GDPR Information

We are committed to protecting your personal data in accordance with the General Data Protection Regulation (GDPR) and UK data protection laws.

Legal basis for processing

We process your personal data under the following legal bases:

Your rights under GDPR

As a data subject, you have the following rights:

Right to access

You can request a copy of the personal data we hold about you.

Right to rectification

You can request correction of inaccurate or incomplete personal data.

Right to erasure

You can request deletion of your personal data in certain circumstances.

Right to restriction

You can request that we limit the processing of your personal data in specific situations.

Right to data portability

You can request a copy of your data in a structured, machine-readable format.

Right to object

You can object to processing of your personal data based on legitimate interests.

Rights related to automated decision-making

You have the right not to be subject to decisions based solely on automated processing.

How to exercise your rights

To exercise any of these rights, please contact us at [email protected]. We will respond to your request within one month.

Data protection officer

For data protection inquiries, you can contact our designated representative at [email protected].

Complaints

If you believe we have not handled your personal data properly, you have the right to lodge a complaint with the Information Commissioner's Office (ICO), the UK's data protection authority.

ICO contact details:
Website: ico.org.uk
Telephone: 0303 123 1113

International data transfers

We do not transfer your personal data outside the United Kingdom or European Economic Area. If this changes, we will ensure appropriate safeguards are in place.

Data security

We implement technical and organizational measures to ensure a level of security appropriate to the risk, including:

Data breach notification

In the event of a data breach that poses a risk to your rights and freedoms, we will notify you and the relevant supervisory authority within 72 hours of becoming aware of the breach.