What are the data protection implications of holding Covid-19 health data?
The ICO is providing new guidance to organisations regarding data protection and coronavirus, which can be accessed here: https://ico.org.uk/for-organisations/data-protection-and-coronavirus/
Information about the Covid-19 health status of individuals is special category data under the GDPR. This means it is high risk which has implications for how you use it, store it and keep it secure.
You will already hold health data about your employees as this is necessary to provide a safe, accessible place to work and to make reasonable adjustments to the workplace. You now need to make sure that the information you gather about your employees, visitors to your sites, customers and suppliers about Covid-19 is processed in accordance with data protection laws.
Related FAQs
Where a lender requires a EWS1 as part of the mortgage requirements for a flat this will apply regardless of its tenure and will therefore apply to applicable RTB properties. It may also be required in order to obtain a valuation for the disposal notices and issues in obtaining it could cause problems in serving this within relevant deadlines required by legislation.
The government has also confirmed it will match donations to the National Emergencies Trust as part of the BBC’s Big Night In fundraiser on 23 April – pledging a minimum of £20 million.
Yes, if there is a contractual right to do so. Furloughed employees who start work with another employer during this time must inform HMRC that they have another job.
The Information Commissioner’s Office (ICO) announce new guidance in light of coronavirus.
The ICO is providing new guidance to organisations regarding data protection and coronavirus, which can be accessed here: https://ico.org.uk/for-organisations/data-protection-and-coronavirus/
The ICO has stated the following:
“Data protection is not a barrier to increased and different types of homeworking. During the pandemic, staff may work from home more frequently than usual and they can use their own device or communications equipment. Data protection law doesn’t prevent that, but you’ll need to consider the same kinds of security measures for homeworking that you’d use in normal circumstances.”
Whether you work from home or in the office, you still need to comply with data protection laws. While you need to process personal data with the same care you use in the office, the home working environment throws up specific data protection concerns particularly in respect of data security. You should make sure you have a home working policy which deals with data protection and these data security issues.
Organisations must ensure that, for staff who can work from home, their obligations in respect of processing personal data are clearly communicated. Organisations may already have a home working policy – if this is the case, then this should be reviewed to ensure it remains relevant and up-to-date for practices during this pandemic.
If you have obtained a Grant of Probate or Grant of Letters of Administration there should be no need to complete an indemnity, merely an account closure form. If however you have not yet obtained a Grant but the bank is willing to release funds then they will generally require an indemnity to be executed. Several banks and building societies including Barclays, Lloyds, HSBC and Santander have signed up to the British Banking Association’s voluntary Bereavement Principles, one of which is to support the bereaved according to their personal needs and work with you to resolve everything as quickly as possible.
If the indemnity requires a solicitor to act as a witness, you should contact the bank to see what they are willing to do to get around the problem, given the current situation.