Advertising content

Last updated: 1 January 2024

Our Commitment to GDPR

noble-verse is fully committed to complying with the UK General Data Protection Regulation (UK GDPR) and the Data Protection Act 2018. We take the protection of your personal data seriously and have implemented measures to ensure your rights are respected.

Data Controller Information

noble-verse acts as the data controller for personal information collected through our website and services.

Contact details:

noble-verse
42 Westfield Business Park
Bristol, BS1 4QR
United Kingdom

Email: [email protected]

Lawful Basis for Processing

We process personal data under the following lawful bases as defined by UK GDPR Article 6:

Consent (Article 6(1)(a))

Where you have given clear consent for us to process your personal data for a specific purpose, such as subscribing to communications or accepting cookies.

Contract (Article 6(1)(b))

Where processing is necessary for the performance of a contract with you or to take steps at your request before entering into a contract. This applies when you engage our advisory services.

Legitimate Interests (Article 6(1)(f))

Where processing is necessary for our legitimate interests, provided these do not override your fundamental rights and freedoms. This includes website analytics and service improvement.

Your Data Protection Rights

Under UK GDPR, you have the following rights regarding your personal data:

Right of Access (Article 15)

You have the right to request a copy of the personal data we hold about you. We will respond to your request within one month.

Right to Rectification (Article 16)

You have the right to request that we correct any inaccurate personal data or complete any incomplete data we hold about you.

Right to Erasure (Article 17)

You have the right to request that we delete your personal data in certain circumstances, such as when the data is no longer necessary for the purpose it was collected.

Right to Restriction of Processing (Article 18)

You have the right to request that we restrict the processing of your personal data in certain circumstances.

Right to Data Portability (Article 20)

You have the right to receive your personal data in a structured, commonly used, and machine-readable format and to transmit it to another controller.

Right to Object (Article 21)

You have the right to object to processing of your personal data based on legitimate interests or for direct marketing purposes.

Rights Related to Automated Decision Making (Article 22)

You have the right not to be subject to decisions based solely on automated processing that produce legal or similarly significant effects. We do not engage in such automated decision-making.

How to Exercise Your Rights

To exercise any of your data protection rights, please contact us at:

Email: [email protected]

We will respond to your request within one month. In complex cases, we may extend this period by up to two additional months, and we will inform you if this is necessary.

We will not charge a fee for most requests. However, if your request is clearly unfounded or excessive, we may charge a reasonable fee or refuse to comply.

Data Processing Activities

We process personal data for the following purposes:

Data Retention

We retain personal data only for as long as necessary to fulfil the purposes for which it was collected. Our standard retention periods are:

Data Security Measures

We implement appropriate technical and organisational measures to ensure a level of security appropriate to the risk, including:

Third-Party Processors

Where we use third-party service providers to process personal data on our behalf, we ensure they provide sufficient guarantees to implement appropriate technical and organisational measures in accordance with UK GDPR requirements.

International Data Transfers

We primarily store and process data within the UK. Where we transfer data outside the UK, we ensure appropriate safeguards are in place, such as Standard Contractual Clauses approved by the Information Commissioner's Office.

Data Breach Notification

In the event of a personal data breach that is likely to result in a risk to your rights and freedoms, we will notify the Information Commissioner's Office within 72 hours and, where required, notify affected individuals without undue delay.

Supervisory Authority

If you are not satisfied with how we handle your personal data or respond to your requests, you have the right to lodge a complaint with the Information Commissioner's Office:

Information Commissioner's Office
Wycliffe House, Water Lane
Wilmslow, Cheshire SK9 5AF
Website: ico.org.uk

Updates to This Notice

We may update this GDPR compliance notice from time to time. Material changes will be communicated through our website.