Data Protection Policy

Last updated: 25 September 2026

1. Our Commitment

St Maxentius Church is committed to protecting personal data in line with UK GDPR, DPA 2018, PECR, DUAA, and Church of England guidance.

2. How We Protect Data

We use:

  • Secure servers
  • Encryption
  • Password‑protected systems
  • Restricted access
  • Safe disposal of records
  • Regular data‑handling reviews

3. How We Use Data

Personal data is used for:

  • Enquiries
  • Pastoral support
  • Church administration
  • Events and groups
  • Donations
  • Legal and safeguarding obligations

4. Sensitive Information

We do not store pastoral or safeguarding information on the website. Any sensitive data is handled offline under strict Church of England safeguarding protocols.

5. Data Retention

Data is kept only as long as necessary for church administration and legal requirements.

6. Staff Responsibilities

All staff and volunteers handling personal data must:

  • Maintain confidentiality
  • Use data only for legitimate purposes
  • Follow Church of England data‑handling procedures

7. Your Rights

You may access, correct, delete, restrict, object, withdraw consent, or request portability.

8. Contact Us

Email: [email protected]

9. Data Protection Complaints

If you have concerns about how we process your personal data, please contact us in the first instance using the details provided on this website.

We will acknowledge your complaint within 30 days and investigate the matter promptly.

We aim to provide a full response without undue delay.

If you remain dissatisfied, you have the right to lodge a complaint with the Information Commissioner’s Office (ICO).

Information Commissioner’s Office
Wycliffe House
Water Lane
Wilmslow
Cheshire
SK9 5AF

Telephone: 0303 123 1113

Website: Information Commissioner’s Office (ICO)

Scroll to Top