Privacy Statement · effective 29 July 2026
Your information is used carefully and kept only for as long as it is needed.
Great Daynes Services is operated by Tim Daynes in Oundle and is the data controller for personal information submitted through this website or sent directly in connection with an enquiry or service. Privacy enquiries and requests can be sent to greatdaynesservices@gmail.com.
Information I may collect
I may collect your name, email address, telephone number, postcode or general area, preferred contact time, the service requested, correspondence and any other information you choose to provide through a booking form or by contacting me directly.
Please do not enter card details, passwords, medical diagnoses, detailed health records or other sensitive information into a general booking form. If health information is genuinely required for safe personal training, it should be discussed and recorded separately with an appropriate lawful basis and explicit consent.
How and why I use it
I use personal information to respond to enquiries, take steps requested before entering into an agreement, arrange and deliver services, communicate about bookings, maintain necessary business records, protect the website from misuse and deal with questions, complaints or disputes. I do not sell personal information and I do not use enquiry details for unrelated marketing without separate permission.
Lawful bases
The main lawful bases are: taking steps at your request before a contract and performing a contract; legitimate interests in responding to enquiries, operating and protecting a small local service business and keeping proportionate correspondence; and legal obligation where records must be retained for tax, accounting or other legal requirements. Where consent is specifically requested, it may be withdrawn at any time, although this does not affect processing already carried out lawfully.
Who may process the information
Website booking submissions may be processed by Netlify, and email communications may be processed by the relevant email providers. These suppliers act as service providers and may process technical data outside the UK. Where an international transfer occurs, it must use a lawful transfer mechanism such as UK adequacy regulations or approved contractual safeguards. Information may also be disclosed where required by law or where necessary to establish, exercise or defend legal claims.
If you choose to pay through a SumUp link, SumUp processes the payment on its own secure website under its privacy terms. I may receive payment confirmation and transaction information needed for business and accounting records, but this website does not collect or store your card details.
How long I keep it
Enquiries that do not become bookings: normally deleted within 90 days of the last meaningful contact.
Booking and service correspondence: normally deleted or reduced to the minimum necessary within 12 months of the final service, unless it is still needed for an active issue, complaint, insurance matter or legal claim.
Financial and transaction records: retained for the period required by HMRC and other applicable law—normally at least five years after the 31 January submission deadline for the relevant tax year if operating as self-employed.
Information is reviewed and securely deleted or anonymised when no longer required. A legal requirement, unresolved complaint or anticipated claim may justify keeping a limited record for longer.
Your data-protection rights
Depending on the circumstances, you may have rights to be informed, access your personal information, correct inaccurate information, request deletion, restrict processing, object to processing, receive portable data and withdraw consent. To exercise a right, email greatdaynesservices@gmail.com. I may need enough information to verify your identity and understand the request. Requests will be handled without undue delay and normally within one month.
Data-protection complaints
You can make a data-protection complaint by emailing greatdaynesservices@gmail.com with the subject “Data Protection Complaint”. I will acknowledge receipt within 30 days, make appropriate enquiries without undue delay, keep you informed where necessary and explain the outcome. You also have the right to complain to the Information Commissioner’s Office (ICO), although the ICO will usually expect you to raise the issue with the business first.
Security, updates and contact
Reasonable technical and organisational measures are used to protect information, including limiting collection to what is needed and avoiding public exposure of secret access keys. No internet service can be guaranteed completely secure. This statement will be reviewed when services, suppliers or legal requirements change. The most recent version will remain available on this page.
