WiFi Privacy Policy

Guest Wi-Fi Access Privacy Policy for The Queen’s Head Hotel.
Last updated: 20/01/2026

Acceptance

By connecting to this WiFi network, you acknowledge and accept this Privacy Notice.

Who We Are (Data Controller)

The Queen’s Head Hotel (“we”, “us”, “our”) operates a free public Wi-Fi service for guests and customers.
For the purposes of UK data protection law, The Queen’s Head Hotel is the Data Controller for data processed via our Wi-Fi network.

Our WiFi System

Network management: UniFi (Ubiquiti)
Internet Service Provider (ISP): BT
UniFi equipment is hosted and managed locally by us and is used to control access, security, and logging of the Wi-Fi network. BT provides upstream internet connectivity only.

What Data Is Collected

When you connect to our WiFi, the following limited technical data may be processed:
Device MAC address
Device type and operating system (if available)
Internal and external IP address
Connection start and end times
Access point used
Approximate data usage
Network security and diagnostic logs

We do not collect or inspect:

Names, email addresses, or phone numbers
Login credentials or passwords
The content of websites, emails, or messages

How the Data Is Used

Your data is processed only for the following purposes:
Providing internet access
Network security and abuse prevention
Performance monitoring and troubleshooting
Complying with legal and regulatory obligations
We do not use WiFi data for marketing, profiling, or advertising.

Lawful Basis (UK GDPR Article 6)

We process WiFi data under the following lawful bases:
Legitimate Interests – operating and securing a public network
Legal Obligation – responding to lawful requests from authorities

UniFi (Ubiquiti) and Data Processing

UniFi network logs are generated and stored on our local UniFi controller or UniFi OS system.
If UniFi Cloud access is enabled, limited diagnostic data may be transmitted to Ubiquiti for system management and support.
Ubiquiti acts as a data processor, not a controller, and processes data under contractual obligations.

BT as Internet Service Provider

BT provides internet connectivity only.
BT may independently process network-level data (such as IP traffic metadata) under its own Privacy Policy and legal obligations.
BT is a separate data controller for any data it processes.

Data Retention

WiFi connection logs are retained only for as long as necessary for security, diagnostics, and legal compliance.
Logs are automatically deleted or overwritten after a reasonable period.

Data Sharing

We do not sell or share WiFi data with third parties.
Data may be disclosed only:
To IT or network service providers under confidentiality agreements
To law enforcement or regulatory bodies where legally required

Security

We take reasonable technical and organisational measures to protect our network and logs.
However, public WiFi is inherently less secure. Users are advised to:
Avoid transmitting sensitive information
Use secure (HTTPS) websites
Use a VPN where possible
We are not responsible for the security of user devices or data transmitted over the network.

Your GDPR Rights

Under UK GDPR, you have the right to:
Access your personal data
Request correction or deletion (where applicable)
Object to or restrict processing
Lodge a complaint with the Information Commissioner’s Office (ICO)

Contact Details

For data protection enquiries:

The Queen’s Head Hotel
High Street
Buxton
SK17 6EU

info@queensbuxton.co.uk