GDPR Policy

Last updated on Mar 26, 2026

GDPR Compliance Statement

RentPanda complies with the UK General Data Protection Regulation (UK GDPR) and the Data Protection Act 2018.

1. Lawful Basis for Processing

We process data based on:

  • Contractual necessity
  • Legal obligations
  • Legitimate interests
  • User consent

2. Data Protection Principles

We follow GDPR principles:

  • Lawfulness, fairness, transparency
  • Purpose limitation
  • Data minimisation
  • Accuracy
  • Storage limitation
  • Integrity and confidentiality

3. Data Subject Rights

Users can:

  • Request access to their data
  • Request correction or deletion
  • Withdraw consent
  • Lodge complaints with ICO

4. Data Security Measures

  • Encryption and secure servers
  • Access controls and authentication
  • Regular monitoring and updates

5. Third-Party Processing

We ensure all third-party providers comply with GDPR standards.

6. International Transfers

Data may be processed outside the UK but only with appropriate safeguards.

7. Data Breach Policy

In case of a breach:

  • We will investigate immediately
  • Notify affected users where required
  • Report to ICO if necessary