Privacy Notice & Data Protection
At Financial Health Exchange, we are committed to good practice in the handling and protecting of your personal data and privacy along with careful compliance with the requirements of the Data Protection Act (1988) and GDPR
Financial Health Exchange, is registered with the Information Commissioner through Toynbee Hall in the UK as a “data controller” in accordance with the provisions of the Data Protection Act 1998. Further details of the registration are available at www.dpr.gov.uk
This Privacy Notice describes how and why Financial Health Exchange & Toynbee Hall obtains stores and processes data which can identify you.
Financial Health Exchange & Toynbee Hall are committed to good data management in order to protect people from harm. This means:
- keeping information securely in the right hands;
- holding good quality information; and
- obtaining explicit consent from our clients to record and process their data.
Financial Health Exchange & Toynbee Hall also ensures that it takes into account the legitimate concerns of individuals about the ways in which their data may be used. In particular, we aim to be open and transparent in the way we use personal data and, where relevant, to give individuals a choice over what data is held and how it is used.
The GDPR creates new rights for how organisations treats individual’s data and these are detailed below.
Financial Health Exchange & Toynbee Hall complies with all relevant DPA legislation and also ensures that the principles of the General Data Protection Regulations are incorporated into the service that we provide.
The right to be informed
Financial Health Exchange will ensure that all individuals understand why their data is being obtained, how it is being used and how they can access it. We shall provide this information in a manner that is concise, transparent, intelligible and easily accessible. This information is provided for all ways in which you may communicate with us.
The right of access
Financial Health Exchange wants all people it helps to understand how they can access their personal data, and will ensure that they are able to do this easily and quickly. Please contact us if you want further information on how to access your data.
The right to rectification
In order to provide advice that is comprehensive, accurate and tailored to the circumstances of each person that we help, Financial Health Exchange wishes to hold accurate data about them. If you believe that your personal data is inaccurate or incomplete then we will ensure that this is rectified. If Financial Health Exchange has disclosed the personal data in question to third parties it will inform them of the rectification where possible. Financial Health Exchange will never disclose any data about you without first checking that this is okay with you and making it clear to you why this has been done. Should you want your data to be rectified, then please write to the Toynbee Hall’s Data Protection Officer (DPO) confirming which data you wish to be rectified.
Financial Health Exchange/Toynbee Hall’s DPO can be contacted via email at Daniel.firstname.lastname@example.org
We are licensed by the Information Commissioner’s Office (the UK’s Data Protection regulator) to act as a data controller. Our licence reference number is Z6999734. This can be checked by visiting https://ico.org.uk/about-the-ico/what-we-do/register-of-data-controllers/
We will respond to you as soon as possible but no later than within 48 hours. If Financial Health Exchange/Toynbee Hall does not take action to rectify the data, we shall explain why and will inform you of your right to complain to the Information Commissioners Office.
The right to erasure
Financial Health Exchange wants you to be comfortable about the data that we hold about you and we provide the facility for you to request the deletion or removal of your personal data where there is no compelling reason for its continued processing.
You have a right to have your personal data erased and to prevent processing in the following circumstances:
- where the personal data is no longer necessary in relation to the purpose for which it was originally collected/ processed;
- when the individual withdraws consent;
- when the individual objects to the processing and there is no overriding legitimate interest of for continuing to process it; or
- when the personal data was unlawfully processed and the data has to be erased in order to comply with a legal obligation.
Financial Health Exchange/Toynbee Hall can refuse to comply with a request for erasure where the personal data is processed for the following reasons.
- To exercise the right of freedom of expression and information.
- To comply with a legal obligation for the performance of a public interest task or exercise of official authority.
- For public health purposes in the public interest, archiving purposes in the public interest, scientific research historical research or statistical purposes; or the exercise or defence of legal claims.
The right to restrict processing
If you wish for us to no longer process your data, then we will ensure this happens. You may wish to do this if:
- you contest the accuracy of the personal data;
- where you object to the processing of the data;
- when processing is unlawful and you oppose erasure and request restriction instead; or
- if Financial Health Exchange no longer needs the personal data but you require the data to establish, exercise or defend a legal claim.
If Financial Health Exchange has disclosed the personal data in question to third parties, we shall inform them about the restriction on the processing of the personal data, unless it is impossible or involves disproportionate effort to do so. Financial Health Exchange will inform individuals if it decides to lift a restriction on processing.
The right to data portability
Should you wish for your data to be provided to you in a machine readable format (e.g. CSV) so that another organisation can process this data, then Toynbee Hall will facilitate this where possible. Please contact us for more information.
The right to object
You have the right to choose how we use your data, if you object to how we use your data, then please let us know.
The rights in relation to automated decision making and profiling
Financial Health Exchange does not use automated decision making in any of its processes. The some of our case management software uses a logic driven model on referral options but this does not constitute automated decision making.
Financial Health Exchange will not use personal data for direct marketing.
For more information please visit:
For details how to object and/or lodge a complaint with a supervisory authority (GDPR) such as the ICO – please visit:
How do we collect information?
We may obtain information from you when you enquire about our activities, receive an e-newsletter or otherwise provide us with personal information.
What information do we collect?
The personal information we collect will vary depending on which service you interact with and might include name, date of birth, email address, postal address, telephone number. We will not ask for information unless it is necessary/relevant to the service/interaction we are providing.
How do we use this information?
We will use your personal information to provide you with the services or information you have requested, administration purposes and to further or charitable aims, including fundraising activities.
How do we protect personal information?
We take appropriate measures to ensure that the personal information disclosed to us is kept secure, accurate and up to date. We may also need to disclose your information if required by law or if we have your permission to do so. We will not sell any information about your web browsing activity.
Right of access
You have the right to ask for a copy of the information we hold about you (for which we may charge a small fee) and to have any inaccuracies in your information corrected. If you wish to exercise this right please email email@example.com
Our website may include links to websites run by other organisations. Financial Health Exchange/Toynbee Hall is not responsible for the privacy practices of these other websites.
Will we disclose the information we collect to outside parties?
We will not disclose your contact information to any third parties.
Adverts and Sponsored Links
This website will not contain sponsored links and adverts. We do not share our data or cookies with external advertisers.
Downloads & Media Files
Any downloadable documents, files or media made available on this website are provided to users at their own risk. While all precautions have been undertaken to ensure only genuine downloads are available users are advised to always verify their authenticity using third party anti virus software or similar applications.
We accept no responsibility for third party downloads and downloads provided by external third party websites and always advise users to verify their authenticity using third party anti virus software or similar applications.
Contact & Communication With us
Users contacting this us through this website do so at their own discretion and provide any such personal details requested at their own risk. Any personal information is kept private and stored securely until a time it is no longer required or has no use.
We use a ‘Google Docs’ form to record online enquiries.
We will only contact you as part of the initial process of receiving debt or legal advice, we will not use your details to send you other unrelated products/services information. We may contact you at various points of your debt advice process to seek feedback on our performance, but this will be discussed with you in full when you complete your initial assessment.
Email Mailing List & Marketing Messages
We operate an email mailing list program for our newsletters – utilising the email management software ‘Dotmailer’, and will not send you unsolicited emails/messages. Each email will also contain an option to unsubscribe in a prominent position
External Website Links & Third Parties
Although we only look to include quality, safe and relevant external links, users are always advised to adopt a policy of caution before clicking any external web links mentioned throughout this website. (External links are clickable text / banner / image links to other websites.)
We do not use shortened URL’s in this website; URL shortening is a technique used on the web to shorten URL’s (Uniform Resource Locators) to something substantially shorter. This technique looks similar to this: example: http://bit.ly/zyVUBo.
By default some social media platforms shorten lengthy urls [web addresses]
Users are advised to take caution and good judgement before clicking any shortened urls published on social media and other platforms by this website and its owners. Despite the best efforts to ensure only genuine urls are published many social media platforms are prone to spam and hacking and therefore this website and its owners cannot be held liable for any damages or implications caused by visiting any shortened links.
We cannot guarantee or verify the contents of any externally linked website despite our best efforts. Users should therefore note they click on external links at their own risk and we cannot be held liable for any damages or implications caused by visiting any external links mentioned.
Social Media Policy & Usage
We adopt a Social Media Policy to ensure our business and our staff conduct themselves accordingly online. While we may have official profiles on social media platforms users are advised to verify authenticity of such profiles before engaging with, or sharing information with such profiles. We will never ask for user passwords or personal details on social media platforms. Users are advised to conduct themselves appropriately when engaging with us on social media.
There may be instances where our website features social sharing buttons, which help share web content directly from web pages to the respective social media platforms. You use social sharing buttons at your own discretion and accept that doing so may publish content to your social media profile feed or page. You can find further information about some social media privacy and usage policies in the resources section below.
Resources & Further Information
• Overview of the GDPR – General Data Protection Regulation
• Data Protection Act 1998
• Privacy and Electronic Communications Regulations 2003
• The Guide to the PECR 2003
v.1.2 May 2018 Edited & customised by: Toynbee Hall
If you have any questions or complaints relating to this Privacy Notice or how we use the personal information we have about you, please contact firstname.lastname@example.org. We will endeavor to respond to you promptly.
What Are Cookies
For more general information on cookies see the Wikipedia article on HTTP Cookies.
You can prevent the setting of cookies by adjusting the settings on your browser (see your browser Help for how to do this). Be aware that disabling cookies will affect the functionality of this and many other websites that you visit. Disabling cookies will usually result in also disabling certain functionality and features of the this site. Therefore it is recommended that you do not disable cookies.
The Cookies We Set
When you submit data to through a form such as those found on contact pages or comment forms cookies may be set to remember your user details for future correspondence.
When you log into the members area, we set a cookie to save you having to log in on every single page thereafter, until you log out or are logged out.
Third Party Cookies
This site uses Google Analytics which is one of the most widespread and trusted analytics solution on the web for helping us to understand how you use the site and ways that we can improve your experience. These cookies may track things such as how long you spend on the site and the pages that you visit so we can continue to produce engaging content. For more information on Google Analytics cookies, see the official Google Analytics page.
We also use social media buttons and/or plugins on this site that allow you to connect with your social network in various ways. For these to work the following social media sites including; Facebook, Twitter; will set cookies through our site which may be used to enhance your profile on their site or contribute to the data they hold for various purposes outlined in their respective privacy policies.
Some of the content on our site may be provided by third parties. This includes but is not limited to: Google Maps for interactive mapping,YouTube or Vimeo for hosted video and Flickr for images. When you visit a page containing content from one of these sites a cookie may be set. We do not have any control over these cookies and you should check the relevant third party website for more information about these.
Hopefully that has clarified things for you and as was previously mentioned if there is something that you aren’t sure whether you need or not it’s usually safer to leave cookies enabled in case it does interact with one of the features you use on our site.