Perth Symphony Orchestra Privacy Policy & Cookies Policy
Perth Orchestral Society, operating as Perth Symphony Orchestra, takes great care to preserve your privacy and safeguard any personal data you provide to us. This Privacy Notice explains how we will collect and use your personal data. We may change this Privacy Policy from time to time so please check regularly to ensure that you are happy with any changes.
This privacy policy is for this website www.perthsymphonyorchestra.co.uk and served by Perth Orchestral Society, charity number SC017207, and our registered office address is 37 Drummond Street, Muthill, Crieff, PH5 2AN and governs the privacy of its users who choose to use it.
It explains how we comply with the GDPR (General Data Protection Regulation), the DPA (Data Protection Act) [pre GDPR enforcement] and the PECR (Privacy and Electronic Communications Regulations).
This policy will explain areas of this website and the membership administration that may affect your privacy and personal details, how we process, collect, manage and store those details and how your rights under the GDPR, DPA & PECR are adhere to.
Additionally, it will explain the use of cookies or software, advertising or commercial sponsorship from third parties and the download of any documents, files or software made available to you (if any) on this website. Further explanations may be provided for specific pages or features of this website in order to help you understand how we, this website and its third parties (if any) interact with you and your computer / device in order to serve it to you. Our contact information is provided at the foot of this policy if you have any questions.
What personal data do we collect?
We may collect personal data from such as;
- Your name
- Your address
- Your date of birth
- Your telephone number
- Your email address
- Your bank details
How do we use your personal data?
We will use your personal data in a number of ways which may include:
- Keeping you updated about future rehearsals and
- Processing your membership
- Processing any donations/payments made to
- Processing any payments made to
- Including your name and/or image in our printed
- Processing your involvement in our governance such as becoming a member of our
- Responding to a general enquiry made to
- Dealing with a complaint or concern raised to us about one of our trustees, members or paid
- Including your image or name on our website or social
With whom do we share your personal data
We will only ever use your personal data to manage your orchestra involvement, including keeping you up-to-date with any orchestra news. If you are not involved in the orchestra, then we will only use your personal data to deal with the issue or enquiry that you have raised directly with us. We will never sell your details to any third party and we do not buy any personal data. If you have made a Gift Aid declaration, we may need to disclose the information you have provided as part of the Gift Aid declaration to HMRC for the purpose of reclaiming Gift Aid on your donation(s). We may share or disclose your personal data if we are required to do so by any law or court order.
What is the legal basis for processing your information?
In some cases, we will only process your personal data where we have your specific consent to do so e.g. to include your name in our programme / to use your image on our website/ to stay in touch with you about our next concert season. We may also process your personal data because there is a legitimate interest for us to do so as part of organising the orchestra, and it is reasonable to expect that your information would need to be processed by us to complete this work. For example, it is reasonable for us to collect your name, address and contact details to be able to keep accurate records of orchestra personnel and you would reasonably expect this to happen. Whenever we process your personal data under the legitimate interest lawful basis, we make sure that we consider your rights and interests and will not process your personal data if we feel that there is an imbalance, or you would not reasonably expect your data to be processed in this way.
How we keep your information secure
We have implemented appropriate physical, technical and organisational measures to protect the personal data from improper access, use, alteration, destruction and loss.
Our website may contain links to other third party sites. While we try to link only to sites that share our high standards and respect for privacy, we are not responsible for the content or the privacy practices employed by other sites. Please be aware that advertisers or websites that have links on our site may collect personally identifiable information about you. This privacy statement does not cover the information practices of those websites or advertisers. Those websites may have their own privacy policies and we encourage you to look at those policies or contact the website operators directly to understand how your personal data is used. We may send communications to you by email. Email is not a fully secure means of communication, and whilst we do our utmost to keep our systems and communications protected, we cannot guarantee this.
Although we only look to include quality, safe and relevant external links, users are advised to adopt a policy of caution before clicking any external web links mentioned throughout this website.
Shortened URL’s; URL shortening is a technique used on the web to shorten URL’s (Uniform Resource Locators) to something substantially shorter. This technique is especially used in social media and looks similar to this (example: http://bit.ly/zyVUBo). Users should take caution before clicking on shortened URL links and verify their authenticity before proceeding.
We cannot guarantee or verify the contents of any externally linked website despite our best efforts. Users should therefore note they click on external links at their own risk and we cannot be held liable for any damages or implications caused by visiting any external links mentioned.
The DPA & GDPR May 2018
This website complies to the DPA (Data Protection Act 1998) and to the GDPR (General Data Protection Regulation) which came into effect from May 2018.
Use of Cookies
Essential
Essential cookies enable basic functions and are necessary for the proper function of the website.
| Name | Description | Duration |
|---|
| cerber_groove_x_7T9CecSyMw1hdzZvPsmlqU6Q0aR2Nk3 | Security Plugin | |
| cerber_groove | Security Plugin | |
| wpconsent_preferences | This cookie is used to store the user's cookie consent preferences. | 90 days |
CleanTalk
CleanTalk offers effective spam protection and website security solutions to enhance user experience.
Learn more| Name | Description | Duration |
|---|
| spbc_timer | Dashboard. Time spent on the page. | Session |
| spbc_log_id | Dashboard. User identification. | Session |
| spbc_2fa_passed | Dashboard. Flag defines if Two-Factor Authentication was passed. | Session |
| apbct_antibot | This cookie is used to distinguish between humans and bots. This is beneficial for the website, in order to make valid reports on the use of their website. | session |
| ct_check_js | Used in order to detect spam and improve the website's security. | session |
| ct_fkp_timestamp | Used in order to detect spam and improve the website's security. Does not store visitor specific data. | session |
| ct_has_scrolled | This cookie is used to distinguish between humans and bots. | session |
| ct_pointer_data | Used in order to detect spam and improve the website's security. Does not store visitor specific data. | session |
| ct_ps_timestamp | Used in order to detect spam and improve the website's security. Does not store visitor specific data. | session |
| ct_timezone | Used in order to detect spam and improve the website's security. | Session |
| apbct_cookies_test | Сookie to validate other cookies, so they can’t be spoofed. | Session |
| apbct_ | Group of cookies which are set from backend and contain information about the current user | Session |
| ct_ | Group of cookies used for storing dynamic variables from browser | Session |
| ct_sfw_ | Group of cookies used for our SpamFireWall technology. | Session |
| spbc_cookies_test | Cookie to test cookies so we know that everything working properly | Session |
| spbc_firewall_pass_key | The flag defines if the Security Firewall was passed. | Session |
| spbc_is_logged_in | Dashboard. Flag defines if a user was logged in. | Session |
CloudFlare
CloudFlare provides web performance and security solutions, enhancing site speed and protecting against threats.
Learn more| Name | Description | Duration |
|---|
| cf_use_ob | The cf_use_ob cookie informs Cloudflare to fetch the requested resource from the Always Online cache on the designated port. Applicable values are: 0, 80, and 443. The cf_ob_info and cf_use_ob cookies are persistent cookies that expire after 30 seconds. | session |
| __cfwaitingroom | The __cfwaitingroom cookie is only used to track visitors that access a waiting room enabled host and path combination for a zone. Visitors using a browser that does not accept cookies cannot visit the host and path combination while the waiting room is active. | session |
| cf_chl_rc_i | These cookies are for internal use which allows Cloudflare to identify production issues on clients. | session |
| cf_chl_rc_ni | These cookies are for internal use which allows Cloudflare to identify production issues on clients. | session |
| cf_chl_rc_m | These cookies are for internal use which allows Cloudflare to identify production issues on clients. | session |
| __cfruid | Used by the content network, Cloudflare, to identify trusted web traffic. | session |
| __cf_bm | Cloudflare's bot products identify and mitigate automated traffic to protect your site from bad bots. Cloudflare places the __cf_bm cookie on End User devices that access Customer sites that are protected by Bot Management or Bot Fight Mode. The __cf_bm cookie is necessary for the proper functioning of these bot solutions. | session |
| __cflb | When enabling session affinity with Cloudflare Load Balancer, Cloudflare sets a __cflb cookie with a unique value on the first response to the requesting client. Cloudflare routes future requests to the same origin, optimizing network resource usage. In the event of a failover, Cloudflare sets a new __cflb cookie to direct future requests to the failover pool. | session |
| _cfuvid | The _cfuvid cookie is only set when a site uses this option in a Rate Limiting Rule, and is only used to allow the Cloudflare WAF to distinguish individual users who share the same IP address. | session |
| cf_clearance | Whether a CAPTCHA or Javascript challenge has been solved. | session |
| __cfseq | Sequence rules uses cookies to track the order of requests a user has made and the time between requests and makes them available via Cloudflare Rules. This allows you to write rules that match valid or invalid sequences. The specific cookies used to validate sequences are called sequence cookies. | session |
| cf_ob_info | The cf_ob_info cookie provides information on: The HTTP Status Code returned by the origin web server. The Ray ID of the original failed request. The data center serving the traffic | session |
Comments
These cookies are needed for adding comments on this website.
| Name | Description | Duration |
|---|
| comment_author | Used to track the user across multiple sessions. | Session |
| comment_author_email | Used to track the user across multiple sessions. | Session |
| comment_author_url | Used to track the user across multiple sessions. | Session |
Statistics
Statistics cookies collect information anonymously. This information helps us understand how visitors use our website.
| Name | Description | Duration |
|---|
| _ga_DR43FTHKC8 | | |
| _ga | | |
Google Analytics
Google Analytics is a powerful tool that tracks and analyzes website traffic for informed marketing decisions.
Learn more| Name | Description | Duration |
|---|
| _gac_ | Contains information related to marketing campaigns of the user. These are shared with Google AdWords / Google Ads when the Google Ads and Google Analytics accounts are linked together. | 90 days |
| __utma | ID used to identify users and sessions | 2 years after last activity |
| __utmt | Used to monitor number of Google Analytics server requests | 10 minutes |
| __utmb | Used to distinguish new sessions and visits. This cookie is set when the GA.js javascript library is loaded and there is no existing __utmb cookie. The cookie is updated every time data is sent to the Google Analytics server. | 30 minutes after last activity |
| __utmc | Used only with old Urchin versions of Google Analytics and not with GA.js. Was used to distinguish between new sessions and visits at the end of a session. | End of session (browser) |
| __utmz | Contains information about the traffic source or campaign that directed user to the website. The cookie is set when the GA.js javascript is loaded and updated when data is sent to the Google Anaytics server | 6 months after last activity |
| __utmv | Contains custom information set by the web developer via the _setCustomVar method in Google Analytics. This cookie is updated every time new data is sent to the Google Analytics server. | 2 years after last activity |
| __utmx | Used to determine whether a user is included in an A / B or Multivariate test. | 18 months |
| _ga | ID used to identify users | 2 years |
| _gali | Used by Google Analytics to determine which links on a page are being clicked | 30 seconds |
| _ga_ | ID used to identify users | 2 years |
| _gid | ID used to identify users for 24 hours after last activity | 24 hours |
| _gat | Used to monitor number of Google Analytics server requests when using Google Tag Manager | 1 minute |
Downloads & Media Files
Any downloadable documents, files or media made available on this website are provided to users at their own risk. While all precautions have been undertaken to ensure only genuine downloads are available users are advised to verify their authenticity using third party anti virus software or similar applications.
We accept no responsibility for third party downloads and downloads provided by external third party websites and advise users to verify their authenticity using third party anti virus software or similar applications.
Your rights
You have various rights in respect of the personal data we hold about you. These rights are set out in more detail below:
- The right to be informed about the collection and use of your personal data;
- The right to access to your personal information;
- The right to object to processing of your personal information;
- The right to restrict the processing of your personal information;
- The right to personal data portability;
- The right to rectify your personal information;
- The right to erase your personal information;
- Rights in relation to automated decision making and
If you make a request relating to any of the rights listed above, we will consider each request in accordance with all applicable data protection laws and regulations. No administration fee will be charged for considering and/or complying with such a request unless the request is deemed to be excessive in nature. Upon successful verification of your identity, you are entitled to obtain the following information about your own personal information:
- The purposes of the collection, processing, use and storage of your personal
- The categories of personal data stored about
- The recipients or categories of recipients to whom your personal data has been or may be transmitted, along with the location of those recipients.
- The envisaged period of storage for your personal data or the rationale for determining the storage
- The use of any automated decision-making and/or
If you want to exercise any of these rights or make a complaint, you can by email The Secretary, Perth Symphony Orchestra, pe********************@***il.com. You can also make a complaint to the Information Commissioner’s Office and the contact details and further information about how to do this can be found at: https://ico.org.uk / In certain circumstances we might not be able to provide you with access to some of your personal information but, where appropriate, we will notify you of the reasons for this.
How long do we keep your information?
Your personal data will not be retained by the orchestra for longer than necessary in relation to the purposes for which it was originally collected, or for which it was further processed, subject to certain legal obligations mentioned below. We will retain personal data in accordance with our data retention policy set out below. We review our data retention periods for personal data on a regular basis.
We hold personal data relating to:
- Your orchestra membership 2 years following notification that your membership has
- Employment or volunteering with the orchestra for 6 years following notification that employment or volunteering with the orchestra has terminated.
- Legacies or donations for 5 years after the legacy or donation is
We are legally required to hold some personal data to fulfil statutory obligations, for example the collection and reporting of Gift Aid to HMRC, or to support certain financial transactions.
Contact & Communication With us
The law allows you to withdraw your consent to any usage of your data at any time without needing to specify a reason. You can withdraw your consent by emailing us at pe********************@***il.com
Users contacting this us through this website do so at their own discretion and provide any such personal details requested at their own risk. Your personal information is kept private and stored securely until a time it is no longer required or has no use.
Where we have clearly stated and made you aware of the fact, and where you have given your express permission, we may use your details to send you products/services information through a mailing list system. This is done in accordance with the regulations named in ‘The policy’ above.