Uhubs maintains a comprehensive set of data governance policies and procedures. These documents cover all aspects of data management, ensuring alignment with applicable laws such as GDPR. Policies are established, documented, approved, communicated, enforced, evaluated, and maintained to meet high standards of data protection.
Use our robust data classification system to categorize data based on sensitivity and importance. This process ensures appropriate protection measures are applied to different data types.
Prioritize encryption for sensitive data and enforce strict access controls. This ensures confidentiality and limits access to authorized personnel.
Adopt a 'data-minimization' policy, storing the minimum amount of personal data necessary for service operation. Utilize techniques such as hashing, anonymization, and pseudo-anonymization to mitigate the impact of potential breaches.
Maintain internal, technical documentation for all key systems and data pipelines (i.e. in JIRA). Regular updates to this documentation ensure a current and accurate understanding of our data architecture.
Uhubs's Data Protection Officer (DPO) holds ultimate responsibility for data governance. The DPO ensures compliance with relevant data protection laws, oversees data protection impact assessments, and acts as a central point for data-related matters.
Under GDPR, Uhubs acknowledges users' rights, including data retention policies. Users can request a copy of their data or request deletion by emailing support@uhubs.co.uk. We commit to prompt and compliant responses to such requests.
Uhubs stores personal data, including but not limited to names, emails, job titles, performance reviews, manager, and business metrics including but not limited to sales metrics, CRM data, sales activity data, call data, deal data, and calendar data. This data is vital for enhancing the user experience and improving sales team performance.
Our DPIA considers the following criteria:
Uhubs employs a systematic DPIA framework involving:
Uhubs engages with sub-processors based on principles of transparency, security, and legal compliance. Sub-processors are selected following thorough assessments of their ability to meet our data protection standards. Clear contractual agreements outline responsibilities and compliance requirements for sub-processors.

Uhubs places a strong emphasis on the regular review and update of the policy. An annual review process will be in place to assess the plan's alignment with the evolving environment. This commitment ensures that the policy remains current, adaptable, and effective in addressing emerging challenges and maintaining adherence.