Data Protection Policy
Last updated: 25 September 2026
1. Our Commitment
St Maxentius Church is committed to protecting personal data in line with UK GDPR, DPA 2018, PECR, DUAA, and Church of England guidance.
2. How We Protect Data
We use:
- Secure servers
- Encryption
- Password‑protected systems
- Restricted access
- Safe disposal of records
- Regular data‑handling reviews
3. How We Use Data
Personal data is used for:
- Enquiries
- Pastoral support
- Church administration
- Events and groups
- Donations
- Legal and safeguarding obligations
4. Sensitive Information
We do not store pastoral or safeguarding information on the website. Any sensitive data is handled offline under strict Church of England safeguarding protocols.
5. Data Retention
Data is kept only as long as necessary for church administration and legal requirements.
6. Staff Responsibilities
All staff and volunteers handling personal data must:
- Maintain confidentiality
- Use data only for legitimate purposes
- Follow Church of England data‑handling procedures
7. Your Rights
You may access, correct, delete, restrict, object, withdraw consent, or request portability.
8. Contact Us
Email: [email protected]
9. Data Protection Complaints
If you have concerns about how we process your personal data, please contact us in the first instance using the details provided on this website.
We will acknowledge your complaint within 30 days and investigate the matter promptly.
We aim to provide a full response without undue delay.
If you remain dissatisfied, you have the right to lodge a complaint with the Information Commissioner’s Office (ICO).
Information Commissioner’s Office
Wycliffe House
Water Lane
Wilmslow
Cheshire
SK9 5AF
Telephone: 0303 123 1113

