GDPR Compliance

How we comply with the General Data Protection Regulation

Last updated: 27 August 2025

Hudson Virtual Business Services is committed to protecting your personal data and complying with the General Data Protection Regulation (GDPR). This page explains how we ensure compliance and protect your rights under GDPR.

1. Our Commitment to GDPR

As a UK-based business, we are fully committed to GDPR compliance. We have implemented appropriate technical and organizational measures to ensure the protection of personal data and respect for individual rights.

Data Controller: Hudson Virtual Business Services

Contact: hello@hudsonvirtual.co.uk

2. Your Rights Under GDPR

Under GDPR, you have the following rights regarding your personal data:

Right to Information

Be informed about how your data is collected and used

Right of Access

Request access to your personal data we hold

Right to Rectification

Correct inaccurate or incomplete personal data

Right to Erasure

Request deletion of your personal data ("right to be forgotten")

Right to Restrict Processing

Limit how we process your personal data

Right to Data Portability

Receive your data in a portable format

Right to Object

Object to processing based on legitimate interests

Rights Related to Automated Decision Making

Protection from automated profiling and decision making

3. How to Exercise Your Rights

To exercise any of your GDPR rights, please contact us using the information below. We will respond to your request within one month (or sooner where possible).

Making a Request

  • Email us at: hello@hudsonvirtual.co.uk
  • Include "GDPR Request" in the subject line
  • Clearly state which right you wish to exercise
  • Provide sufficient information to verify your identity
  • Be specific about the data or processing you're concerned about

4. Legal Basis for Processing

We process personal data based on the following legal grounds:

  • Contract: To perform our virtual assistant services
  • Legitimate Interest: To improve our services and communicate about our business
  • Consent: For marketing communications (where required)
  • Legal Obligation: To comply with tax, accounting, and other legal requirements

5. Data Protection Measures

Technical Measures

  • Encryption of data in transit and at rest
  • Secure access controls and authentication
  • Regular security updates and patches
  • Backup and recovery procedures

Organizational Measures

  • Staff training on data protection
  • Data processing policies and procedures
  • Privacy by design and default
  • Regular compliance reviews

6. Data Sharing and Transfers

We do not sell or rent personal data to third parties. When we share data with trusted service providers, we ensure:

  • Appropriate contracts are in place
  • Adequate data protection measures are implemented
  • Data is only processed for specified purposes
  • International transfers comply with GDPR requirements

7. Data Retention

We retain personal data only for as long as necessary to:

  • Provide our services to you
  • Meet legal and regulatory requirements
  • Resolve disputes and enforce agreements
  • Pursue legitimate business interests

When data is no longer needed, it is securely deleted or anonymized.

8. Data Breach Procedures

In the unlikely event of a data breach, we have procedures in place to:

  • Detect and assess the breach within 72 hours
  • Notify the relevant supervisory authority if required
  • Inform affected individuals when there is a high risk
  • Take steps to mitigate any damage
  • Review and improve our security measures

9. Children's Privacy

Our services are not directed to children under 16. We do not knowingly collect personal data from children under 16. If we become aware that we have collected such data, we will take steps to delete it promptly.

10. Complaints and Supervisory Authority

If you believe we have not handled your personal data in accordance with GDPR, you have the right to lodge a complaint with a supervisory authority. In the UK, this is the Information Commissioner's Office (ICO):

Information Commissioner's Office (ICO)

Website: ico.org.uk

Phone: 0303 123 1113

11. Contact Our Data Protection Officer

For any questions about GDPR compliance or data protection, please contact us:

Hudson Virtual Business Services

Email: hello@hudsonvirtual.co.uk

Subject: GDPR/Data Protection Inquiry

WhatsApp: wa.me/7967661613