Data
Protection Act
If you store data
about individuals: employees, customers, the public, then European business
are required to comply with the Data Protection Act. This law applies
whether you are on the web or not.
The laws are similar
across the European Community, and in the UK, requires businesses to
register with the Data Protection Commissioner, and comply with the
regulations.
In particular:
-you must state
what you do with the data (and stick to it)
-you should not
export the data outside the EC without the subjects permission
-you must keep the
data secure, reveal it and delete it, if requested by the subjects
These obligations
are straightforward and the cost of registration is small. You can find
full information and apply online at the Data
Protection Register.
If you are collecting
your information from your customers, and you are registered, then it
may help you to make this point clear on you web site.