GDPR Compliance

Your data protection rights under UK GDPR

Our Commitment to GDPR

cryptic-lands is committed to compliance with the UK General Data Protection Regulation and related data protection legislation. We take our responsibilities seriously and have implemented appropriate measures to protect your personal data and respect your privacy rights.

Data Controller Information

cryptic-lands acts as the data controller for personal information collected through this website. Our contact details are:

42 Kensington Gardens
London, W2 4RB
United Kingdom

Email: [email protected]

Legal Basis for Processing

We process your personal data under the following legal bases:

  • Consent: When you submit inquiry forms or subscribe to communications
  • Contract: When processing is necessary to fulfill our service agreements
  • Legitimate interests: For improving our services and website functionality
  • Legal obligation: When required to comply with UK law

Your Rights Under GDPR

You have the following rights regarding your personal data:

Right to Access

You can request a copy of the personal data we hold about you.

Right to Rectification

You can request that we correct any inaccurate or incomplete data.

Right to Erasure

You can request deletion of your personal data in certain circumstances.

Right to Restrict Processing

You can request that we limit how we use your data.

Right to Data Portability

You can request your data in a structured, commonly used format.

Right to Object

You can object to processing based on legitimate interests or for direct marketing.

Right to Withdraw Consent

Where processing is based on consent, you can withdraw it at any time.

How to Exercise Your Rights

To exercise any of your data protection rights, please contact us at [email protected]. We will respond to your request within one month of receipt. In some cases, we may need to verify your identity before processing your request.

You also have the right to lodge a complaint with the Information Commissioner's Office (ICO) if you believe your data protection rights have been violated. Visit ico.org.uk for more information.

Data Protection Measures

We have implemented the following measures to protect your data:

  • Regular security assessments and updates
  • Encryption of data in transit and at rest
  • Access controls and authentication mechanisms
  • Staff training on data protection principles
  • Data processing agreements with third-party providers
  • Regular backups and disaster recovery procedures

International Data Transfers

We primarily store and process data within the United Kingdom. If we need to transfer data outside the UK, we ensure appropriate safeguards are in place, such as standard contractual clauses or adequacy decisions, to protect your information in accordance with UK GDPR requirements.

Data Breach Notification

In the unlikely event of a data breach that poses a risk to your rights and freedoms, we will notify the relevant supervisory authority within 72 hours of becoming aware of the breach. If the breach is likely to result in high risk to you, we will also notify you directly without undue delay.

Updates to This Information

We may update this GDPR information periodically to reflect changes in our data processing practices or legal requirements. Please check this page regularly for the most current information.