Preparing for April 2021 – what do you need to do?
- Audit
- Identify your off-payroll contractors
- Determine the status of off-payroll contractors
- CEST – HMRC employment status checker for tax purposes
- Communication – liaise with affected workforce
- Contracts – get them compliant
- Consider the Ward Hadaway toolkit
Related FAQs
CMA guidance suggests that it will not take enforcement action in respect of agreements which:
- Are appropriate and necessary to avoid a shortage, or ensure security, of supply
- Are clearly in the public interest
- Contribute to the benefit or wellbeing of consumers
- Deal with critical issues that arise as a result of the Covid-19 pandemic
- Last no longer than is necessary to deal with these critical issues
Data on properties, and people, has never been more important.
Given that compliance is at risk here, such a decision must be made by the Board to ensure good governance. Board approval should be sought and recorded for the approach the organisation is taking.
It is essential that you continue to record your data on compliance and report to your board at all times, and that there is a clear audit trail for issues with access, and if appropriate to the Regulator. Access issues as a result of self-isolation should be readily identifiable.
Operatives need to be provided with the tools to operate in as safe a way as possible:
- Checklist of questions to ascertain occupant’s current health
- Protective equipment (masks, gloves, over clothing)
The Gas Safe website is a useful resource for updates: https://www.gassaferegister.co.uk/help-and-advice/covid-19-advice-and-guidance/
The Act should make it easier for residents to obtain relevant information. It includes an obligation for the Principal Accountable Person to prepare a strategy for promoting the participation of residents, including the information to be provided to them and consultations about relevant decisions. The strategy must be provided to residents, and there will be provision for residents to be able to request information and copies of documents from the Principal Accountable Person. The type of information and the form in which it is to be provided will be set out in secondary legislation in due course, but the explanatory notes anticipate that it will include:
- Full current and historical fire risk assessments•Planned maintenance and repair schedules
- The outcome of building safety inspection checks
- Information on how assets in the building are managed
- Details of preventative measures
- Details of fire protection measures and the fire strategy for the building
- Information on the maintenance of fire safety systems
- Structural assessments
- Planned and historical changes to the building
Where one or more of the parties is represented, responsibility for making the arrangements for the remote hearing will fall on either the applicant or the first represented party. If no party is legally represented, the court office will contact the parties to explain that the hearing will be held by telephone conference and will send them instructions on how this is to be achieved.
All remote hearings must be recorded. The responsibility for arranging the recording will be addressed on a case by case basis.
Employers will be collecting and sharing health information. Health information is sensitive and higher data protection standards apply. Here are a few key pointers.
- Update privacy notices to cover the new collection and sharing of employees’ information and provide these to the workforce. Be transparent and fair.
- Identify the legal basis and condition for use of this information and put any required paperwork in place. The ICO guidance will help. For some conditions such as the employment condition, an Appropriate Policy Document (APD) will be required. The ICO has an APD template.
- Only use the information for the purpose of managing the workforce during the pandemic.
- Only collect or share information if it’s necessary – if it’s a targeted and proportionate way of achieving your purpose.
- Make sure any health information collected and shared is accurate – there may be serious consequences if it’s not.
- Work out how long the information must be kept for. Keep a record of that period and act on it at the appropriate time.
- Security is very important – there may be malicious actors trying to trick employers and employees. Make sure employees know how to identify a genuine NHS Test and Trace contact. Keep the information secure. Use the ICO’s data sharing checklists** and keep a record of the disclosures made and why. Control external disclosures – only certain authorised members of staff should make them.
- Make sure individuals can still exercise their data protection rights – that’s also very important. Keep data protection records up-to-date and ensure any exports of personal information outside the UK are compliant.
- Before introducing employer-led testing like taking temperatures, thermal imaging or other potentially intrusive tests, work out if a data protection impact assessment (DPIA) is required. It will be if the intended processing is ‘high risk’. If it is, then carry out a full DPIA. It will help address the issues systematically and mitigate risks.
- All this demonstrates ‘accountability’ – it shows affected individuals and the ICO that the employer is complying with data protection requirements.
If you need further help, please visit the ICO’s data protection and coronavirus information hub or ask our data protection team.
** Please note that this link is to the ICO’s existing checklists and data sharing code of practice. We will update the link to the ICO’s new checklists after they are published.