Data Protection Policy

Last updated: January 2026

This Data Protection Policy sets out how Medical Pros LTD manages, protects, and processes personal data in line with the UK General Data Protection Regulation (UK GDPR), the Data Protection Act 2018, and other applicable data protection legislation. It applies to all staff, contractors, and third parties who handle personal data on behalf of Medical Pros LTD.

Purpose of This Policy

The purpose of this policy is to ensure that personal data is handled lawfully, fairly, and securely, and that appropriate safeguards are in place when processing sensitive and special category data, including medical information used in medico-legal services.

About Medical Pros LTD

Medical Pros LTD
21a Hardshaw Street, St Helens, WA10 1QX
Company Registration Number: 12129141
ICO Registration Number: ZA551439
Email: info@medicalpros.co.uk

Medical Pros LTD acts as a medical agency supporting law firms with medical reporting, expert instruction, rehabilitation coordination, diagnostics, and related services.

Data Protection Principles

Medical Pros LTD adheres to the following data protection principles. Personal data must be:

  • Processed lawfully, fairly, and transparently
  • Collected for specified, explicit, and legitimate purposes
  • Adequate, relevant, and limited to what is necessary
  • Accurate and kept up to date
  • Stored securely and not retained for longer than necessary
  • Processed in a manner that ensures appropriate security and confidentiality

Lawful Bases for Processing

Personal data is processed under one or more of the following lawful bases:

  • Performance of a contract
  • Compliance with a legal obligation
  • Legitimate interests pursued by Medical Pros LTD
  • Explicit consent, where required
  • Establishment, exercise, or defence of legal claims

Special category data, including medical information, is processed only where a valid lawful basis and condition under UK GDPR applies, such as explicit consent or legal claims.

Types of Data Processed

Medical Pros LTD may process the following categories of data:

  • Personal identification and contact information
  • Professional and organisational details
  • Case-related and instruction information
  • Medical and health-related data
  • Psychological and diagnostic information
  • Technical and usage data relating to website access

Data Handling and Access Controls

Access to personal data is restricted to authorised personnel only and is granted on a need-to-know basis. All staff and contractors are required to handle data in accordance with this policy and internal procedures.

Appropriate measures are in place to prevent unauthorised access, alteration, disclosure, or loss of data.

Data Security Measures

Medical Pros LTD implements technical and organisational measures to safeguard personal data, including:

  • Secure IT systems and password controls
  • Restricted access to sensitive data
  • Secure data transfer methods
  • Regular system monitoring
  • Staff training on data protection responsibilities

These measures are reviewed periodically to ensure continued effectiveness.

Data Sharing and Third Parties

Personal data may be shared with third parties only where necessary to deliver services. This may include:

  • Instructed medical experts and clinicians
  • Rehabilitation and diagnostic providers
  • Law firms and legal representatives
  • Regulatory authorities where required by law

All third parties are required to process data securely, lawfully, and in accordance with data protection legislation.

Data Retention

Personal data is retained only for as long as necessary to fulfil its intended purpose and to meet legal, regulatory, or contractual requirements. Retention periods vary depending on the nature of the data and the service provided.

Secure methods are used for the deletion or destruction of data when it is no longer required.

Data Subject Rights

Individuals have the right to:

  • Access their personal data
  • Request correction of inaccurate or incomplete data
  • Request erasure of personal data, where applicable
  • Restrict or object to processing
  • Request data portability
  • Withdraw consent at any time, where consent applies

Requests relating to data subject rights should be made in writing using the contact details below.

Data Breaches

Medical Pros LTD has procedures in place to identify, investigate, and respond to personal data breaches. Where required, breaches will be reported to the Information Commissioner’s Office and affected individuals in accordance with legal obligations.

Training and Awareness

All staff and relevant third parties receive appropriate data protection training to ensure awareness of responsibilities and compliance with this policy.

Review of This Policy

This Data Protection Policy is reviewed regularly and updated as necessary to reflect changes in legislation, guidance, or business practices.

Contact Details

For questions about this Data Protection Policy or data protection matters, please contact:

Email: info@medicalpros.co.uk
Post: Medical Pros LTD, 21a Hardshaw Street, St Helens, WA10 1QX

If concerns cannot be resolved, individuals have the right to raise a complaint with the Information Commissioner’s Office (ICO).