Home / Data Protection Policy

Legal

Data Protection Policy

This practice's approach to UK data protection compliance.

Framework

This practice processes personal data in accordance with the UK General Data Protection Regulation and the Data Protection Act 2018.

Data Controller

For engagements with the practice, Devi Gurung acts as the data controller in respect of personal data provided by clients.

Purposes Of Processing

Personal data is processed to deliver agreed services, to communicate about engagements, to meet legal and regulatory obligations, and to maintain proper accounting records.

Data Minimisation

Only the personal data reasonably required to deliver the agreed services is collected and retained.

Security Measures

Appropriate technical and organisational measures are in place to protect personal data against unauthorised access, alteration, disclosure or destruction.

Data Subject Rights

Clients and other individuals may exercise their statutory rights of access, rectification, erasure, restriction, portability and objection by contacting the practice in writing.

Breach Notification

Personal data breaches likely to result in a risk to individuals will be reported to the Information Commissioner's Office within the required timeframe, and affected individuals will be informed where legally required.

Last updated: 14 July 2026 · AccuLedger Solutions is independently owned and operated by Devi Gurung as a Sole Trader in the United Kingdom.