02/04/2026
π Policy of the Week: GDPR & Data Protection π
At 3 Trees, protecting the privacy, dignity and rights of the people we support is not just a requirement, it is a fundamental part of delivering safe, high-quality care.
Our GDPR and Information Governance Policy ensures that all personal information is handled lawfully, securely and with respect, in line with the Data Protection Act 2018 and UK GDPR.
As care continues to become more digital, this has never been more important. From care records to communication systems, we take a proactive approach to ensuring data is:
β Secure
β Accurate
β Only used when necessary
β Handled with clear consent
Youβll often see this in action, for example, we blur faces in our social media content where consent has not been given or where individuals may not have capacity. This is a deliberate and respectful approach to protecting privacy.
Alongside this:
β’ All staff receive GDPR and confidentiality training
β’ We maintain compliance with the Data Security and Protection Toolkit (DSPT)
β’ We maintain strict awareness for data access, storage, and sharing
Importantly, consent is always explicit, informed and documented, and where individuals are unable to consent, decisions are made in their best interests in line with legislation.
This is what good governance looks like in practice - not just policies on paper, but standards embedded into everyday care.