Mosaic Church uses personal data about living individuals for the purpose of general church administration, pastoral care and communication.
Mosaic Church recognises the importance of the correct and lawful treatment of personal data. All personal data, whether it is held on paper, on computer or other media, will be subject to the appropriate legal safeguards as specified in the General Data Protection Regulation 2018.
Mosaic Church adheres to the eight principles of the GDPR. These principles specify the legal conditions that must be satisfied in relation to obtaining, handling, processing, transportation and storage of personal data. Employees and any others who obtain, handle, process, transport and store personal data for Mosaic Church must adhere to these principles.
The principles require that personal data shall:
Mosaic Church will treat all your personal information as private and confidential and not disclose any data about you to anyone other than the leadership and ministry overseers/co-coordinators of the church in order to facilitate the administration and day-to-day ministry of the church.
All Mosaic Church staff and volunteers who have access to Personal Data will be required to agree to sign a Data Protection Policy.
There are four exceptional circumstances to the above permitted by law:
Mosaic Church will use your data for three main purposes:
N.B. although collated church data may be passed to a third party, such as number of small groups or small group’s attendance, no personal data will be disclosed.
Mosaic Church has a legitimate interest that you are:
We understand our responsibility to protect each individual’s interests. We have checked that our processing is necessary and there is no less intrusive way to achieve the results. We only use individual’s data in ways they would reasonably expect, and we do not use people’s data in ways in which they would find intrusive or cause harm. If we process children’s data, we take extra care to make sure we protect their interests.
Information contained on the database will not be used for any other purposes than set out in this section. The database is accessed through the cloud and therefore, can be accessed through any computer or smart device with internet access. The server for the database is securely encrypted, it is in the UK and hosted by Churchsuite.
When giving to Mosaic Church, we are legally obligated to store finance records for 9 years. We will process and store your finance records securely. Financial information is held and processed on a password protected computer by members of the finance team.
The only time that we will share your finance records is through the gift aid recovery scheme, operated by HMRC.
Employees and other subjects of personal data held by Mosaic Church have the right to access any personal data that is being held in certain manual filing systems. This right is subject to certain exemptions: Personal Information may be withheld if the information relates to another individual.
Any person who wishes to exercise this right should make the request in writing to Mosaic Church, using the standard letter which is available online from www.ico.gov.uk
If personal details are inaccurate, they can be amended upon request, or changed via Church Suite.
Mosaic Church aims to comply with requests for access to personal information as quickly as possible, but will ensure that it is provided within 30 days of receipt of a completed form unless there is good reason for delay. In such cases, the reason for delay will be explained in writing to the individual making the request.