The Information Commissioner’s Office (ICO) have a new tool to help small businesses create privacy notices for their business.
The tool can be accessed here: https://ico.org.uk/for-organisations/advice-for-small-organisations/create-your-own-privacy-notice/
The ICO tool can help you create bespoke privacy notices for the benefit of your staff, external website visitors and suppliers. Articles 13 and 14 of the UK GDPR include the requirements for controllers to provide privacy information to data subjects (right to be informed).
The generator tool has been specifically designed for sole traders and start-ups, as well as small and medium-sized businesses and charities to help ease the cost and burden to them of complying with the UK GDPR’s fair processing, transparency and accountability requirements, and the right of data subjects to be provided with detailed information about the controller’s personal data collection and data processing activities.
We’ve taken a look at the privacy notices generated and for many businesses they may do the trick. However, given the fines the ICO can issue, it may be worth having an expert carry out a full data protection assessment for you.

