company: MyDayLogs Ltd, United Kingdom

We will respond to your request within 30 days. There is no charge for most requests unless they are manifestly unfounded or excessive.

We may need to verify your identity before processing your request to ensure we're protecting your data.

Complaints and Escalation

If you're not satisfied with how we've handled your data or responded to your request, you have the right to lodge a complaint with the UK supervisory authority:

Information Commissioner's Office (ICO)

Website: https://ico.org.uk

Telephone: 0303 123 1113

Address: Wycliffe House, Water Lane, Wilmslow, Cheshire, SK9 5AF