Frequently Asked Questions
Yes. Greenredeem is fully compliant with UK GDPR, and we operate within clear data protection protocols. We do not share user data with third parties, and our systems are designed to respect user consent, opt-outs and privacy at every stage.
Absolutely. We provide templated DPIA support documents, technical detail on data flows, hosting and security measures, and can assist your Data Protection Officer in responding to internal queries.
All personal data is securely stored in the UK or EEA in line with GDPR requirements. Our hosting environments are ISO 27001 certified, and regular backups and controls are in place to ensure data integrity and security.
We conduct regular penetration testing, vulnerability scans and follow strict internal access controls. Our platform is protected by secure encryption protocols and hosted on infrastructure compliant with NHS and local authority standards.
That said, in engagement-led environments, particularly within the NHS and public sector, we’ve seen that mandatory MFA can create barriers for some users and reduce participation. We work with each organisation to find the right balance between user experience and security, tailoring access options to suit your needs.
Still haven’t found the answer you are looking for? Get in touch with one of the team today