Privacy Policy

Privacy Policy and Cookies Policy

  1. Use of the Website is also governed by our Privacy Policy and Cookies Policy, which are incorporated into these terms and conditions by this reference. To view the Privacy Policy and Cookies Policy, please see below.

Availability of the Website and disclaimers

  1. Any online facilities, tools, services or information that A Drop Edu and A Drop Foundation makes available through the Website (the Service) is provided “as is” and on an “as available” basis. We give no warranty that the Service will be free of defects and/or faults. To the maximum extent permitted by the law, we provide no warranties (express or implied) of fitness for a particular purpose, accuracy of information, compatibility and satisfactory quality. A Drop Edu and A Drop Foundation is under no obligation to update information on the Website.
  2. Whilst A Drop Edu and A Drop Foundation uses reasonable endeavors to ensure that the Website is secure and free of errors, viruses and other malware, we give no warranty or guaranty in that regard and all Users take responsibility for their own security, that of their personal details and their computers.
  3. A Drop Edu and A Drop Foundation accepts no liability for any disruption or non-availability of the Website.
  4. A Drop Edu and A Drop Foundation reserves the right to alter, suspend or discontinue any part (or the whole of) the Website including, but not limited to, any products and/or services available. These terms and conditions shall continue to apply to any modified version of the Website unless it is expressly stated otherwise.

Limitation of liability

  1. Nothing in these terms and conditions will: (a) limit or exclude our or your liability for death or personal injury resulting from our or your negligence, as applicable; (b) limit or exclude our or your liability for fraud or fraudulent misrepresentation; or (c) limit or exclude any of our or your liabilities in any way that is not permitted under applicable law.
  2. We will not be liable to you in respect of any losses arising out of events beyond our reasonable control.
  3. To the maximum extent permitted by law, A Drop Edu and A Drop Foundation accepts no liability for any of the following:
    1. any business losses, such as loss of profits, income, revenue, anticipated savings, business, contracts, goodwill or commercial opportunities;
    2. loss or corruption of any data, database or software;
    3. any special, indirect or consequential loss or damage.

General

  1. You may not transfer any of your rights under these terms and conditions to any other person. We may transfer our rights under these terms and conditions where we reasonably believe your rights will not be affected.
  2. These terms and conditions may be varied by us from time to time. Such revised terms will apply to the Website from the date of publication. Users should check the terms and conditions regularly to ensure familiarity with the then current version.
  3. These terms and conditions together with the Privacy Policy and Cookies Policy contain the whole agreement between the parties relating to its subject matter and supersede all prior discussions, arrangements or agreements that might have taken place in relation to the terms and conditions.
  4. The Contracts (Rights of Third Parties) Act 1999 shall not apply to these terms and conditions and no third party will have any right to enforce or rely on any provision of these terms and conditions.
  5. If any court or competent authority finds that any provision of these terms and conditions (or part of any provision) is invalid, illegal or unenforceable, that provision or part-provision will, to the extent required, be deemed to be deleted, and the validity and enforceability of the other provisions of these terms and conditions will not be affected.
  6. Unless otherwise agreed, no delay, act or omission by a party in exercising any right or remedy will be deemed a waiver of that, or any other, right or remedy.
  7. This Agreement shall be governed by and interpreted according to the law of England and Wales and all disputes arising under the Agreement (including non-contractual disputes or claims) shall be subject to the exclusive jurisdiction of the English and Welsh

Privacy policy This privacy policy applies between you, the User of this Website and A Drop Edu and A Drop Foundation, the owner and provider of this Website. A Drop Edu and A Drop Foundation takes the privacy of your information very seriously. This privacy policy applies to our use of any and all Data collected by us or provided by you in relation to your use of the Website. This privacy policy should be read alongside, and in addition to, our Terms and Conditions, which can be found above. 

In this privacy policy, unless the context requires a different interpretation:

Scope of this privacy policy

  1. This privacy policy applies only to the actions of A Drop Edu and A Drop Foundation and Users with respect to this Website. It does not extend to any websites that can be accessed from this Website including, but not limited to, any links we may provide to social media websites.
  2. For purposes of the applicable Data Protection Laws, A Drop Edu and A Drop Foundation is the “data controller”. This means that A Drop Edu and A Drop Foundation determines the purposes for which, and the manner in which, your Data is processed.

Data collected

  1. We may collect the following Data, which includes personal Data, from you:
    1. name;
    2. job title;
    3. profession;
    4. contact Information such as email addresses and telephone numbers;

in each case, in accordance with this privacy policy. How we collect Data

  1. We collect Data in the following ways:
    1. data is given to us by you; and
    2. data is collected automatically.

Data that is given to us by you

  1. A Drop Edu and A Drop Foundation will collect your Data in a number of ways, for example:
    1. when you contact us through the Website, by telephone, post, e-mail or through any other means;
    2. when you use our services;

in each case, in accordance with this privacy policy. Data that is collected automatically

  1. To the extent that you access the Website, we will collect your Data automatically, for example:
    1. we automatically collect some information about your visit to the Website. This information helps us to make improvements to Website content and navigation, and includes your IP address, the date, times and frequency with which you access the Website and the way you use and interact with its content.
    2. we will collect your Data automatically via cookies, in line with the cookie settings on your browser. For more information about cookies, and how we use them on the Website, see the section below, headed “Cookies”.

Our use of Data

  1. Any or all of the above Data may be required by us from time to time in order to provide you with the best possible service and experience when using our Website. Specifically, Data may be used by us for the following reasons:
    • communications in relation to A Drop Edu and A Drop Foundation events; in each case, in accordance with this privacy policy.
  2. We may use your Data for the above purposes if we deem it necessary to do so for our legitimate interests. If you are not satisfied with this, you have the right to object in certain circumstances (see the section headed “Your rights” below).

Who we share Data with

  1. We may share your Data with the following groups of people for the following reasons:
    • our employees, agents and/or professional advisors – to participate in group events organised and/or hosted by third-party companies; in each case, in accordance with this privacy policy.
    • Participants in Round Table discussions prior to and following each event, including Name and Company/Organisation details – to facilitate group discussion and recognise participants.

Keeping Data secure

  1. We will use technical and organisational measures to safeguard your Data, for example:
    1. access to your account is controlled by a password and a username that is unique to you.
    2. we store your Data on secure servers.
  2. Technical and organisational measures include measures to deal with any suspected data breach. If you suspect any misuse or loss or unauthorised access to your Data, please let us know immediately by contacting us via this e-mail address: info@adropedu.com
  3. If you want detailed information from Get Safe Online on how to protect your information and your computers and devices against fraud, identity theft, viruses and many other online problems, please visit www.getsafeonline.org. Get Safe Online is supported by HM Government and leading businesses.

Data retention

  1. Unless a longer retention period is required or permitted by law, we will only hold your Data on our systems for the period necessary to fulfil the purposes outlined in this privacy policy or until you request that the Data be deleted.
  2. Even if we delete your Data, it may persist on backup or archival media for legal, tax or regulatory purposes.

Your rights

  1. You have the following rights in relation to your Data:
    1. Right to access– the right to request (i) copies of the information we hold about you at any time, or (ii) that we modify, update or delete such information. If we provide you with access to the information we hold about you, we will not charge you for this, unless your request is “manifestly unfounded or excessive.” Where we are legally permitted to do so, we may refuse your request. If we refuse your request, we will tell you the reasons why.
    2. Right to correct– the right to have your Data rectified if it is inaccurate or incomplete.
    3. Right to erase– the right to request that we delete or remove your Data from our systems.
    4. Right to restrict our use of your Data– the right to “block” us from using your Data or limit the way in which we can use it.
    5. Right to data portability– the right to request that we move, copy or transfer your Data.
    6. Right to object– the right to object to our use of your Data including where we use it for our legitimate interests.
  2. To make enquiries, exercise any of your rights set out above, or withdraw your consent to the processing of your Data (where consent is our legal basis for processing your Data), please contact us via this e-mail address: info@adropedu.com
  3. If you are not satisfied with the way a complaint you make in relation to your Data is handled by us, you may be able to refer your complaint to the relevant data protection authority. For the UK, this is the Information Commissioner’s Office (ICO). The ICO’s contact details can be found on their website at https://ico.org.uk/.
  4. It is important that the Data we hold about you is accurate and current. Please keep us informed if your Data changes during the period for which we hold it.

Links to other websites

  1. This Website may, from time to time, provide links to other websites. We have no control over such websites and are not responsible for the content of these websites. This privacy policy does not extend to your use of such websites. You are advised to read the privacy policy or statement of other websites prior to using them.

Changes of business ownership and control

  1. A Drop Edu and A Drop Foundation may, from time to time, expand or reduce our business and this may involve the sale and/or the transfer of control of all or part of A Drop Edu and A Drop Foundation. Data provided by Users will, where it is relevant to any part of our business so transferred, be transferred along with that part and the new owner or newly controlling party will, under the terms of this privacy policy, be permitted to use the Data for the purposes for which it was originally supplied to us.
  2. We may also disclose Data to a prospective purchaser of our business or any part of it.
  3. In the above instances, we will take steps with the aim of ensuring your privacy is protected.

Cookies#cookies

  1. This Website may place and access certain Cookies on your computer. A Drop Edu and A Drop Foundation uses Cookies to improve your experience of using the Website. A Drop Edu and A Drop Foundation has carefully chosen these Cookies and has taken steps to ensure that your privacy is protected and respected at all times.
  2. All Cookies used by this Website are used in accordance with current UK and EU Cookie Law.
  3. Before the Website places Cookies on your computer, you will be presented with a message bar requesting your consent to set those Cookies. By giving your consent to the placing of Cookies, you are enabling A Drop Edu and A Drop Foundation to provide a better experience and service to you. You may, if you wish, deny consent to the placing of Cookies; however certain features of the Website may not function fully or as intended.
  4. This Website may place the following Cookies:
Type of CookiePurpose
Strictly necessary cookiesThese are cookies that are required for the operation of our website. They include, for example, cookies that enable you to log into secure areas of our website, use a shopping cart or make use of e-billing services.
  1. You can find a list of Cookies that we use in the Cookies Schedule below.
  2. You can choose to enable or disable Cookies in your internet browser. By default, most internet browsers accept Cookies, but this can be changed. For further details, please consult the help menu in your internet browser.
  3. You can choose to delete Cookies at any time; however, you may lose any information that enables you to access the Website more quickly and efficiently including, but not limited to, personalisation settings.
  4. It is recommended that you ensure that your internet browser is up-to-date and that you consult the help and guidance provided by the developer of your internet browser if you are unsure about adjusting your privacy settings.
  5. For more information generally on cookies, including how to disable them, please refer to aboutcookies.org. You will also find details on how to delete cookies from your computer.

General

  1. You may not transfer any of your rights under this privacy policy to any other person. We may transfer our rights under this privacy policy where we reasonably believe your rights will not be affected.
  2. If any court or competent authority finds that any provision of this privacy policy (or part of any provision) is invalid, illegal or unenforceable, that provision or part-provision will, to the extent required, be deemed to be deleted, and the validity and enforceability of the other provisions of this privacy policy will not be affected.
  3. Unless otherwise agreed, no delay, act or omission by a party in exercising any right or remedy will be deemed a waiver of that, or any other, right or remedy.
  4. This Agreement will be governed by and interpreted according to the law of England and Wales. All disputes arising under the Agreement will be subject to the exclusive jurisdiction of the English and Welsh courts.

Changes to this privacy policy

  1. A Drop Edu and A Drop Foundation reserves the right to change this privacy policy as we may deem necessary from time to time or as may be required by law. Any changes will be immediately posted on the Website and you are deemed to have accepted the terms of the privacy policy on your first use of the Website following the alterations. You may contact A Drop Edu and A Drop Foundation by email at info@adropedu.com

Cookies

  1. Below is a list of the cookies that we use. We have tried to ensure this is complete and up to date, but if you think that we have missed a cookie or there is any discrepancy, please let us know.

Strictly necessary We use the following strictly necessary cookies:

 GDPR Policy

1. Data Protection Introduction Our Data Protection Policy sets out our commitment to protecting personal data and how we implement that commitment with regards to the collection and use of personal data. Commitment We are committed to:

2. Data Retention and Management Introduction The GDPR does not specify retention periods for personal data. Instead, Principle 5 states that personal data may only be kept in a form that permits identification of the individual, for no longer than is justified and necessary for the purposes for which it was obtained and processed. For example, medical/health information, such as OH reports, or other related information, can be kept for 40 years, but other more general personal data should not be. Therefore, in deciding how long to retain personal data and any special categories of data held separately, A Drop Edu and A Drop Foundation based its decision on statutory retention periods, maximum periods for potential claims, and, in accordance with the aforementioned, legitimate business requirements. Scope All systems used by the A Drop Edu and A Drop Foundation, both electronic and any remaining paper records. Responsibility A Drop Edu and A Drop Foundation will ensure effective management and safeguarding of personal and sensitive data in its control, and has taken steps to ensure the integrity, security and compliance measures taken by data processors acting on its behalf. System owners will manage the retention of personal data for systems that they maintain. Legal basis for Processing Personal Data This policy should be read in conjunction with our Privacy and website terms & conditions (above). Personal Data The GDPR definition of personal data, is any information relating to a ‘natural’ person who can be directly or indirectly identified by this data. A wide range of ‘personal identifiers’ constitute personal data, including name, age, location, etc. The GDPR applies to both electronic personal data and to manual filing systems where personal data is accessible according to specific criteria. This could include chronologically ordered sets of manual records containing personal data. Personal data that has been pseudonymized – e.g. key/numerically-coded – falls within the scope of the GDPR, depending on the level of ease of attributing the pseudonym to a particular individual. Special Categories of Personal Data Special categories of data under GDPR, is defined as personal data, which is more sensitive, and therefore needs a higher level of protection. Such data is as follows:

In order to lawfully process these special categories of data, there must be both a lawful basis under Article 6 of the GDPR and a separate condition (of 10 listed under the Regulation) for processing the special category of data under Article 9 of the GDPR. Genetic data and some biometric data is included in this category. data relating to criminal offences and convictions (e.g.DBS disclosures) is not included in this Category. Article 10 of the GDPR sets out separate and specific safeguards for this type of data in Article 10. These do not have to be linked. Before processing this category of data, it is vital that a reason for doing so, in accordance with the above, is documented. Systematic Review of Personal Data A review of Members’ data, and the data of leavers still held, will take place on an annual basis and will include all electronic and any paper records. If it is determined that there is no justification or good reason for retaining certain pieces of personal data, the data (or the unnecessary elements thereof) will be routinely deleted. A record of the deletion will be made, on the Deletion/Rectification List. Records and Management A Deletion / Rectification list will be held by the Executive Assistant, of Members who have requested rectification or erasure of their data, and such requests will be reviewed by the Board accordingly. As above, details of data deemed not necessary for retention and therefore deleted by the A Drop Edu and A Drop Foundation as part of its systematic review, will also be recorded on this list (type of data, previous storage location and reason for deletion).

Post-Member Data Retention 36 months after a member has left, only the following basic information will be retained, unless there are circumstances which require the data to be retained for longer:

  1. Name
  2. Date of Birth
  3. Role
  4. Dates of membership
  5. One method of contacting the individual, such as phone number

Any requests for erasure of the above retained data, from the Data Subject, will be considered and actioned as appropriate, by the Board. 

3. Confidentiality and Non-Disclosure Recitals During the course of the Member relationship, the Board and Member will disclose to the other party, confidential information in relation to the purpose. Each party wishes to ensure that the other party maintains the confidentiality of its confidential information. In consideration of the benefits to the parties of the disclosure of the confidential Information, the parties have agreed to comply with the following terms in connection with the use and disclosure of confidential information. Definitions: “Affiliate” In relation to a body corporate, any subsidiary, subsidiary undertaking or holding company of this body corporate, and any subsidiary or subsidiary undertaking of such holding company for the time being as defined in section 1159 of the Companies Act 2006  “Confidential Information” Means any knowledge, data, trade secrets, business plans, financial, operational, commercial or other information of the Disclosing Party and/or Affiliate which is disclosed by the Disclosing Party to the Receiving Party, including (without limitation) any information specifically identified in this Agreement, and any such ideas, inventions, designs, drawings, diagrams, specifications, software, compositions, formulae, schematics, methods, techniques, plans, instructions, processes, procedures, structures, research and development, test data, results, models, prototypes, and samples, and any prices, costs, statistics, or other business, financial or customer information, and any information relating to the Disclosing Party’s business, products, services, technology, plans, capabilities, and activities;  “Disclosing Party” The party disclosing confidential information to the other party;  “Proper Use” The use of confidential information wholly, necessarily and exclusively for the Purpose.  “Purpose” Shall mean any discussions and negotiations between the parties, concerning or in connection with the individual’s employment with FED. “Recipient” The party receiving confidential information from the other party; “Representatives” Directors, officers, employees, contractors, sub-contractors, agents, advisers and representatives of the Disclosing Party. In consideration of the Disclosing Party disclosing Confidential Information to the Recipient, the Recipient undertakes:

Exceptions The recipient shall not be bound by the provisions contained in this section of this policy, if such confidential information: was already in the lawful possession of the recipient and at its free disposal before the disclosure by the disclosing party to the recipient; is lawfully disclosed to the recipient without any obligations of confidence by a third party; is or becomes generally available to the public in printed publications in general circulation through no act or default on the part of the recipient or the recipient’s agents or employees; is replicated by development independently carried out by or for it by an Member or other person without access to or knowledge of the confidential information; is required to be disclosed in any legal proceedings or by any government body or regulatory authority or court of comparable and competent jurisdiction. 

4. Information Sharing and Third Party Data Processing Background The controller processes personal data in connection with its business activities; The processor processes personal data on behalf of other businesses and organisations; The controller may engage the services of the processor to process personal data on its behalf; Article 28 of the General Data Protection Regulation 2016 (as hereinafter defined as ‘GDPR’) provides that, where processing of personal data is carried out by a processor on behalf of a data controller the controller must choose a processor providing sufficient guarantees in respect of the technical security measures and organisational measures governing the processing to be carried out, and must ensure compliance with those measures; Article 29 of the GDPR requires that where processing is carried out by a processor on behalf of a controller such processing shall be governed by a contract or legal act binding the processor to the controller stipulating, in particular, that the processor shall act only on instructions from the controller and shall comply with the technical and organisational measures required under the GDPR to protect personal data against accidental or unlawful destruction or accidental loss, alternation, unauthorised disclosure or access and against all other unlawful forms of processing; In compliance with the above-mentioned provisions of Article 28 of the GDPR, the controller and processor will enter into a processing security agreement.  Definitions and Interpretation “GDPR” means the General Data Protection Regulation 2016 on the protection of individuals with regard to the security and processing of personal data and on the free movement of such data; “national law” shall mean the law of the country in which the processor is established; “personal data” shall mean any information relating to an identified or identifiable natural person (‘data subject’); an identifiable person is one who can be identified, directly or indirectly, in particular by reference to an identification number or to one or more factors specific to his physical, physiological, mental, economic cultural or social identity; “processing of personal data” shall mean any operation or set of operations which is performed upon personal data, whether or not by automatic means, such as collection, recording, organisation, storage, adaptation or alternation, retrieval, consultation, use, disclosure by transmission, dissemination or otherwise making available, alignment or combination, blocking, erasure or destruction; “sub-contract” and “sub-contracting” and shall mean the process by which either party arranges for a third party to carry out its obligations under this agreement and “Sub Contractor” or “Sub-Processor” shall mean the party to whom the obligations are subcontracted; and “Technical and organisational security measures” shall mean measures to protect personal data against accidental or unlawful destruction or accidental loss, alternation, unauthorised disclosure or access and against all other unlawful forms of processing. Consideration In consideration of the controller engaging the services of the processor to process personal data on its behalf, the processor will comply with the security, confidentiality and other obligations imposed on it under the Agreement and of the GDPR. Security Obligations and Responsibilities of the Processor

Confidentiality

Control and Review