PRIVACY POLICY
1. INTRODUCTION
Midcore Security & Facility Management (‘Midcore’, ‘we’, ‘our’, ‘us’) is committed to protecting your personal
information and respecting your privacy. This Privacy Policy explains how we collect, use, store and protect
personal data in accordance with the UK GDPR, the Data Protection Act 2018 and other applicable legislation. This
notice applies to clients, client representatives, prospective clients, suppliers, business contacts and individuals
whose personal data we process during the provision of our services.
2. DATA CONTROLLER
Midcore Security & Facility Management Ltd
4 The Ridgeway, Ridgeway Trading Estate, Iver, SL0 9HW
Email: info@midcore.co.uk
Telephone: 0333 366 0355
Company Registration No: 10199100
Data Protection Lead: Haider Hashmi
Email: info@midcore.co.uk
3. PERSONAL INFORMATION WE COLLECT
Name, job title, company details, postal address, email address, telephone numbers, contract information, purchase
orders, invoice information, payment information, site access records, CCTV footage where applicable, incident
reports, vehicle details, visitor records, communications and, where required, information necessary to verify
identity or undertake credit and fraud prevention checks.
4. WHERE WE OBTAIN YOUR INFORMATION
We may obtain personal data from you directly, your employer, public sources, our clients, regulatory bodies, Credit
Reference Agencies, fraud prevention agencies and professional advisers.
5. WHY WE PROCESS YOUR INFORMATION
We process personal data to provide contracted security services, manage client accounts and contracts, arrange
site access, respond to enquiries, produce quotations, carry out invoicing, recover debts, comply with legal
obligations, protect legitimate interests, prevent fraud, verify identity, maintain security and meet insurance
requirements.
6. LAWFUL BASIS FOR PROCESSING
We rely on one or more of the following lawful bases: performance of a contract, legal obligation, legitimate interests and consent where required.
7. CREDIT REFERENCE AGENCIES
Credit Reference and Affordability Checks
To help us assess applications, prevent fraud, and meet our legal and regulatory obligations, we may obtain
information about you from credit reference agencies (CRAs).
We obtain this information via Creditsafe, which uses its data partner TransUnion to supply consumer credit and
identity data.
Creditsafe Business Solutions Limited is authorised and regulated by the Financial Conduct Authority
FCA Firm Reference Number: 742313
TransUnion International UK Limited is authorised and regulated by the Financial Conduct Authority
FCA Firm Reference Number: 737740
The information we receive may include data relating to your identity, credit commitments, payment history, and
public record information. This data is used solely for legitimate business purposes, including creditworthiness
assessment, identity verification, and fraud prevention, in accordance with applicable data protection laws.
Further information about how Creditsafe and TransUnion process your personal data can be found in their
respective privacy notices:
Creditsafe Privacy / Transparency Notice:
Transparency Notice | Customers & Suppliers
TransUnion Bureau Privacy Notice:
https://www.transunion.co.uk/legal/privacy-centre/pc-bureau
8. WHO WE SHARE INFORMATION WITH
Where appropriate, we may share personal information with clients, accountants, payroll providers, insurers, legal
advisers, regulatory authorities, police, emergency services, Credit Reference Agencies, fraud prevention agencies
and other professional advisers where necessary to support our legitimate business interests, fulfil contractual
obligations or comply with legal requirements. We never sell personal data.
9. INTERNATIONAL TRANSFERS
Where personal information is transferred outside the United Kingdom, appropriate safeguards will be implemented
in accordance with UK GDPR.
10. RETENTION
Personal data is retained only for as long as necessary to fulfil legal, contractual and business requirements before
being securely deleted or destroyed.
11. YOUR RIGHTS
You have the right to access, rectify, erase, restrict processing, object to processing, request data portability where
applicable, withdraw consent and lodge a complaint with the Information Commissioner’s Office (ICO). Requests
should be sent to info@midcore.co.uk
12. AUTOMATED DECISION MAKING
Midcore does not make decisions based solely on automated processing producing legal or similarly significant
effects. Credit reference checks are only one factor in wider decision making.
13. IS PROVIDING PERSONAL INFORMATION MANDATORY?
Some information is required to enter into contracts, deliver services, comply with legal obligations, verify identity
and carry out credit assessments where appropriate. Failure to provide necessary information may prevent us from
entering into or continuing a contractual relationship.
14. INFORMATION SECURITY
We maintain appropriate technical and organisational measures including access controls, password protection,
encryption where appropriate, secure storage, staff training and regular security reviews.
15. COMPLAINTS
If you are unhappy with how we process your personal data, please contact us first. You also have the right to
complain to the Information Commissioner’s Office (ICO), Wycliffe House, Water Lane, Wilmslow, Cheshire, SK9
5AF. Telephone: 0303 123 1113. Website: https://ico.org.uk
16. CHANGES TO THIS PRIVACY POLICY
We may update this Privacy Policy from time to time. The latest version will always be available from Midcore
Security & Facility Management.
17. POLICY REVIEW
This policy will be reviewed annually or sooner if there are changes in legislation, working practices, or business
operations.
Approved
Muhammad Imran
Managing Director
MIDCORE SECURITY & FACILITY MANAGEMENT
This policy is reviewed on 01 – 09 – 2025 and will be reviewed annually or sooner if required by
changes in legislation or business operations.




