UK GDPR Compliance
Midlands Business Hub is committed to respecting your data protection rights under the UK General Data Protection Regulation (UK GDPR). This page explains how we comply with the UK GDPR and how you can exercise your rights as a data subject.
Scope and Applicability
The UK GDPR applies to the processing of personal data of individuals in the United Kingdom. While Midlands Business Hub does not collect personal data through user registration or accounts, we may process limited personal data automatically through website analytics, server logs, and cookies to improve user experience and site functionality.
Your Rights Under UK GDPR
Under the UK GDPR, you have the following rights:
- Right of access: You can request confirmation of whether we process your personal data and receive a copy of it.
- Right to rectification: You can request correction of inaccurate or incomplete personal data.
- Right to erasure (right to be forgotten): You can request deletion of your personal data where there is no compelling reason for its continued processing.
- Right to restriction of processing: You can request we limit how we use your data under certain conditions.
- Right to data portability: You may request your data in a structured, commonly used, and machine-readable format.
- Right to object: You can object to processing based on legitimate interests, including profiling.
- Right not to be subject to automated decision-making: You have the right not to be subject to decisions based solely on automated processing.
How We Comply
Midlands Business Hub complies with the UK GDPR by:
- Only collecting data necessary for site functionality and analytics
- Using anonymised or pseudonymised data where possible
- Implementing technical and organisational measures to secure data
- Providing clear information about data usage in our Privacy Policy
- Respecting user choices regarding cookies and tracking
Data We Process
We may process the following categories of personal data:
- IP addresses (anonymised in analytics)
- Browser type and device information
- Pages visited and time spent on site
- Cookie identifiers (for functionality and analytics)
No personally identifiable information is stored in databases. All data is processed for legitimate interest in improving our service and ensuring website security.
Legal Basis for Processing
Our processing of personal data is based on legitimate interest under Article 6(1)(f) of the UK GDPR. This includes: ensuring website functionality, improving user experience, conducting analytics, and maintaining site security. We balance these interests against your rights and freedoms.
How to Exercise Your Rights
To exercise any of your rights under the UK GDPR, please contact us using the details below. We will verify your identity to protect your data and respond without undue delay.
Response Timeframes
We aim to respond to all requests within one month of receipt. If your request is complex or numerous, we may extend this period by up to two additional months, informing you within one month of receipt.
No Discrimination Policy
We will not deny you services, charge different prices, or provide a different quality of service because you exercised your rights under the UK GDPR.
Updates and Changes
We may update this page periodically to reflect changes in law or our practices. The latest version will always be posted here with an updated effective date.
Contact Information
If you have any questions, requests, or complaints regarding your data rights under the UK GDPR, please contact:
Damon Falk
66 Haymarket Terrace
Edinburgh EH12 5LQ
Scotland, United Kingdom
Email: [email protected]
You also have the right to lodge a complaint with the Information Commissioner's Office (ICO), the UK’s independent supervisory authority for data protection. Visit ico.org.uk for more information.