[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"doc-detail-164980-en":3,"doc-seo-164980-105":31,"detail-sidebar-cat-1-en-105":92},{"code":4,"msg":5,"data":6},0,"success",{"doc_id":7,"user_id":8,"nickname":9,"user_avatar":10,"doc_module":11,"category_id":12,"category_name":13,"doc_title":14,"doc_description":15,"doc_content":16,"file_id":17,"file_url":18,"file_type":19,"file_size":20,"view_count":21,"is_deleted":4,"is_public":11,"is_downloadable":11,"audit_status":11,"page_count":22,"language":23,"language_code":24,"site_id":25,"html_lang":24,"table_of_contents":26,"faqs":27,"seo_title":28,"seo_description":15,"update_tm":29,"read_time":30},164980,549768702563,"Fahsai","https://ap-avatar.wpscdn.com/avatar/8000c4aa63b76e948b?x-image-process=image/resize,m_fixed,w_180,h_180&k=1786536092046926083",1,158,"General","Template Data Protection Policy - v1.0 - Policy summary","Data Protection Policy sets out how [insert name of organisation] embeds personal data protection as both a legal requirement and a moral responsibility. The policy establishes compliance commitments under UK data protection and related legislation, defines purpose and scope, and outlines principles for lawful, fair, and transparent processing. It addresses risk minimisation, data quality and retention controls, security measures, and governance through accountability mechanisms such as privacy management and impact assessments.","[insert name of organisation]\nData Protection Policy\nPolicy summary\n\u000f\n\u0003Contents\n\u0013 TOC \\o \"1-3\" \\h \\z \\u \u0014\u0013 HYPERLINK \"file:///S:\\\\PrivateShares\\\\Record%20Centre\\\\GDPR\\\\Policies\\\\NCI%20Data%20Protection%20Policy%20v.02.docx\" \\l \"_Toc517268975\" \u0014Policy summary\t\u0013 PAGEREF _Toc517268975 \\h \u00141\u0015\u0015\n\u0013 HYPERLINK \\l \"_Toc517268976\" \u0014Introduction\t\u0013 PAGEREF _Toc517268976 \\h \u00143\u0015\u0015\n\u0013 HYPERLINK \\l \"_Toc517268977\" \u0014Purpose\t\u0013 PAGEREF _Toc517268977 \\h \u00143\u0015\u0015\n\u0013 HYPERLINK \\l \"_Toc517268978\" \u0014Scope\t\u0013 PAGEREF _Toc517268978 \\h \u00144\u0015\u0015\n\u0013 HYPERLINK \\l \"_Toc517268979\" \u0014Definitions\t\u0013 PAGEREF _Toc517268979 \\h \u00145\u0015\u0015\n\u0013 HYPERLINK \\l \"_Toc517268980\" \u0014Policy\t\u0013 PAGEREF _Toc517268980 \\h \u00145\u0015\u0015\n\u0013 HYPERLINK \\l \"_Toc517268981\" \u0014Policy Statement\t\u0013 PAGEREF _Toc517268981 \\h \u00145\u0015\u0015\n\u0013 HYPERLINK \\l \"_Toc517268982\" \u0014Responsibilities\t\u0013 PAGEREF _Toc517268982 \\h \u001412\u0015\u0015\n\u0013 HYPERLINK \\l \"_Toc517268983\" \u0014Approval and review\t\u0013 PAGEREF _Toc517268983 \\h \u001413\u0015\u0015\n\u0013 HYPERLINK \\l \"_Toc517268984\" \u0014Revision History\t\u0013 PAGEREF _Toc517268984 \\h \u001413\u0015\u0015\n\u0013 HYPERLINK \\l \"_Toc517268985\" \u0014Related policies and procedures\t\u0013 PAGEREF _Toc517268985 \\h \u001414\u0015\u0015\n\u0013 HYPERLINK \\l \"_Toc517268986\" \u0014APPENDIX 1 – Lawful bases (Article 6)\t\u0013 PAGEREF _Toc517268986 \\h \u001415\u0015\u0015\n\u0013 HYPERLINK \\l \"_Toc517268987\" \u0014APPENDIX 2 - Special category data lawful bases (Article 9; 10)\t\u0013 PAGEREF _Toc517268987 \\h \u001416\u0015\u0015\n\u0013 HYPERLINK \\l \"_Toc517268988\" \u0014APPENDIX 3 – Additional conditions for processing special category data\t\u0013 PAGEREF _Toc517268988 \\h \u001417\u0015\u0015\n\u0015\u0004\n\u000f\nIntroduction\nThe protection of personal data is enshrined in UK law, but it is also a moral responsibility that the [insert name of organisation] take seriously.  Embedding data protection within the organisation benefits the [insert name of organisation], the Church and all individuals who interact with us, by enabling uniform and consistent decision making, building a culture of awareness and responsibility, making personal data management and infrastructure more resilient; and, through transparency and accountability, instilling trust and confidence in individuals when they provide us with their data, and ensuring their rights and freedoms are upheld.\n2.\tThe [insert name of organisation] will comply with applicable legislation, including:\nData Protection Act 2018\nGeneral Data Protection Regulation 2016\nHuman Rights Act 1998, Article 8\nThe Common Law Duty of Confidence\nPrivacy and Electronic Communications Regulations 2003\nPrivacy and Electronic Communications (EC Directive) (Amendment)\nRegulations 2011\nand other regulatory requirements and applicable guidance.\nPurpose\nThe purpose of this policy is to set out the relevant legislation and to describe the steps that the [insert name of organisation] are taking to comply.  It is our policy to ensure that our compliance with the relevant legislation is clear and demonstrable at all times.\nThis policy is also intended to provide the [insert name of organisation] with measures for ensuring that risks to individuals through misuse of personal data are minimised, such as:\npersonal data being used by unauthorised individuals through poor security or inappropriate disclosure;\nindividuals being harmed by decisions made using inaccurate or insufficient data;\nindividuals being uninformed by lack of transparency leading to unlawful practice;\nthe invasion of privacy due to over-collection or over-retention of data.\nPersonal data is processed according to the following principles:\nData is processed lawfully, fairly and in a transparent manner in relation to the data subject through the provision of clear and transparent privacy notices and responses to individual rights requests.\nData is collected for specified, explicit and legitimate reasons and not further processed for different reasons incompatible with these purposes.  The [insert name of organisation] will maintain an Information Asset Register and Register of Processing Activities that will be regularly and consistently reviewed and updated. Data that can be stored and used for archiving purposes in the","cbCaibCil5xiGPpS","https://ap.wps.com/l/cbCaibCil5xiGPpS","docx",83507,3,15,"English","en",105,"# Introduction\n# Purpose\n# Scope\n# Definitions\n# Policy\n# Policy Statement\n# Responsibilities\n# Approval and review\n# Revision History\n# Related policies and procedures\n# APPENDIX 1 - Lawful bases (Article 6)\n# APPENDIX 2 - Special category data lawful bases (Article 9; 10)\n# APPENDIX 3 - Additional conditions for processing special category data","[{\"question\":\"What is the purpose of the Data Protection Policy?\",\"answer\":\"The policy defines the legislation that applies and describes the steps [insert name of organisation] takes to comply. It also sets measures to minimise risks to individuals from misuse of personal data.\"},{\"question\":\"How does the policy ensure lawful and transparent processing of personal data?\",\"answer\":\"Personal data is processed lawfully, fairly, and transparently through clear privacy notices and responses to individual rights requests. Data collection must be for specified, explicit, and legitimate reasons.\"},{\"question\":\"What accountability and security measures are required?\",\"answer\":\"The organisation demonstrates compliance by embedding privacy management, adopting relevant policies, and using Data Protection Impact Assessments for high-risk processing. Security is addressed via technical and organisational measures including access controls, risk assessments, staff training, and retention and cleansing controls.\"}]","Template Data Protection Policy - v1.0 - Policy summary | DOCX",1788164039,5,{"code":4,"msg":32,"data":33},"ok",{"site_id":25,"language":24,"slug":34,"title":14,"keywords":35,"description":15,"schema_data":36,"social_meta":87,"head_meta":89,"extra_data":91,"updated_unix":29},"template-data-protection-policy-v10-policy-summary","",{"@graph":37,"@context":86},[38,54,69],{"@type":39,"itemListElement":40},"BreadcrumbList",[41,45,49,51],{"item":42,"name":43,"@type":44,"position":11},"https://docshare.wps.com","Home","ListItem",{"item":46,"name":47,"@type":44,"position":48},"https://docshare.wps.com/template/","Template",2,{"item":50,"name":13,"@type":44,"position":21},"https://docshare.wps.com/template/general/",{"item":52,"name":14,"@type":44,"position":53},"https://docshare.wps.com/template/template-data-protection-policy-v10-policy-summary/164980/",4,{"url":52,"name":14,"@type":55,"author":56,"headline":14,"publisher":58,"fileFormat":61,"inLanguage":24,"description":15,"dateModified":62,"datePublished":63,"encodingFormat":61,"isAccessibleForFree":64,"interactionStatistic":65},"DigitalDocument",{"name":9,"@type":57},"Person",{"url":42,"name":59,"@type":60},"DocShare","Organization","application/vnd.openxmlformats-officedocument.wordprocessingml.document","2026-09-06","2026-08-31",true,{"@type":66,"interactionType":67,"userInteractionCount":21},"InteractionCounter",{"@type":68},"ViewAction",{"@type":70,"mainEntity":71},"FAQPage",[72,78,82],{"name":73,"@type":74,"acceptedAnswer":75},"What is the purpose of the Data Protection Policy?","Question",{"text":76,"@type":77},"The policy defines the legislation that applies and describes the steps [insert name of organisation] takes to comply. It also sets measures to minimise risks to individuals from misuse of personal data.","Answer",{"name":79,"@type":74,"acceptedAnswer":80},"How does the policy ensure lawful and transparent processing of personal data?",{"text":81,"@type":77},"Personal data is processed lawfully, fairly, and transparently through clear privacy notices and responses to individual rights requests. Data collection must be for specified, explicit, and legitimate reasons.",{"name":83,"@type":74,"acceptedAnswer":84},"What accountability and security measures are required?",{"text":85,"@type":77},"The organisation demonstrates compliance by embedding privacy management, adopting relevant policies, and using Data Protection Impact Assessments for high-risk processing. Security is addressed via technical and organisational measures including access controls, risk assessments, staff training, and retention and cleansing controls.","https://schema.org",{"og:url":52,"og:type":88,"og:title":14,"og:site_name":59,"og:description":15},"article",{"robots":90,"canonical":52},"index,follow",{"doc_id":7,"site_id":25},{"code":4,"msg":5,"data":93},[94,99,104,109,113,118,123,128,132],{"id":95,"doc_module":11,"doc_module_name":47,"category_name":96,"show_sort_weight":97,"slug":98},11,"Presentations",90,"presentations",{"id":100,"doc_module":11,"doc_module_name":47,"category_name":101,"show_sort_weight":102,"slug":103},12,"Resumes",80,"resumes",{"id":105,"doc_module":11,"doc_module_name":47,"category_name":106,"show_sort_weight":107,"slug":108},14,"Invoices",70,"invoices",{"id":22,"doc_module":11,"doc_module_name":47,"category_name":110,"show_sort_weight":111,"slug":112},"Posters",60,"posters",{"id":114,"doc_module":11,"doc_module_name":47,"category_name":115,"show_sort_weight":116,"slug":117},16,"Social Media",50,"social-media",{"id":119,"doc_module":11,"doc_module_name":47,"category_name":120,"show_sort_weight":121,"slug":122},17,"Forms",40,"forms",{"id":124,"doc_module":11,"doc_module_name":47,"category_name":125,"show_sort_weight":126,"slug":127},18,"Letters",30,"letters",{"id":129,"doc_module":11,"doc_module_name":47,"category_name":130,"show_sort_weight":30,"slug":131},21,"Paper Templates","papers-templates",{"id":12,"doc_module":11,"doc_module_name":47,"category_name":13,"show_sort_weight":4,"slug":133},"general-158"]