Last updated:
1. Introduction
myPDI ("we", "our", "us") is committed to protecting your privacy and complying with the UK General Data Protection Regulation (UK GDPR) and the Data Protection Act 2018.
This Privacy Policy explains how we collect, use, store, and protect your personal information when you use our services.
2. Data Controller
myPDI
If you have any questions about this policy or how we handle your data, please contact us at: [Your contact email]
3. What Information We Collect
3.1 Information You Provide
- Account Information: Username, email address, full name, date of birth (if provided)
- Profile Information: Role (PDI or Trainer), training history, qualifications
- Lesson Information: Reflective logs, lesson plans, learner driver names, skills and topics covered
- Communication Data: Any correspondence with us
3.2 Information We Collect Automatically
- Usage Data: Login times, pages visited, features used
- Technical Data: IP address, browser type, device information
- Cookies: Session cookies for authentication (essential cookies only)
4. Legal Basis for Processing
We process your personal data under the following legal bases:
- Contract Performance: To provide our services and manage your account
- Legal Obligation: To comply with legal requirements for driving instruction records
- Legitimate Interests: To improve our services and maintain security
- Consent: For marketing communications (if you opt in)
5. How We Use Your Information
- To provide and maintain our training platform
- To track PDI progress and competency development
- To facilitate trainer-PDI relationships and observations
- To generate reports and analytics for training purposes
- To communicate with you about your account and services
- To comply with legal and regulatory requirements
- To improve our services and develop new features
6. Data Sharing and Disclosure
We do not sell your personal data. We may share your information with:
- Your Assigned Trainer: If you are a PDI, your trainer can view your progress and logs
- Service Providers: Hosting providers, email services (under strict data processing agreements)
- Legal Authorities: If required by law or to protect rights and safety
7. Data Retention
We retain your personal data for as long as necessary to provide our services and comply with legal obligations:
- Account Data: Until you request deletion or 3 years of inactivity
- Training Records: 7 years (in compliance with DVSA requirements)
- Financial Records: 6 years (for tax purposes)
8. Your Rights Under UK GDPR
You have the following rights:
- Right to Access: Request a copy of your personal data
- Right to Rectification: Correct inaccurate or incomplete data
- Right to Erasure: Request deletion of your data (subject to legal requirements)
- Right to Restrict Processing: Limit how we use your data
- Right to Data Portability: Receive your data in a machine-readable format
- Right to Object: Object to processing based on legitimate interests
- Right to Withdraw Consent: Withdraw marketing consent at any time
To exercise these rights, visit your GDPR Settings page or contact us.
9. Data Security
We implement appropriate technical and organizational measures to protect your data:
- Secure HTTPS encryption for data transmission
- Password hashing and secure authentication
- Regular security updates and monitoring
- Access controls and user permissions
- Regular backups with encryption
10. Cookies
We use essential cookies only to maintain your session and authentication. These cookies are necessary for the platform to function and do not track your activity across other websites.
You can manage cookie settings in your browser, but disabling cookies may affect platform functionality.
11. International Transfers
Your data is stored and processed within the United Kingdom. If we transfer data internationally, we ensure appropriate safeguards are in place.
12. Children's Privacy
Our services are intended for users aged 18 and over. We do not knowingly collect data from children under 18.
13. Changes to This Policy
We may update this Privacy Policy from time to time. We will notify you of significant changes by email or prominent notice on our platform.
14. Contact and Complaints
If you have questions or concerns about this Privacy Policy or our data practices:
Email: [Your contact email]
You also have the right to lodge a complaint with the Information Commissioner's Office (ICO):
Website: https://ico.org.uk
Helpline: 0303 123 1113