Canllawiau

Hysbysiad Preifatrwydd CThEF

Rhagor o wybodaeth am bolisi a gweithdrefnau diogelu data CThEF.

Dogfennau

Manylion

Mae Deddf Diogelu Data 2018 yn ei gwneud yn ofynnol i sefydliadau sy’n prosesu data personol fodloni rhai rhwymedigaethau cyfreithiol.

Mae’r rhain wedi’u cynnwys o fewn yr egwyddorion Diogelu Data. Mae CThEF yn rheolwr data o fewn ystyr y ddeddf sy’n prosesu niferoedd uchel o ddata personol.

Cyhoeddwyd ar 18 May 2010
Diweddarwyd ddiwethaf ar 29 February 2024 + show all updates
  1. 'How we use your information' has been updated to include the use of GOV.UK One Login to verify identity.

  2. Added translation

  3. Links have been added to the 'Situations in which we’ll use your personal information' and 'When we may share your personal information with third parties' sections.

  4. Department for International Trade (DIT) has now changed to the Department for Business and Trade (DBT).

  5. When we may share your personal information with third parties now includes Education and Skills Funding Agency for apprentice levy and Department for Education for policy development and evaluation of training or education and the Department for International Trade, including the UK Export Support Service and Trade Remedies Authority, in support of their trade purposes and activities.

  6. The sections about when we may share your personal information with third parties, how to complain to HMRC have been updated. Sections about data protection principles, coronavirus (COVID-19) and your personal information, automated decision making, the security of your data with third party service providers, rights of access, correction, erasure and restriction, right to withdraw consent, fees required and contacting the Information Commissioner’s Office (ICO) have been removed.

  7. The section 'Contact HMRC or make a complaint' has been updated with the name of the interim Data Protection Officer and the process to follow when making a complaint.

  8. The list of third parties we may share your personal information with has been updated.

  9. Information about what personal data we make publicly available and share with accredited processors and researchers has been updated.

  10. Guidance on when HMRC may share your personal information with third parties has been updated to include the Border Flow Service.

  11. The Data Protection Officer (DPO) appointed by HMRC has changed to Nicholas de Lacy-Brown, to oversee compliance with its data protection obligations.

  12. Information added about how coronavirus (COVID-19) measures may affect how personal information is collected, and sections on how to contact HMRC and the Information Commissioner’s Office updated.

  13. Guidance on when we may share your personal information with third parties has been updated.

  14. The 'Automatic Exchange of Information' link under the 'Data sharing' section has been updated to 'Automatic Exchange of Information Privacy Notice'.

  15. Guidance on how we use particularly sensitive personal information, when we may share your personal information with third parties and information about criminal convictions has been updated.

  16. Guidance has been updated about the kind of information we hold about you, situations in which we’ll use your personal information and when we may share your personal information with third parties. Information about transaction monitoring has been added.

  17. The guidance has been updated to show how you can make a complaint to HMRC, and to update the address of HMRC's Data Protection Officer.

  18. This guidance has been updated with information about the new General Data Protection Regulation (GDPR) 2018 and the Data Protection Act (DPA) 2018.

  19. Updated with information about how to make a subject access request.

  20. This guidance has been updated to explain how requests are made.

  21. First published.