Privacy Policy

Effective date: 1 January 2025

1. Who We Are

Direct2U Care Limited (“we”, “our”, “us”) is a registered domiciliary and supported living care provider based at 309 Hertford Road, Enfield, London, EN3 5JN. We are registered with the Care Quality Commission (CQC) and committed to protecting the privacy of our service users, clients, staff, and website visitors.

For any data-related enquiries, contact us at: info@direct2uservices.co.uk or 07394 616696.

2. What Data We Collect

We may collect the following personal data:

  • Contact details (name, email address, telephone number, address, postcode)
  • Care-related information (health conditions, care needs, medication, support requirements)
  • Financial information (where relevant to funding assessments)
  • Employment data (for job applicants and staff)
  • Website usage data (cookies, IP address, browser type — see our Cookie Policy below)

3. How We Use Your Data

We use your personal data to:

  • Respond to care enquiries and arrange free assessments
  • Deliver and manage your care package
  • Process job applications
  • Comply with our legal and regulatory obligations (including CQC registration requirements)
  • Send relevant service updates (with your consent)

4. Our Lawful Basis

We process personal data under the following lawful bases (UK GDPR):

  • Consent — for marketing communications and optional data uses
  • Contract — where we are delivering a care service or processing an application
  • Legal obligation — to comply with health, social care, and employment law
  • Vital interests — where necessary to protect life and health
  • Legitimate interests — for enquiry management and service improvement

5. Data Sharing

We may share your data with:

  • Health and social care professionals involved in your care (GPs, social workers, NHS teams)
  • Local Authorities and NHS commissioners (where relevant to your funded care)
  • Our staff and care workers, on a need-to-know basis
  • Legal and regulatory authorities if required by law

We do not sell your personal data to third parties.

6. Data Retention

We retain personal data only for as long as necessary:

  • Service user records: retained for a minimum of 7 years after care ends (in line with health and social care regulations)
  • Job applicant data: retained for 6 months if unsuccessful, or for the duration of employment
  • Website enquiry data: retained for 12 months

7. Your Rights

Under UK GDPR, you have the right to:

  • Access your personal data
  • Correct inaccurate data
  • Request deletion of your data (subject to legal retention requirements)
  • Object to or restrict processing
  • Data portability
  • Withdraw consent at any time

To exercise any of these rights, contact us at info@direct2uservices.co.uk.

8. Cookies

Our website uses essential cookies to function and analytical cookies (with consent) to improve performance. You can manage cookie preferences in your browser settings.

9. Security

We implement appropriate technical and organisational measures to protect your personal data against unauthorised access, loss, or disclosure.

10. Complaints

If you are unhappy with how we handle your data, you can contact the Information Commissioner’s Office (ICO): ico.org.uk | 0303 123 1113.

11. Changes to This Policy

We may update this policy from time to time. The current version will always be published on this page.