<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>privacy &#8211; JPC-DESIGN</title>
	<atom:link href="https://jpc-design.com/tag/privacy/feed/" rel="self" type="application/rss+xml" />
	<link>https://jpc-design.com</link>
	<description>Web Design in Minehead, Somerset</description>
	<lastBuildDate>Fri, 19 Sep 2025 12:33:09 +0000</lastBuildDate>
	<language>en-GB</language>
	<sy:updatePeriod>
	hourly	</sy:updatePeriod>
	<sy:updateFrequency>
	1	</sy:updateFrequency>
	<generator>https://wordpress.org/?v=6.9.4</generator>

<image>
	<url>https://jpc-design.com/wp-content/uploads/2019/02/cropped-jpcfavicon-1-32x32.png</url>
	<title>privacy &#8211; JPC-DESIGN</title>
	<link>https://jpc-design.com</link>
	<width>32</width>
	<height>32</height>
</image> 
	<item>
		<title>The Updated UK Cookie Law Info I’ve Sent to my Clients</title>
		<link>https://jpc-design.com/2019/09/04/the-updated-uk-cookie-law-info-ive-sent-to-my-clients/</link>
		
		<dc:creator><![CDATA[James]]></dc:creator>
		<pubDate>Wed, 04 Sep 2019 16:16:41 +0000</pubDate>
				<category><![CDATA[Blog]]></category>
		<category><![CDATA[GDPR]]></category>
		<category><![CDATA[privacy]]></category>
		<category><![CDATA[web]]></category>
		<guid isPermaLink="false">https://jpc-design.com/?p=492</guid>

					<description><![CDATA[<p>Early in July 2019, the UK&#8217;s &#8216;Information Commissioner&#8217;s Office&#8217; (ICO) offered new guidance on the use of cookies on websites &#8211; especially relating to how they relate in the PECR (Privacy and Electronic Communications Regulations). PECR is a UK law which sits alongside GDPR (the EU&#8217;s rules about how personal data is gathered/held). [Very basically] ... </p>
<p class="read-more-container"><a title="The Updated UK Cookie Law Info I’ve Sent to my Clients" class="read-more button" href="https://jpc-design.com/2019/09/04/the-updated-uk-cookie-law-info-ive-sent-to-my-clients/#more-492" aria-label="Read more about The Updated UK Cookie Law Info I’ve Sent to my Clients">Read more</a></p>
<p>The post <a rel="nofollow" href="https://jpc-design.com/2019/09/04/the-updated-uk-cookie-law-info-ive-sent-to-my-clients/">The Updated UK Cookie Law Info I’ve Sent to my Clients</a> first appeared on <a rel="nofollow" href="https://jpc-design.com">JPC-DESIGN</a>.</p>
]]></description>
										<content:encoded><![CDATA[
<p>Early in July 2019, <a href="https://ico.org.uk/for-organisations/guide-to-pecr/guidance-on-the-use-of-cookies-and-similar-technologies/" rel="noopener">the UK&#8217;s &#8216;Information Commissioner&#8217;s Office&#8217; (ICO) offered new guidance on the use of cookies on websites &#8211; especially relating to how they relate in the PECR (Privacy and Electronic Communications Regulations)</a>.</p>



<p>PECR is a UK law which sits alongside GDPR (the EU&#8217;s rules about how personal data is gathered/held). [Very basically] both say that you have to have consent or a VERY GOOD reason for gathering and holding data about a person, or data that can be used to track someone.</p>



<p>In their new cookie guidance, the ICO says &#8220;your users must take a clear and positive action to consent to non-essential cookies&#8221; and that now includes cookies used for things like Analytics and stats cookies (like the ones used by Google Analytics). <strong><em>[The new guidelines cover ALL kinds of cookies, but in this post I&#8217;m only talking about analytics cookies as they are the ones which are mostly affected for my clients&#8230;]</em></strong></p>



<p>Many of my clients use Google Analytics &#8211; so things will need to change/be updated on their sites to make them PECR compliant!</p>



<p>So below is the info I’ve sent to my clients about this (although edited a bit to make it web friendly!). </p>



<p>After the email contents, I&#8217;ll explain some more about PECR/GDPR compliant ways of getting website Analytics and visitor numbers, etc.</p>



<hr class="wp-block-separator"/>



<h2 class="wp-block-heading">What was in my Email&#8230;</h2>



<p>Hi,</p>



<p>This email is long and might seem complicated but it&#8217;s really not too bad… </p>



<p>At the moment, you use Google Analytics to get stats (the number of visitors, etc.) on [your] site.</p>



<p>Moving forward, using Google Analytics for stats will become more tricky. The ICO (Information Commissioners Office &#8211; the bit of the UK govt that deals with online privacy, etc.) has recently changed their cookie guidance for analytics/stats related cookies.</p>



<p>It now says that ANY cookies that aren&#8217;t vital to the functioning of the site, including anonymised analytics/stats cookies, will need permission to be set. <a href="https://ico.org.uk/about-the-ico/news-and-events/news-and-blogs/2019/07/blog-cookies-what-does-good-look-like/" rel="noopener">https://ico.org.uk/about-the-ico/news-and-events/news-and-blogs/2019/07/blog-cookies-what-does-good-look-like/</a></p>



<p>(In the past as long as you had a good  Privacy/Cookie Policy on your site, explaining what cookies you used; and where possible any analytics/stats cookies were &#8216;anonymised&#8217; (so individual IP addresses weren&#8217;t tracked), then it was ok to use analytics cookies like that.)</p>



<p>This means that to continue using Google Analytics (or cookie based analytics/stats) your site will need to have a pop-up where people have to click to allow analytics/stats cookies BEFORE any stats will be taken! It would look like the one on the ICO&#8217;s site on the link above. </p>



<p>Now I hate all those types on banners and I&#8217;m sure you do too! So with my clients, I&#8217;m working on getting non cookies based and privacy/GDPR/PECR friendly analytics/stats on to sites.</p>



<p><strong>For my Clients who use WordPress:</strong></p>



<p>For your site, I think the best option will be use a analytics/stats plugin on the site itself. This would give you <em>most</em> of the information which Google Analytics can; certainly information about the number of visits and more popular pages, etc. (And no cookie is used as it gets data directly from the hosting server and that counts as &#8216;vital&#8217;. And ad-blockers generally don&#8217;t affect the results either.)</p>



<p>If you&#8217;d like just &#8216;simple&#8217; stats like the basic number of visits, top pages and where people came from, there are simple plugins like <a href="https://wordpress.org/plugins/statify/" rel="noopener">Statify</a> or <a href="https://wordpress.org/plugins/koko-analytics/" rel="noopener">Koko Analytics</a> that can do this (I now use Koko Analytics &#8211; you do have to turn a cookie off in its settings but it works very nicely).</p>



<p>If you&#8217;d like more detailed information, then a more complex plugin [<a href="https://wordpress.org/plugins/wp-statistics/" rel="noopener">WP Statistics</a>] can be used on the site…</p>



<p>With plugin stats, it&#8217;s a good idea to keep a max of 6 months worth of stats (3 months is better) because they are stored in the database on the site and having too much information in there can slow things down…</p>



<hr class="wp-block-separator"/>



<p><strong>For my Clients with &#8216;static&#8217; sites (but could also apply to WordPress sites&#8230;):</strong></p>



<p>For your site, I think the best option will be to use some analytics/stats produced by the hosting server. As part of your hosting package, the server generates stats using a service called <a href="https://awstats.sourceforge.io" rel="noopener">AWStats</a>. It&#8217;s not as &#8216;pretty&#8217; as Google Analytics but for &#8216;simple&#8217; stats like the basic number of visits, top pages and where people came from, it can do the job nicely.</p>



<hr class="wp-block-separator"/>



<p>However, all that cookie talk won&#8217;t affect the &#8216;Google Search Console&#8217; (another Google service which helps Google know about your site) as that information comes direct from Google search information.  And it might be that the information for that is really more useful that the site stats…</p>



<p>And to make sure that Google will index the site correctly, I also really need access to your &#8216;Google Search Console&#8217; account.  I think this is on a Google account you control.</p>



<p>You can add me as a &#8216;verified owner&#8217; on your Google Search Console, so I can check things/make any changes without having you log into your account. How to do so is explained here: <a href="https://support.google.com/webmasters/answer/7687615?hl=en" rel="noopener">https://support.google.com/webmasters/answer/7687615?hl=en</a> My Google account email to add is [retracted for privacy!!!!!].</p>



<p>I hope that all make sense &#8211; any questions please ask. If you&#8217;d like me to go ahead and take off Google Analytics and add in the stats plugin/show you how to use AWStats, I can do that. I&#8217;ll also update your privacy policy to make sure it&#8217;s also correct with the new situation.</p>



<p>Phew…</p>



<p>I hope your brain doesn&#8217;t hurt after all that!</p>



<p>Best wishes,</p>



<p>James</p>



<hr class="wp-block-separator"/>



<h2 class="wp-block-heading">PECR/GDPR Compliant Analytics&#8230;</h2>



<p>Below are some different options for analytics/stats. I know I&#8217;m not covering everything, I&#8217;m giving you an idea of some of the options out there!</p>



<p>So, to confirm what I&#8217;m using for (most of my clients):</p>



<h3 class="wp-block-heading">For WordPress Sites&#8230;</h3>



<p>These are the plugins I&#8217;m using/suggesting:</p>



<p>For &#8216;simple&#8217; analytics there&#8217;s <a href="https://wordpress.org/plugins/statify/" rel="noopener">Statify &#8211; https://wordpress.org/plugins/statify/</a> and <a href="https://wordpress.org/plugins/koko-analytics/" rel="noopener">Koko Analytics &#8211; https://wordpress.org/plugins/koko-analytics/</a></p>



<p>For more detailed analytics there&#8217;s <a href="https://wordpress.org/plugins/wp-statistics/" rel="noopener">WP Statistics &#8211; https://wordpress.org/plugins/wp-statistics/</a> </p>



<p>(There are other WordPress Analytics Plugins, but for my client&#8217;s needs, these ones work the best!)</p>



<hr class="wp-block-separator"/>



<h3 class="wp-block-heading">For ANY Sites&#8230;</h3>



<p><strong>Analytics/stats tools that come with hosting packages.</strong></p>



<p>Pretty much any hosting company that uses cPanel (the most common control panel used on web hosting) comes with <a href="https://awstats.sourceforge.io" rel="noopener">AWStats &#8211; https://awstats.sourceforge.io</a> already installed (in fact it&#8217;s probably already getting analytics/stats for you and you don&#8217;t even know!).</p>



<p>Another common &#8216;included&#8217; option on hosting is <a href="http://www.webalizer.org" rel="noopener">Webalizer &#8211; http://www.webalizer.org</a>. I&#8217;m not a fan of Webalizer as it&#8217;s really not pretty to use and can be somewhat confusing to read as well!</p>



<p>Some hosting companies don&#8217;t use cPanel and they might well have some form of their own analytics/stats tools available &#8211; I suggest you ask your web host!</p>



<hr class="wp-block-separator"/>



<p><strong>&#8216;Replacements&#8217; for Google Analytics.</strong></p>



<p>Below are some &#8216;replacements&#8217; for Google Analytics (i.e. scripts that you add to your site and then you get visitor stats) which I&#8217;m aware of (but haven&#8217;t used). <em>And again, I&#8217;m sure there are more out there &#8211; if there&#8217;s a good one that I&#8217;m missing, please leave a comment!</em></p>



<p><a href="https://usefathom.com" rel="noopener">Fathom</a> is an analytics tools that comes in two versions. A free/open source version which you can host yourself on your hosting server or their &#8216;Pro&#8217; version, where they host it all. The Pro version costs from $14 a month (or $140 a year). The Pro version is PECR compliant, but at the moment the free/open source version isn&#8217;t (but they hope it will be by the end of 2019!).</p>



<p><a href="https://matomo.org" rel="noopener">Matomo</a> is a free/open source analytics program which you can can install on your web host to collect site stats (it can often be installed via &#8216;one click&#8217; services on many hosts). There are <a href="https://matomo.org/blog/2018/04/how-to-make-matomo-gdpr-compliant-in-12-steps/" rel="noopener">some steps you have to take to make Matomo GDPR compliant</a> and, as out of the box Matomo uses cookies, it&#8217;s also a good idea to <a href="https://matomo.org/faq/general/faq_157/" rel="noopener">turn off cookies within Matomo to make it PECR compliant</a> as well.</p>



<hr class="wp-block-separator"/>



<h2 class="wp-block-heading">But what if I still want/need to use Google Analytics..?</h2>



<p>That&#8217;s a good question &#8211; and it applies to a couple of my clients as well! As we saw above, the ICO says &#8220;your users must take a clear and positive action to consent to non-essential cookies&#8221;; so that&#8217;s what needs to be done!</p>



<p>The solution used on the ICO&#8217;s own site (as that site uses Google Analytics!) is called <a href="https://www.civicuk.com/cookie-control" rel="noopener">&#8216;Cookie Control&#8217; &#8211; https://www.civicuk.com/cookie-control</a>. It&#8217;s a script which helps to control(!) what other code (which sets the cookies) is loaded and when (i.e. when you&#8217;ve got consent from someone). <a href="https://wordpress.org/plugins/civic-cookie-control-8/" rel="noopener">If you&#8217;re a WordPress user, there&#8217;s also a plugin to help install it</a>.</p>



<p>Another plugin which can do a similar thing is <a href="https://wordpress.org/plugins/complianz-gdpr/" rel="noopener">Complianz</a> and I&#8217;ve used this for a couple of clients.</p>



<p>Another option for Google Analytics is the <a href="https://wordpress.org/plugins/minimal-analytics/" rel="noopener">Minimal Analytics</a> plugin. This loads the &#8216;bar minimum&#8217; of code for Google Analytics and there&#8217;s no cookie involved! But other &#8216;tracking&#8217; things might still be in place&#8230;</p>



<hr class="wp-block-separator"/>



<p>So that&#8217;s a round up of the new UK cookie advice and what you might need to do about it! Please leave a comment if you&#8217;ve got questions or can suggest some other good analytics solutions which are GDPR/PECR/privacy friendly&#8230;</p>
<p>The post <a rel="nofollow" href="https://jpc-design.com/2019/09/04/the-updated-uk-cookie-law-info-ive-sent-to-my-clients/">The Updated UK Cookie Law Info I’ve Sent to my Clients</a> first appeared on <a rel="nofollow" href="https://jpc-design.com">JPC-DESIGN</a>.</p>
]]></content:encoded>
					
		
		
			</item>
		<item>
		<title>The GDPR Info I’ve Sent to my Clients</title>
		<link>https://jpc-design.com/2018/05/11/the-gdpr-info-ive-sent-to-my-clients/</link>
		
		<dc:creator><![CDATA[James]]></dc:creator>
		<pubDate>Fri, 11 May 2018 15:57:40 +0000</pubDate>
				<category><![CDATA[Blog]]></category>
		<category><![CDATA[GDPR]]></category>
		<category><![CDATA[privacy]]></category>
		<category><![CDATA[web]]></category>
		<guid isPermaLink="false">https://jpc.asra.co.uk/?p=48</guid>

					<description><![CDATA[<p>You might well have heard that some new EU Privacy rules (called GDPR — General Data Protection Regulation) are coming on the 25th May 2018. If you’ve got a site or blog (even if you’re not in the EU), then it’s probably affected and you WILL NEED to do something! So below is the info I’ve sent ... </p>
<p class="read-more-container"><a title="The GDPR Info I’ve Sent to my Clients" class="read-more button" href="https://jpc-design.com/2018/05/11/the-gdpr-info-ive-sent-to-my-clients/#more-48" aria-label="Read more about The GDPR Info I’ve Sent to my Clients">Read more</a></p>
<p>The post <a rel="nofollow" href="https://jpc-design.com/2018/05/11/the-gdpr-info-ive-sent-to-my-clients/">The GDPR Info I’ve Sent to my Clients</a> first appeared on <a rel="nofollow" href="https://jpc-design.com">JPC-DESIGN</a>.</p>
]]></description>
										<content:encoded><![CDATA[
<p>You might well have heard that some new EU Privacy rules (called GDPR — General Data Protection Regulation) are coming on the 25th May 2018.</p>



<p>If you’ve got a site or blog (even if you’re not in the EU), then it’s probably affected and you WILL NEED to do something!</p>



<p>So below is the info I’ve sent to my clients about GDPR.</p>



<p>If you’d like any professional help with getting your site GDPR compliant, I can help. <a href="https://jpc-design.com/contact/">Contact me</a>.</p>



<hr class="wp-block-separator has-css-opacity"/>



<p>Hi,</p>



<p>You might well have heard about the new EU Data Privacy rules — GDPR (General Data Protection Regulation) which come into effect on 25th May this year (two days after my birthday — nice!).</p>



<p>With GDPR comes new responsibilities for organisations and businesses in the way in which data in obtained and held.</p>



<p>You might well be sorting out some GDPR items already, if so, great!</p>



<p>As one of my clients, I want to help make the web side of things as easy for you as possible in regard to GDPR. However, there is a limit to how much I can help you!</p>



<h2 class="wp-block-heading">What I Cannot Do&#8230;</h2>



<p><strong>I CANNOT</strong>&nbsp;be your ‘one stop shop’ for GDPR questions (and answers). I’m just a web developer, I’m not a data privacy or legal expert!</p>



<p><strong>I CANNOT</strong>&nbsp;help you/your organisation ‘get ready’ for GDPR as you know what data you deal with and how you deal with it — I don’t (well I might know a bit but not much!).</p>



<h2 class="wp-block-heading">What I Can Do&#8230;</h2>



<p><strong>I CAN</strong>&nbsp;give you some links to look through, which should be able to help you:</p>



<p>You can find out more about GDPR from the Information Commissioners Office (the UK Government Dept dealing with GDPR):<br><a href="https://ico.org.uk/for-organisations/guide-to-the-general-data-protection-regulation-gdpr/" rel="noreferrer noopener" target="_blank">https://ico.org.uk/for-organisations/guide-to-the-general-data-protection-regulation-gdpr/</a></p>



<p>Info for small businesses<br><a href="https://www.simplybusiness.co.uk/knowledge/articles/2017/11/what-is-gdpr-for-small-business/" rel="noreferrer noopener" target="_blank">https://www.simplybusiness.co.uk/knowledge/articles/2017/11/what-is-gdpr-for-small-business/</a></p>



<p>Info for charities<br><a href="https://www.charitydigitalnews.co.uk/2018/03/22/gdpr-is-your-charity-ready/" rel="noreferrer noopener" target="_blank">https://www.charitydigitalnews.co.uk/2018/03/22/gdpr-is-your-charity-ready/</a></p>



<p>Info for churches (although it’s also useful for many charities and businesses)<br><a href="https://www.baptist.org.uk/Groups/302154/Data_Protection_and.aspx" rel="noreferrer noopener" target="_blank">https://www.baptist.org.uk/Groups/302154/Data_Protection_and.aspx</a><br><a href="http://www.parishresources.org.uk/gdpr/" rel="noreferrer noopener" target="_blank">http://www.parishresources.org.uk/gdpr/</a></p>



<p><strong>I CAN</strong>&nbsp;supply you with some basic documents and templates with might help you to think about GDPR and what you need to do for the web side of it.</p>



<p>I’ve put these together at:&nbsp;<a href="https://mega.nz/folder/XwtX2TaB#Np-zd42tpKOhaw_ybbg1lw" rel="noopener">https://mega.nz/folder/XwtX2TaB#Np-zd42tpKOhaw_ybbg1lw</a></p>



<p>They include:</p>



<ul class="wp-block-list">
<li>A basic ‘audit’ template (Word);</li>



<li>A basic ‘audit’ template (Excel) — this includes some of my very basic info!; </li>



<li>A basic ‘checklist’ (Word);</li>



<li>A basic ‘privacy notice’ document (Word).</li>
</ul>



<p>But, again,<strong>&nbsp;I CANNOT</strong>&nbsp;give you any specific legal advice. For full info, please see the ICO’s site or contact a professional legal advisor.</p>



<p><strong>I CAN</strong>&nbsp;help with adding GDPR info to your site.</p>



<p>The main thing impact of GDPR on your website, following your own audits, will be putting the relevant information from the Privacy Policy/Notice on the site. The contents will be depend on what data your site collects, etc. but it might well be similar to the example document in the link above.</p>



<p>Any contact forms will need a clear link to this Privacy Policy/Notice (best either just above or below the Send/Submit button) — <strong>I CAN</strong>&nbsp;help with this.</p>



<p>Some example text for this would be:</p>



<blockquote class="wp-block-quote is-layout-flow wp-block-quote-is-layout-flow">
<p>This form collects your name, email and phone to help us answer your questions. Read our Privacy Policy [linked] for how we deal with this information.</p>
</blockquote>



<p>It’s also a good idea to have a link to the Privacy Policy/Notice near any buttons for:</p>



<p>Blog Comments (with these, it would also be sensible to explicitly state that users should not put personal information into the comment and have a tick to make sure people understand thing);</p>



<p>Some example text for this would be:</p>



<blockquote class="wp-block-quote is-layout-flow wp-block-quote-is-layout-flow">
<p>By using this form you agree with the storage and handling of your data by this website. View our Privacy Policy [linked]. Please do not express personal data or contact details in blog comments, as these are displayed publicly on the site.</p>
</blockquote>



<p>If you use WordPress (the self hosted version) and are happy installing plugins, then this plugin make it easy to add the extra tick box to comments:<br><a href="https://wordpress.org/plugins/wp-gdpr-compliance/" rel="noreferrer noopener" target="_blank">https://wordpress.org/plugins/wp-gdpr-compliance/</a></p>



<p>***</p>



<p>Sign ups for email lists (these will also need an extra ‘consent’ tick box);</p>



<p>***</p>



<p>‘Buy’ buttons if you are selling anything.</p>



<p><strong>I CAN</strong>&nbsp;help with these!</p>



<p>If, on any forms, there is also the option to sign up to a mailing lists, this needs be to UNTICKED by default — <strong>I CAN</strong>&nbsp;help with this.</p>



<p>If you have an email newsletter, then you will also need to send out an email so people can confirm that they still want to receive the newsletter. MailChimp and MailerLite both have tools to help with this:<br><a href="https://kb.mailchimp.com/accounts/management/collect-consent-with-gdpr-forms" rel="noreferrer noopener" target="_blank">https://kb.mailchimp.com/accounts/management/collect-consent-with-gdpr-forms</a><br><a href="https://help.mailerlite.com/article/show/59543-gdpr-tools" rel="noreferrer noopener" target="_blank">https://help.mailerlite.com/article/show/59543-gdpr-tools</a></p>



<p>With GDPR, as a record of consent is needed for things like being added to mailing list, it won’t be practical to have a ‘paper sign up sheet’ or equivalent (where people sign a bit of paper and then you manually add them to the mailing list at a later date) as you cannot ‘prove/record’ digitally that they have given consent (unless you have them sign a paper form and then you store the form.). A better option would be to have a sign up form on something like a tablet that you can ask people to complete. In this way their digital consent can easily be tracked.</p>



<p>***</p>



<p>If you also need a simple way of storing things like passwords, website logins or anything else, then I use <a href="https://www.1password.com" rel="noopener">1password.com</a> (it&#8217;s pay for but is great) and for a free option (or cheaper pay for) <a href="https://bitwarden.com/" rel="noopener">BitWarden</a> is also an excellent option. </p>



<p>Phew… I know it can seem a lot to take on board.</p>



<p>Please read through all the links and things. When you’ve got a Privacy Policy/Notice ready, or know what needs to go in it, please get back in touch with me and we can then make any changes on your site.</p>



<p>Best wishes,</p>



<p>James</p>
<p>The post <a rel="nofollow" href="https://jpc-design.com/2018/05/11/the-gdpr-info-ive-sent-to-my-clients/">The GDPR Info I’ve Sent to my Clients</a> first appeared on <a rel="nofollow" href="https://jpc-design.com">JPC-DESIGN</a>.</p>
]]></content:encoded>
					
		
		
			</item>
	</channel>
</rss>
