Your GDPR Rights
Understanding your data protection rights under the General Data Protection Regulation (GDPR)
Introduction to GDPR
The General Data Protection Regulation (GDPR) is a comprehensive data protection law that came into effect on May 25, 2018. It applies to all organizations that process personal data of individuals in the European Economic Area (EEA) and the United Kingdom.
At Prospectx Ltd, we are committed to protecting your privacy and ensuring you can exercise your data protection rights. This page explains your rights under GDPR and how to exercise them.
Your Rights Under GDPR
1. Right to Be Informed
You have the right to be informed about the collection and use of your personal data. We provide this information through our Privacy Policy, which details:
- What data we collect
- Why we collect it
- How we use it
- Who we share it with
- How long we keep it
2. Right of Access (Subject Access Request)
You have the right to request a copy of the personal data we hold about you. This is commonly known as a "Subject Access Request" (SAR).
What we will provide:
- Confirmation that we process your personal data
- A copy of your personal data
- Information about how we use your data
- Categories of data we hold
- Recipients of your data
- Retention period for your data
Response time: We will respond within 30 days of receiving your request.
3. Right to Rectification
You have the right to have inaccurate or incomplete personal data corrected. If you believe any information we hold about you is incorrect or incomplete, please contact us and we will update it promptly.
4. Right to Erasure ("Right to be Forgotten")
You have the right to request deletion of your personal data in certain circumstances:
- The data is no longer necessary for the purpose it was collected
- You withdraw consent (where consent was the basis for processing)
- You object to processing and there are no overriding legitimate grounds
- The data was unlawfully processed
- The data must be erased to comply with a legal obligation
Note: This right is not absolute. We may be required to retain certain data for legal, accounting, or other legitimate purposes.
5. Right to Restrict Processing
You have the right to request that we restrict how we use your data in certain circumstances:
- You contest the accuracy of the data
- Processing is unlawful, but you don't want the data erased
- We no longer need the data, but you need it for legal claims
- You have objected to processing pending verification of legitimate grounds
When processing is restricted, we can store the data but not use it without your consent or for limited purposes.
6. Right to Data Portability
You have the right to receive your personal data in a structured, commonly used, and machine-readable format, and to transmit that data to another organization.
This right applies when: (a) processing is based on consent or contract, and (b) processing is carried out by automated means.
7. Right to Object
You have the right to object to processing of your personal data in certain circumstances:
- Direct marketing: You can object at any time to processing for direct marketing purposes (absolute right)
- Legitimate interests: You can object to processing based on legitimate interests or performance of a task in the public interest
When you object, we will stop processing unless we can demonstrate compelling legitimate grounds that override your interests.
8. Rights Related to Automated Decision-Making
You have the right not to be subject to decisions based solely on automated processing (including profiling) that produce legal or similarly significant effects. We do not currently use fully automated decision-making processes that would have legal or significant effects on you.
How to Exercise Your Rights
To exercise any of your GDPR rights, please contact us using the information below:
Email: hello@getprospectx.com
Subject Line: "GDPR Data Rights Request"
Address: Prospectx Ltd, 128 City Road, London, EC1V 2NX, United Kingdom
Please include in your request:
- Your full name
- Your email address or phone number we have on record
- Clear description of which right(s) you wish to exercise
- Any relevant details or information that will help us locate your data
- Proof of identity (to protect your data from unauthorized access)
Our Response Process
Verification (1-3 days)
We verify your identity to protect your data
Assessment (3-7 days)
We assess your request and locate relevant data
Response (within 30 days)
We fulfill your request or explain any limitations
In most cases, we respond within 30 days. If your request is complex or we receive multiple requests, we may extend this period by up to 60 additional days and will inform you of the extension and reasons.
Fees
We do not charge a fee for most requests to exercise your GDPR rights.
However, we may charge a reasonable fee or refuse to act on a request if it is clearly unfounded, excessive, or repetitive. We will inform you of any fees before processing your request.
Right to Lodge a Complaint
If you are not satisfied with how we have handled your personal data or your data rights request, you have the right to lodge a complaint with a supervisory authority.
UK Supervisory Authority:
Information Commissioner's Office (ICO)
Wycliffe House, Water Lane, Wilmslow, Cheshire, SK9 5AF
Helpline: 0303 123 1113
Website: https://ico.org.uk
We encourage you to contact us first so we can address your concerns directly.
Additional Information
For more information about how we process your personal data, please see our Privacy Policy.
If you have any questions about your GDPR rights or our data practices, please don't hesitate to contact us at hello@getprospectx.com