Privacy Policy

Data controller

The data controller responsible for this website is Gholrinnplaxyron, operating from Nuneham Estate, Oxford OX44 9PG, United Kingdom. Contact: correspondence@gholrinnplaxyron.world, telephone +44 1865 630150. Additional registry-style information appears on the Legal Info page.

Scope and legal bases

This Policy explains how we collect and process personal data when you visit gholrinnplaxyron.world, use the contact form, or interact with optional cookies. We apply the UK General Data Protection Regulation (UK GDPR), the Data Protection Act 2018, and, where relevant, the EU GDPR for visitors in the European Economic Area. We also consider other international privacy frameworks when designing defaults.

Depending on the activity, we rely on consent (cookies and marketing where used), contractual necessity (responding to enquiries you initiate), or legitimate interests (network security, aggregated analytics where permitted and proportionate).

Categories of personal data

We may process: identifiers (name, email address, phone number if you supply it), message content, technical data (IP address, browser type, device identifiers), usage data (pages viewed, approximate region from IP), and cookie identifiers when you accept optional cookies.

Purposes of processing

We use personal data to operate the website, deliver pages securely, respond to contact submissions, maintain optional analytics or marketing features when enabled, comply with law, defend legal claims, and improve accessibility and performance.

Retention periods

Contact form messages and related correspondence are retained for up to 24 months unless a longer period is required for unresolved disputes, legal obligations, or explicit ongoing consent. Server and security logs are retained for up to 90 days unless extended for incident investigation. Analytics or marketing records follow the retention periods disclosed by the respective processors and are minimised where possible.

Recipients and processors

We may share data with hosting providers, email delivery services, analytics or advertising partners only when you activate those categories in the cookie tool, and professional advisers where required. Processors are bound by written agreements that require appropriate safeguards.

International transfers

If personal data is transferred outside the United Kingdom or the European Economic Area, we use mechanisms recognised by applicable law, such as adequacy regulations or standard contractual clauses, and assess supplementary measures when needed.

Security measures

We implement HTTPS transport encryption, access controls for administrative accounts, malware monitoring on managed infrastructure, segmented backups, and staff training on data minimisation. No online service is risk-free; please use strong passwords on your devices.

Your rights

Subject to applicable law, you may request access, rectification, erasure, restriction, data portability, and objection to certain processing. Where processing is based on consent, you may withdraw consent at any time without affecting prior lawful processing. You may lodge a complaint with the Information Commissioner’s Office (ICO) for the United Kingdom, or with another UK supervisory authority where applicable. Consumers in the European Economic Area may also contact their local supervisory authority under EU GDPR.

To exercise rights, email correspondence@gholrinnplaxyron.world with the subject line “Data rights request” and enough detail for us to verify your identity.

Automated decision-making and profiling

We do not make decisions about you based solely on automated processing that produce legal or similarly significant effects. If optional analytics tools build audience segments, they are used at an aggregate level for site improvement and, where marketing cookies are enabled, for ad measurement—not for individual eligibility decisions about you.

Electronic marketing (PECR)

We comply with the Privacy and Electronic Communications Regulations 2003 (as amended) and related UK rules. Marketing emails to individuals are sent only with prior consent or another lawful basis recognised in the UK. You may opt out of marketing at any time using the link in the message or by emailing us.

Data Protection Act 2018

Where processing falls within Part 2, Chapter 2 of the Data Protection Act 2018 (processing for law enforcement) or other specialised parts, we will provide additional transparency if those regimes apply. General website and contact processing is governed by the UK GDPR as supplemented by the DPA 2018.

Children

The site is aimed at adults. We do not knowingly collect personal data from children under 13 without parental authority, and we align with the ICO Age Appropriate Design Code where online services likely to be accessed by children are concerned. If you believe a young person has submitted data inappropriately, contact us so we can delete it.

Changes

We will post updates on this page and adjust the “Last updated” date. Material changes may be highlighted through a short notice on the home page.