GDPR Compliance
Last Updated: June 2026
Our Commitment to GDPR
dusk-juniper is committed to full compliance with the UK General Data Protection Regulation (UK GDPR) and the Data Protection Act 2018. We respect your rights regarding personal data and have implemented appropriate measures to ensure your information is processed lawfully, fairly, and transparently.
Data Controller
dusk-juniper acts as the data controller for personal information collected through our services and website. We determine the purposes and means of processing your personal data.
Legal Basis for Processing
We process personal data based on the following legal grounds:
- Contract Performance: Processing necessary to fulfill service agreements and booking arrangements
- Legitimate Interests: Processing for business operations, service improvement, and client communication
- Legal Obligation: Processing required to comply with legal and regulatory requirements
- Consent: Where you have provided explicit consent for specific processing activities
Your GDPR Rights
Under GDPR, you have comprehensive rights regarding your personal data:
Right to Access
You have the right to request confirmation of whether we process your personal data and to receive a copy of that data.
Right to Rectification
You may request correction of inaccurate or incomplete personal data we hold about you.
Right to Erasure
You may request deletion of your personal data in certain circumstances, including when it is no longer necessary for the purposes for which it was collected.
Right to Restrict Processing
You may request that we limit how we use your personal data in specific situations.
Right to Data Portability
You have the right to receive your personal data in a structured, commonly used format and to transmit that data to another controller.
Right to Object
You may object to processing of your personal data based on legitimate interests or for direct marketing purposes.
Rights Related to Automated Decision-Making
We do not use automated decision-making or profiling that produces legal effects or similarly significant impacts.
Exercising Your Rights
To exercise any of your GDPR rights, please contact us at [email protected] with your request. We will respond within one month, though this may be extended in complex cases.
When submitting a request, please provide sufficient information to allow us to verify your identity and locate your data.
Data Retention
We retain personal data only for as long as necessary to fulfill the purposes outlined in our Privacy Policy or as required by legal obligations. Retention periods vary based on:
- Nature of the data collected
- Purpose of processing
- Legal and regulatory requirements
- Legitimate business needs
Data Security
We implement appropriate technical and organizational security measures to protect personal data against unauthorized access, loss, destruction, or alteration. These measures include:
- Secure data storage systems
- Access controls and authentication
- Regular security assessments
- Staff training on data protection
- Confidentiality agreements with personnel
Data Transfers
Personal data is processed and stored within the United Kingdom. If data transfers outside the UK become necessary, we ensure appropriate safeguards are in place in accordance with GDPR requirements.
Data Breach Notification
In the event of a personal data breach that poses a risk to your rights and freedoms, we will notify the relevant supervisory authority within 72 hours of becoming aware of the breach. If the breach presents a high risk, we will also notify affected individuals without undue delay.
Children's Data
Our services are not directed toward children under 18 years of age. We do not knowingly collect or process personal data from children.
Third-Party Processors
Where we engage third-party service providers who process personal data on our behalf, we ensure they comply with GDPR requirements through appropriate contractual agreements and due diligence.
Supervisory Authority
You have the right to lodge a complaint with the Information Commissioner's Office (ICO), the UK's supervisory authority for data protection:
Information Commissioner's Office
Wycliffe House
Water Lane
Wilmslow
Cheshire SK9 5AF
Website: www.ico.org.uk
Updates to This Information
We may update this GDPR compliance information to reflect changes in our practices or legal requirements. Significant changes will be communicated through appropriate channels.
Contact for Data Protection Matters
For questions, concerns, or requests regarding GDPR compliance or data protection:
Email: [email protected]
Address: Manchester Business District, Greater Manchester, United Kingdom
Related Policies
For additional information about how we handle your data, please review: