Privacy Policy
Key Details
This privacy policy describes how the BASO ~ The Association for Cancer Surgery (BASO ~ ACS) protects and makes use of the information given by its members and event delegates. This policy has been updated to incorporate the General Data Protection Regulation (GDPR) in May 2018. The principles of GDPR build on the existing Data Protection Act 1998 (DPA) but the obligations are more extensive. This policy will set out what the BASO~ACS are doing to comply with the GDPR.
The BASO~ACS is committed to maintaining high standards of security and confidentiality for information in our custody and control. Safeguarding this information is critical to the successful operation of the BASO~ACS. The
BASO~ACS will treat all information in its care and control with the same degree of security and confidentiality and this policy applies to all organisations within BASO~ACS and all of its employees.
BASO ~ The Association for Cancer Surgery (BASO ~ ACS) & The Association of Breast Surgery (ABS) have been separate organisations since 2010. Prior to that time, the ABS was a branch of BASO ~ ACS. A service agreement has been in place to formalise the shared aspects of the administration of the two Associations. This included a joint database for membership and events and a shared office. However, neither Association uses the
membership or event delegate information of the other Association to contact individuals. From May2021 onwards, both Associations now maintain an independent database and office. Since May 2020 the two Associations have no longer shared a database. The BASO~ACS database now holds information relating to past and current BASO~ACS members and those individuals who have attended BASO~ACS conferences and events (including joint conferences with ABS). Every attempt has been made to ensure that the BASO~ACS no longer holds any data for anyone who has never been a member of the BASO (or ABS at BASO or BASO Breast Group) or attended a BASO (or ABS at BASO or BASO Breast Group) conference or event. However due to the database having been shared with ABS for many years and because of the historic way in which individuals joined the BASO, ABS at BASO or BASO Breast Group there may be some data retained that applies to ABS. If any such data is found it will be deleted. In May 2020 the two Associations also separated off their servers, which were previously shared. Again every attempt has been made to ensure that neither Associations holds data which is not relevant to them. However due to how the Associations were historically run it is possible that some data may have been retained. The BASO~ACS undertakes not to use this data and to destroy any such data that is found. The two Associations undertake to ensure that neither Association uses the membership or event delegate information of the other Association in order to contact individuals and that they respect the data of each other’s Association whilst they continue to share an office space.
This policy is updated from time to time. The latest version is published on this page. This privacy notice was updated on: 24th November 2021.
For queries in relation to BASO ~ The Association for Cancer Surgery’s privacy policy please e-mail admin@baso.org.uk or write to BASO ~ The Association for Cancer Surgery, at the Royal College of Surgeons of England, 38 – 43 Lincoln’s
Inn Fields, London, WC2A 3PE.
Introduction
BASO ~ The Association for Cancer Surgery is committed to protecting the privacy of and maintaining the security of any personal information received from its members and event delegates. BASO~ACS adheres to the requirements of data protection legislation in the UK. BASO~ACS gather and use certain data to provide relevant information and store key data with regards our membership and event delegates. We also collect data to understand better how visitors use our websites and to present timely, relevant information to them.
What Data We Gather on our Members
We collect the following information from our members:
- Name and Job Title
- CV
- Contact information including e-mail addresses
- Demographic information, such as postcode, hospital region, deanery
- Website usage data
- Bank details
- Event registration information
- GMC Number
- Correspondence between the individual member and the Association Collecting this data helps us understand and identify our members, enabling us to deliver improved membership services. The BASO~ACS specifically uses the data for:
- Our own internal records
- Contacting you with a response to a specific enquiry
- Sending updates on events, BASO Grants and information we think might be relevant for our members
- Sending information about conferences, meetings and courses being run by the Association and their partners
- Sending updates in relation to the Association including details on how to vote for regional representatives and Trustee posts
- Sharing relevant information with ESSO (European Society of Surgical Oncology) for the sole purpose of setting up affiliate membership
- Sharing relevant information with EJSO (European Journal of Surgical Oncology) for the sole purpose of setting up paper and/or electronic subscriptions
- Sharing names and email addresses with regional representatives so that they can represent the views of members in their region at BASO~ACS committee level
What Data We Gather on our Event Delegates
We collect the following information from our event delegates:
- Name and Job Title
- Contact information including a postal and e-mail addresses
- Website usage data
- Event registration information
- Correspondence between the individual delegate and the Association
Collecting this data helps us send information about any event an individual may be attending and future events, which may be of interest to them. Event delegates, who are not members of the Association, are asked to consent to receive information about future events.
Specifically, we may use data:
- For our own internal records
- To contact you with response to a specific enquiry
- To send you updated information about an event you are registered to attend
- To send you information about future events, which may be of interest to you
Please note that credit card information may be provided during online registration. Sagepay is used for the processing of these payments and no credit card information is held by the Association. Manual credit card
payments may be taken from time to time and any card details are destroyed immediately after the event.
Cookies and How We Use Them
A cookie is a small file placed on your computer’s hard drive. It enables our websites to identify your computer as you view different pages on our websites. Cookies policies are available on the website Cookie Policies page.
Links to Third Party Websites
The BASO ~ ACS websites contains links to other websites. Please note that we have no control of websites outside the domains: www.baso.org.uk. and www.baso.uk. Therefore, BASO~ACS accepts no liability for the privacy practices or content of websites that may be linked to BASO’s website. BASO~ACS provides these links to you only as a convenience and the inclusion of any link does not imply endorsement of the website by BASO~ACS. You are responsible for viewing and abiding by the privacy statements and terms of use posted on any linked sites. Always be wary when submitting data to websites and read the site’s privacy policy in full.
Controlling Information About You
When you complete a BASO ~ ACS membership application form you will be asked to:
- Opt-in to receive communications from us by email or post
- Opt-in to have your details passed to your regional representative (for applicable membership grades)
- Opt-in to have your details passed to ESSO and the EJSO (for applicable membership grades)
As a non-member delegate attending an event run by BASO~ACS you will be asked, when appropriate, to:
- Opt-in to have your name and hospital name printed on the delegate list
- Opt-in to have your name and hospital name shown on the Conference App
- Opt-in to receive information about future events run by the Association
If you have agreed that we can use your information in this way, you can change your mind by contacting us:
- Send an e-mail to admin@baso.org.uk
- Write to us at BASO ~ The Association for Cancer Surgery, at the Royal College of Surgeons of England, 38 – 43 Lincoln’s Inn Fields, London, WC2A 3PE
The BASO ~ ACS do not release your details to any organisation or external body unless we have your permission. Any personal information we hold about you is stored and processed under our data protection policy, in line with the Data Protection Act 1998 and GDPR.
“GDPR” means Regulation 2016/679 of the European Parliament and of the Council of 27 April 2016 on the protection of natural persons with regard to the processing of personal data and on the free movement of such data, and repealing Directive 95/46/EC (General Data Protection Regulation) from 25 May 2018.
Subject Access Requests
You have the right to request a copy of the data we hold about you free of charge (excessive requests by an individual for this information may attract a small admin fee). You also have the right to be forgotten if you no longer wish us to hold information about you.
Information about how to make a request is as follows:
Please contact the Data Manager either by e-mail at admin@baso.org.uk or by post at BASO ~ The Association for Cancer Surgery, at the Royal College of Surgeons of England, 38 – 43 Lincoln’s Inn Fields, London WC2A 3PE.
Requests should be titled, “Subject Access Request” and should be accompanied by proof of ID and an outline of the nature of your request, i.e. are there specific documents you wish to access or are you requesting a general search of our records. Requests will be complied with within one month.
Data Retention
For members we retain the following documents for the duration of their membership:
- Electronic copy of their membership form
- Confirmation of membership letter
- Electronic copy of their Direct Debit Mandate
- Miscellaneous correspondence received or sent to the individual member during their membership term.
When a member lapses their membership we save the digital copy of their membership form and confirmation of membership to their record on the membership database. All other paper or digital documents on file are securely destroyed.
BASO ~ ACS retain the records of lapsed members in electronic form but cease to communicate with the individual unless they have expressed otherwise. This includes a record of subscriptions paid, events attended, and delegate fees paid. It does not include any bank or credit card details.
For non-members who have attended Association events, electronic data is retained for the purpose of identifying proof of event attendance and, if consent has been obtained, for contacting individuals about future events.
Security
We will always hold your information securely. To prevent unauthorised disclosure or access to you information, we have implemented strong physical and electronic security safeguards.
We also follow stringent procedures to ensure we work with all personal data in line with the Data Protection Act 1998 and GDPR.
Breaches
BASO ~ ACS has put in place the appropriate procedures to ensure personal data breaches are detected, reported and investigated effectively. We have mechanisms in place to assess and then report relevant breaches to the ICO where the individual is likely to suffer some form of damage (e.g. through identity theft or confidentiality breach). There are also appropriate mechanisms in place to notify affected individuals where the breach is likely to result in a high risk to their rights and freedoms.
Any wilful disregard or intentional breach of the Data Protection Policy by employees shall be regarded as a disciplinary offence and handled within the BASO ~ ACS Disciplinary Procedures. Any wilful disregard or intentional breach of the Data Protection Policy by data processors (and identified data controllers in their own right) acting on ‘BASO ~ ACS’ behalf under contract shall be regarded as a breach of contract and treated as such.
Social Media
The BASO~ACS have the following social media accounts under its control:
- Twitter (X)
These social media platforms are open and any individuals wishing to follow the BASO~ACS are welcome to do so. Any user on these platforms has analytics available to them from the provider. The BASO~ACS has no additional analytics available to it.
BASO~The Association For Cancer Surgery
38-43 Lincoln’s Inn Fields
London
WC2A 3PE