PJK Locksmith

07702 706 514

07702 706 514

PJK Locksmith

Privacy Policy

Privacy Policy for PJK Locksmith Ltd

Last updated: 20 August 2026


1. Introduction

PJK Locksmith Ltd ("we", "us", or "our") is committed to protecting your privacy and ensuring the security of your personal data. This privacy policy explains how we collect, use, and safeguard your information when you visit our websites at www.pjklocksmith.co.uk and www.pjklocksmith.com, or when you use our mobile locksmith services.

We take our data protection obligations seriously and comply with the UK General Data Protection Regulation (UK GDPR) and the Data Protection Act 2018. This policy is written in clear, accessible language to ensure you understand how your information is handled.


2. Who We Are (Data Controller)

Company name: PJK Locksmith Ltd  

Registered address: 11 Birtrick Drive, Meopham, Gravesend. Kent, N/A DA13 0LR  

Company number: 17359125  

Contact email: info@pjklocksmith.co.uk  

Contact phone: 07702 706 514  

Website: www.pjklocksmith.co.uk | www.pjklocksmith.com

We are the data controller responsible for your personal data under UK GDPR and the Data Protection Act 2018. This means we determine the purposes and means of processing your personal data.

If you need to contact our data protection lead (if applicable), use the contact details above.


3. What Personal Data We Collect

We may collect, store, and use the following categories of personal data:

Information you provide directly:

Identity data: Name, title

Contact data: Email address, phone number, postal address, property address where locksmith services are provided

Transaction data: Details of services requested, dates and times of service, payment information (processed securely via our payment provider), invoices and receipts

Communication data: Records of emails, phone calls, text messages, or other communications exchanged with us

Service-specific data: Details of locks, security systems, or access control systems we work on (where relevant to providing the service)

Information collected automatically:

Technical data: IP address, browser type and version, time zone setting, browser plug-in types, operating system and platform, device information

Usage data: Information about how you use our website, including pages viewed, time spent on pages, clickstream data, and navigation paths

Cookie data: Information collected through cookies and similar tracking technologies (see Section 10 and our separate Cookie Policy for details)

Special category data:

We do not routinely collect special category data (such as information about your health, ethnicity, religion, or biometric data). In rare circumstances where such data may be incidental to providing emergency locksmith services, we will handle it with extra care and only process it where necessary to provide the service you have requested.


4. How and Why We Use Your Data (Lawful Basis)

We will only use your personal data when the law allows us to. Under UK GDPR, we rely on the following lawful bases for processing:

Purpose Lawful Basis Data Used

Providing locksmith services and responding to service requests Contractual necessity (Article 6(1)(b) UK GDPR) Name, contact details, property address, service details

Processing payments for services Contractual necessity (Article 6(1)(b)) and legal obligation (Article 6(1)(c)) Payment information, transaction records

Communicating with you about your service request, including appointment confirmations and follow-ups Contractual necessity (Article 6(1)(b)) Contact details, communication records

Maintaining records for accounting, tax, and regulatory purposes Legal obligation (Article 6(1)(c)) Transaction data, contact details, invoices

Sending service updates, appointment reminders, or follow-up communications about your service Legitimate interests (Article 6(1)(f)) Contact details

Website analytics and improvement to enhance user experience Legitimate interests (Article 6(1)(f)) Technical and usage data

Marketing communications about our services (only with your explicit consent) Consent (Article 6(1)(a)) Email address, name

Fraud prevention, security, and protecting our legal rights Legitimate interests (Article 6(1)(f)) Contact details, transaction data, IP address, communication records

Responding to legal requests or regulatory requirements Legal obligation (Article 6(1)(c)) Relevant data as required

Our legitimate interests include:

Operating our business efficiently and effectively

Providing quality customer service and maintaining customer relationships

Preventing fraud and protecting the security of our services

Improving our website, services, and customer experience

Maintaining security of our systems and data

Managing our business records and complying with industry standards

Where we rely on legitimate interests, we have assessed that these interests are not overridden by your rights and freedoms. You have the right to object to processing based on legitimate interests (see Section 8).


5. Who We Share Your Data With

We do not sell your personal data to third parties. We may share your data with the following categories of recipients:

Payment processors: To process payments securely (e.g., Stripe, PayPal, Square, or other payment gateway providers)

Website hosting and analytics providers: To operate, maintain, and analyse website performance (e.g., hosting company, Google Analytics, cloud storage providers)

Email and communication platforms: To manage customer communications (e.g., email service providers, SMS platforms)

Accounting and bookkeeping software providers: For financial record-keeping and tax compliance (e.g., Xero, QuickBooks, FreeAgent)

Professional advisers: Including lawyers, accountants, auditors, and insurers where necessary for legal, financial, or insurance purposes

Law enforcement or regulatory bodies: Where required by law, court order, or to protect our legal rights, property, or safety

Subcontractors or associates: Where we engage trusted subcontractors to assist with locksmith services (only where necessary and with appropriate data protection safeguards)

All third parties are required to:

Respect the security of your personal data

Treat it in accordance with UK data protection law

Only process it for specified purposes in line with our instructions

Implement appropriate technical and organisational security measures

We do not allow our third-party service providers to use your personal data for their own purposes. We have data processing agreements in place where required by UK GDPR.


6. International Data Transfers

Some of our third-party service providers may be based outside the UK (for example, in the United States or European Economic Area). Where we transfer your personal data outside the UK, we ensure appropriate safeguards are in place to protect your data, such as:

Transfers to countries with UK adequacy decisions (countries the UK government has determined provide adequate data protection)

UK International Data Transfer Agreement (IDTA) with the recipient

EU Standard Contractual Clauses with UK Addendum

Binding Corporate Rules (where applicable)

Other legally approved transfer mechanisms

You can contact us using the details in Section 2 to request a copy of the specific safeguards we use for international transfers.


7. How Long We Keep Your Data

We retain personal data only for as long as necessary to fulfil the purposes for which it was collected, including for legal, accounting, tax, or regulatory reporting requirements.

Data Category Retention Period Reason

Customer service records 6 years from last service Contractual, legal, and tax requirements

Transaction and payment records 6 years from transaction date HMRC requirements ( VAT, corporation tax, income tax)

Website analytics data 26 months from collection Google Analytics default retention; legitimate interests

Marketing communications data Until you unsubscribe or 2 years from last engagement Consent or legitimate interests

Enquiry records (where no service was provided) 2 years from enquiry date Legitimate interests for follow-up

Communication records (emails, messages) 6 years from last communication Contractual and legal requirements

Website technical logs (IP addresses, etc.) 12 months Security and legitimate interests

After these retention periods expire, data is securely deleted, destroyed, or anonymised so it can no longer be linked to you.

In some cases, we may retain data for longer periods where required by law, or where necessary for legal claims or regulatory investigations.


8. Your Rights Under UK GDPR

Under UK data protection law, you have the following rights in relation to your personal data:

Right of access (Article 15): Request a copy of the personal data we hold about you, along with information about how we process it

Right to rectification (Article 16): Request correction of inaccurate or incomplete data about you

Right to erasure (Article 17): Request deletion of your personal data in certain circumstances (also known as the "right to be forgotten")

Right to restrict processing (Article 18): Request limitation of how we use your data in certain circumstances

Right to data portability (Article 20): Request transfer of your data to another organisation in a structured, commonly used, machine-readable format

Right to object (Article 21): Object to processing based on legitimate interests, public task, or direct marketing

Right to withdraw consent (Article 7): Withdraw consent at any time where we rely on consent for processing (this does not affect the lawfulness of processing before withdrawal)

Right to lodge a complaint (Article 77): Complain to the Information Commissioner's Office (ICO) if you believe we have not complied with data protection law (see Section 14)

How to exercise your rights

To exercise any of these rights, contact us using the details in Section 2. Please specify which right you wish to exercise and provide sufficient information to identify you.

We will respond to your request within one month of receipt. For complex or numerous requests, we may extend this period by up to two further months, but we will inform you within one month if this is necessary.

We do not charge a fee for exercising your rights, unless your request is clearly unfounded, repetitive, or excessive. In such cases, we may charge a reasonable fee or refuse to act.


9. Data Security

We implement appropriate technical and organisational measures to protect your personal data against unauthorised or unlawful processing, accidental loss, destruction, damage, alteration, disclosure, or access. These measures include:

Technical measures:

Secure website with SSL/TLS encryption (HTTPS)

Password-protected systems with strong authentication requirements

Access controls ensuring only authorised personnel can access personal data

Regular software updates, security patches, and vulnerability management

Encryption of data in transit and at rest where appropriate

Regular security monitoring and logging

Secure backup and disaster recovery procedures

Organisational measures:

Staff training on data protection and information security

Confidentiality obligations for all employees and contractors

Data protection policies and procedures

Regular review and updating of security measures

Incident response procedures for data breaches

Due diligence and contracts with third-party processors

While we take all reasonable precautions to protect your personal data, no method of transmission over the internet or electronic storage is 100% secure. We cannot guarantee absolute security, but we continually work to improve our security practices.

If we become aware of a personal data breach that is likely to result in a risk to your rights and freedoms, we will notify you and the ICO as required by law.


10. Cookies and Tracking Technologies

Our websites use cookies and similar tracking technologies to enhance user experience, analyse website traffic, and improve our services.

What are cookies?

Cookies are small text files stored on your device when you visit a website. They help websites remember information about your visit, making it easier to use the site and more relevant to you.

Types of cookies we use:

Essential cookies: Required for basic website functionality, such as security, network management, and accessibility. These cannot be disabled.

Analytics cookies: Help us understand how visitors use our website (e.g., which pages are most popular, how long visitors stay). We use this information to improve our website. Example: Google Analytics.

Functionality cookies: Allow the website to remember choices you make (such as your language or region) to provide enhanced, more personalised features.

Marketing cookies (if applicable): Used to track visitors across websites to display relevant advertisements. We do not currently use marketing cookies, but this may change in future.

Cookie consent

Where required by the Privacy and Electronic Communications Regulations (PECR), we will ask for your consent before placing non-essential cookies on your device. You can manage your cookie preferences through our cookie consent banner or your browser settings.

Managing cookies

You can control and/or delete cookies through your browser settings. Most browsers allow you to:

See what cookies are stored and delete them

Block third-party cookies

Block cookies from particular websites

Block all cookies from being set

Delete all cookies when you close your browser

Please note that blocking or deleting cookies may affect the functionality of our website.

For more detailed information about the cookies we use, see our separate Cookie Policy.


11. Automated Decision-Making and Profiling

We do not use automated decision-making or profiling that produces legal effects concerning you or similarly significantly affects you.

All decisions about providing services, processing payments, or handling customer communications are made by human staff members.


12. Children's Privacy

Our services are not directed to individuals under 18 years of age, and we do not knowingly collect personal data from children.

If we become aware that we have collected personal data from a child without parental consent, we will take steps to delete that data as soon as possible.

If you are under 18, please do not provide us with any personal data without the consent of a parent or guardian.


13. Links to Other Websites

Our website may contain links to third-party websites (for example, suppliers, partners, or social media platforms). This privacy policy applies only to our websites and services.

When you click on links to other websites, you will be subject to their privacy policies. We encourage you to read the privacy policies of any website you visit.

We are not responsible for the privacy practices or content of third-party websites.


14. How to Make a Complaint

You have the right to lodge a complaint with the Information Commissioner's Office (ICO) if you are concerned about how we handle your personal data or believe we have not complied with data protection law.

Information Commissioner's Office  

Wycliffe House, Water Lane  

Wilmslow, Cheshire SK9 5AF  

United Kingdom  

Website: www.ico.org.uk  

Helpline: 0303 123 1113  

Email: icocasework@ico.org.uk

However, we encourage you to contact us first using the details in Section 2 so we can address your concerns directly and resolve any issues promptly.


15. Changes to This Privacy Policy

We may update this privacy policy from time to time to reflect changes in our business practices, legal requirements, or regulatory guidance.

When we make changes, we will:

Update the "Last updated" date at the top of this policy

Post the updated version on our websites at www.pjklocksmith.co.uk and www.pjklocksmith.com

Where appropriate, notify you of significant changes by email or via a notice on our website

We encourage you to review this privacy policy periodically to stay informed about how we protect your data.


16. Contact Us

If you have any questions, concerns, or requests about this privacy policy or our data protection practices, please contact us:

Email: info@pjklocksmith.co.uk  

Phone: 07702 706 514  

Post: PJK Locksmith Ltd, 11 Birtrick Drive, Meopham, Gravesend. Kent, N/A DA13 0LR

We welcome your feedback and are committed to addressing any concerns you may have about your privacy.


17. Additional Information for UK Users

This privacy policy is intended to comply with:

UK General Data Protection Regulation (UK GDPR)

Data Protection Act 2018

Privacy and Electronic Communications Regulations (PECR) 2003

For more information about data protection in the UK, visit the ICO website: www.ico.org.uk


This privacy policy was last reviewed and updated on 20 August 2026.


Copyright © 2026 PJK Locksmith - All Rights Reserved.

  • Privacy Policy

This website uses cookies.

We use cookies to analyze website traffic and optimize your website experience. By accepting our use of cookies, your data will be aggregated with all other user data.

DeclineAccept