Guys and girls, you should all check the Data of Protection Act because like it says we have the right to:
"Find out what information is held about you on a computer and within some manual records, such as medical records, files held by public bodies and financial information held by credit reference agencies"
"to apply to a court to order a data controller to correct, block, remove or destroy personal details if they are inaccurate or contain expressions of opinion based on inaccurate information"
"to claim compensation through the courts from a data controller for damage, and in some cases distress, caused by any breach of the act"
Notification is a statutory requirement and every organisation that processes personal information must notify the Information Commissioner’s Office (ICO), unless they are exempt. Failure to notify is a criminal offence.
and a lot more, on here
The Data Protection Act (DPA) 1998, data protection policy - ICO