PSM Solutions Ltd, trading as DamperTek ("DamperTek", "we"), collects and uses personaldata to run its suspension damper business.
This policy sets out how we keep that datasafe, lawful and fair.
It covers all personal data we handle about customers, website visitors, suppliers andstaff, in any format: paper, email, our website, our systems and phones. It applies toeveryone who works for or on behalf of DamperTek, including owners, employees andcontractors.
Data controller:
PSM Solutions Ltd T/A DamperTek, www.dampertek.co.uk
Data protection contact:
Peter Maze, info@dampertek.co.uk, 07869159988
We comply with UK data protection law, which is:
UK GDPR — the main rules on handling personal data
Data Protection Act 2018 — sits alongside UK GDPR and adds UK-specific rules
Data (Use and Access) Act 2025 — updates the above, including a requirement tohandle data protection complaints
Privacy and Electronic Communications Regulations (PECR) — covers marketingemails, texts and website cookies
We pay the annual data protection fee to the Information Commissioner's Office (ICO),the UK regulator.
We only collect the personal data we need, and every use has a lawful basis under UK GDPR.
Card payments are handled by our payment provider. We do not store full card numbers.
We do not collect special category data (such as health information). Where we must wewill keep it to a minimum and restrict access.
Whenever we handle personal data, we make sure it is:
We are responsible for showing that we follow these principles, so we keep simplerecords of what data we hold and why.
Keeping data secure
How long we keep data
When data is no longer needed, we delete it securely or shred paper copies.
Sharing data
We never sell personal data. We only share it wn needed to run the business, forexample with couriers, our payment provider, our accountant, website and IT providers, orwhere the law requires it.
We use providers who protect data properly and, whererequired, have a written agreement with them. If data is stored outside the UK, we makesure proper safeguards are in place.
Anyone whose data we hold can ask us to:
Requests can be made in writing, by email or verbally, and are passed to the dataprotection contact straight away. We respond within one month and do not charge a fee.We may ask for proof of identity first.
If someone is unhappy with how we have handled their data, they can complain to ususing the contact details in section 1. We acknowledge complaints within 30 days andrespond without undue delay. They also have the right to complain to the ICO at ico.org.ukor on 0303 123 1113.
Data breaches
A data breach is any loss, theft, or unauthorised access to or sharing of personal data,such as a lost phone, a hacked account or an email sent to the wrong person.
Responsibilities
Review
This policy is reviewed every year, or sooner if the law or our business changes.
Approved by:
Peter Maze, Director
Date: 27/09/2026
Next review: 1 year