Discover how we look after your data
AllPoints Fibre is a brand name of AllPoints Fibre Networks Limited (referred to below as “we”, “us” and “our”). AllPoints Fibre Networks Limited is a company incorporated in England with company registration number 03401975 and whose registered office is at 6th Floor, 33 Holborn, London EC1N 2HT.
We respect your privacy and are committed to meeting our legal obligations when it comes to protecting your personal data. Please take a moment to review the policy and understand:
The Controller for your personal data under the UK General Data Protection Regulations (GDPR) is AllPoints Fibre Networks Limited. We are registered as a controller with the UK Information Commissioner’s Office (ICO) and our registration number is Z1783240.
We update this privacy notice from time to time in response to changes in applicable laws and regulations, to our processing practices or other services we offer. When changes are made, we will update the date at the bottom of this notice. Please review this privacy notice periodically to check for updates.
Please note that this policy does not cover other organisations’ websites, apps, products, services, and social media accessed from our website. When you leave our website and/or apps, we encourage you to read the privacy notice of the websites and apps that you visit. We do not accept any responsibility or liability for the privacy policies or notices on third-party websites or apps.
Personal data refers to any information about an individual from which that person can be uniquely identified. It does not include data where the identity has been removed (which is known as anonymous data).
We collect information through various means, and for different purposes, described below.
2.1 If you are a resident or business: Information we receive directly from you if you are interested in our fibre broadband services.
2.2 If you are an Internet Service Provider or Third-Party Supplier: Information we receive directly from you in the process of providing our broadband infrastructure is described below.
2.3 If you are a landlord, landowner, or other interested individual: Information we receive directly from you in the process of building our broadband infrastructure in your area is described below.
2.4 When you apply for a job: Information we receive directly from you if you are interested in working for us is described in more detail in our job applicant privacy notice.
2.5 When you visit our website () and/or download one of our or apps, we use cookies, some of which must be stored on your device(s) (laptop, mobile phone, tablet etc.) for our website/application to function correctly. For more details see our Cookies Policy for more details.
2.6 When you visit our offices: You may be captured on digital video recording or door access control systems which we maintain for security and safety purposes.
There are many reasons why we may lawfully collect and process your personal information.
3.1 Contractual Obligations
We may process your personal information where it is necessary either to take steps at your request before entering into a contract with you for the provision of our products and/or services, or to perform our obligations under that contract. Examples of these situations include:
Where we need to collect personal data by law, or under the terms of a contract we have with you, and you fail to provide that data when requested, we may not be able to perform the contract we have or are trying to enter into with you (for example, to provide you with products or services). In this case, we may have to cancel a product or service you have with us but we will notify you if this is the case at the time.
3.2 Legal Compliance
If the law or any regulator in any competent jurisdiction requires us to, we may need to collect and process your data and also provide this to any such regulator. However, we would need to be satisfied that a request for information is lawful and proportionate and we would need appropriate assurances about security, how the information is used and how long it is kept.
We are required to consider the needs of vulnerable people. If you choose to provide us with details of a disability, health condition, vulnerability or accessibility issue (whether temporary or permanent), we will record this information securely and only use this to the extent necessary to ensure that we treat you fairly, give you any additional support that you need to communicate effectively with us and access our services, and comply with our legal and regulatory obligations.
3.3 Legitimate Interest
We may also use your personal data to pursue our legitimate interests (or those of a third party) but only in a way which might reasonably be expected as part of running our business and only where such interests are not overridden by your fundamental rights, freedoms, or interests.
We may process your personal data for the legitimate running of our business, to facilitate our internal business operations including assessing and managing risk, to manage our business and financial affairs and to protect our customers, employees and property. It is in our interests to ensure that our processes and systems operate effectively and that we can continue operating as a business.
We may also use your personal information for the legitimate interest of helping to prevent and detect crime and fraud and to prevent and detect criminal attacks on our network or against your equipment. We monitor traffic over our network, trace nuisance or malicious usage, and track malware and cyber-attacks.
3.4 Consent
In specific situations, we may collect and process your data with your consent including the following:
However, if we do so, you have the right to withdraw your consent at any time. This will not affect the lawfulness of any processing carried out before you withdraw your consent. Please note that if you do withdraw your consent, we may not be able to provide certain information, products or services to you.​
Where we share your information with third parties, they will process your information either as a data controller or as our data processor, and this will depend on the reason for our sharing your personal data with them. We will only share your personal data in compliance with the applicable data protection laws and regulatory compliance and only for the purposes set out in Section 3 of this notice.
We require all third parties with whom we share your personal data to respect the security of your personal data and to treat it in accordance with the law.
Other organisations with which we may share your information include:
4.1 Contracted Partner Companies
We may share your personal information with Partner companies with whom we have contracts for certain products and/or services. The reasons we may share your information in this way include:
4.2 Credit Reference Agencies
We may share your personal information with credit reference agencies, for example we may provide them with information about how you conduct your account with us and this information may be used by other organisations in assessing applications from you and members of your household. In addition, they will give us information about you. For example, we may search the files of a credit agency to assess creditworthiness and product suitability, check your identity, trace and recover debts, prevent criminal activity or to gather information about your financial history. This is so that we can confirm your eligibility for our products and/or services and guarantee your ability to make regular payments for such product and/or services.
We do not sell or share your personal information and/or data to or with third parties for third party direct marketing purposes.
4.3 Other third parties
We may share your personal information with the following:
The data and information that we collect and process may be transferred to, and stored at a destination outside of the UK. We will only transfer your personal data outside the UK on the basis that anyone to whom we transfer it protects your data and information in a similar way to us.
If we transfer your information to countries outside the UK, we will only do so where:
The security of your information is important to us. Any information sent to us is protected using robust security methods. The methods we use are industry-standard ensuring data is safeguarded in transit. Our security measures include:
By providing you with products or services, we create records that contain your information, and/or data such as customer account records, activity records, tax records and lending and credit account records. Records can be held on a variety of media (physical or electronic) and in several formats.
We manage our records to help us to serve our customers well and to comply with legal and/or regulatory requirements. Records help us demonstrate that we are meeting our responsibilities and provide evidence of our business activities.
Retention periods for records are determined based on the type of record, the nature of the activity, product or service, applicable local legal or regulatory requirements. Retention periods may be changed from time to time based on business or legal and regulatory requirements. However, we will only retain your personal data for as long as is reasonably necessary to fulfil the purposes for which we collected it.
We may, on exception, retain your information for longer periods, particularly where we need to withhold destruction or disposal based on an order from any courts of competent authority, or in relation to an investigation by law enforcement agencies or our regulators. This is intended to make sure that we are able to produce records as evidence, if needed to those respective authorities.
We want to make sure you are aware of your rights in relation to the information and/or data that we process about you. The UK GDPR provides you with certain rights in relation to the processing of your personal data, including to:
These rights are not absolute and are subject to various conditions under applicable data protection and privacy legislation and the laws and regulations to which we are subject.
If at any time you decide that you no longer wish to be contacted for marketing purposes, or if you would like to exercise any of your rights as set out above, you can contact us by email at dataprotection@apfn.uk.
You will not have to pay a fee to access your personal data (or to exercise any of the other rights). However, we may charge a reasonable fee if your request for access is clearly unfounded or excessive. Alternatively, we may refuse to comply with the request in such circumstances.
In addition to the above, please note that you have the right to make a complaint at any time to the Information Commissioner’s Office if you are concerned about the way in which we are handling your personal data.
Last updated: 08/03/2024