Privacy Policy for UK1TECH (Giotech Limited)
Last updated: 24 July 2026
1. Introduction
UK1TECH values your privacy and is committed to protecting your personal data. This Privacy Policy outlines how we collect, use, and protect your personal information. We comply with the UK General Data Protection Regulation (UK GDPR), the Data Protection Act 2018, and other applicable data protection laws, including international data protection regulations.
We are committed to upholding your rights and ensuring that your personal data is handled responsibly and in compliance with the relevant legislation.
2. Information About Us
UK1TECH is the trading name of Giotech Limited, a limited company registered in England under Company Number 05087427. Our registered office is located at 4 Poole Road, Hornchurch, Essex, RM11 3AS.
We are registered with the Information Commissioner’s Office (ICO) under certificate number ZA341791.
We are also certified in Cyber Essentials and ISO 27001:2022.
3. Our Role as a Controller and Processor
In most cases, when we collect personal data directly from you — for example when you contact us, visit our website, or engage us as a client for our own administrative and billing purposes — we act as the data controller and are responsible for how that data is used.
However, where we provide managed IT services to our clients, we may also process personal data held on our clients’ systems, or on their behalf, as part of delivering those services (for example, personal data belonging to our clients’ own employees or customers). In this capacity, we act as a data processor, and we process that data only in accordance with our clients’ documented instructions and the terms of the relevant Data Processing Agreement (DPA) in place with each client. Our clients remain the data controller for that data, and their own privacy notices govern how it is used.
If you believe your personal data has been processed by UK1TECH on behalf of one of our clients, please contact that organisation directly in the first instance.
4. What Does This Policy Cover?
This Privacy Policy explains how we collect, use, store, and protect your personal data and outlines your rights under the UK GDPR and other applicable privacy laws. It applies to all individuals who visit our website, use our services, or engage with us in any capacity, including clients, website visitors, and potential customers from outside the UK.
5. What is Personal Data?
Personal data is defined under the UK GDPR as any information that can identify a person, either directly or indirectly. This includes information like your name, contact details, online identifiers, location data, and any other data that can be used to identify you.
6. What Personal Data Do We Collect?
Depending on your relationship with us, we may collect and process the following types of personal data:
7. How Do We Use Your Personal Data?
We process personal data based on lawful grounds, including the necessity of processing for the performance of a contract, the fulfilment of legal obligations, consent, or legitimate business interests. We use your personal data for the following purposes:
8. UK GDPR Compliance and Alignment with EU GDPR
The UK GDPR is the data protection law that applies in the UK following its exit from the EU. While the UK is no longer part of the EU, the UK GDPR closely mirrors the EU GDPR, providing similar protections for personal data. We follow the UK GDPR because we are based in the UK and are subject to UK law.
Despite the UK’s departure from the EU, the UK GDPR maintains a high level of protection for personal data, and we adhere to it in the same way we would have under the EU GDPR. For individuals located in the EU, the UK GDPR provides adequate protection of personal data, and we follow the same standards as the EU GDPR for all our clients, whether they are based in the UK or the EU.
9. Applicable Laws and Regulations
We comply with the following:
10. Your Rights Under the UK GDPR and Other Applicable Laws
Under the UK GDPR, you have several important rights regarding your personal data:
11. How Long Do We Keep Your Personal Data?
We retain your personal data for no longer than necessary to fulfil the purposes for which it was collected, including legal, accounting, or reporting obligations. Retention periods vary depending on the type of data and the purpose for which it is held. As a general guide:
| Type of data | Retention period |
|---|---|
| Client contract and billing records | 6 years, to meet UK tax and accounting obligations |
| General correspondence and enquiries | Up to 2 years from the date of last contact |
| Marketing preferences | Until you withdraw consent or opt out |
| Website enquiry form submissions | Up to 12 months, unless a client relationship is established |
Personal details will be retained for as long as a contractual relationship exists, and contact details may be kept for an indefinite period after the end of that relationship, as required to establish the existence of that relationship.
12. How and Where Do We Store and Transfer Your Personal Data?
Your personal data is primarily processed and stored within the UK. Where we use third-party providers based outside the UK — i.e. cloud infrastructure or software providers who may process data in the United States or the European Economic Area — we ensure appropriate safeguards are in place, such as the UK International Data Transfer Agreement (IDTA) or Standard Contractual Clauses (SCCs), and that the receiving country or organisation provides an adequate level of protection for your personal data.
13. Do We Share Your Personal Data?
We will not share your personal data with third parties for marketing purposes. However, there are specific circumstances where we may share your data, including with the following categories of recipients:
All third-party service providers are contractually obligated to safeguard your data and to only process it for the purposes we specify. In the event of a business transaction such as a merger or acquisition, your data may also be transferred as part of that transaction.
14. How Can I Access My Personal Data?
You have the right to access the personal data we hold about you. This is known as a 'subject access request.' If you wish to request a copy of the personal data we hold or to exercise any of your other rights, please contact us using the details provided below.
We will respond to your request within one month. If the request is complex or we need more time, we may extend this period by up to two additional months, but we will keep you informed.
15. How to Contact Us
If you have any questions about how we process your personal data, or if you wish to exercise any of your rights under the UK GDPR, please contact us at:
You also have the right to lodge a complaint with the Information Commissioner’s Office (ICO), the UK’s independent authority on data protection, if you believe that we have infringed upon your rights. You can contact the ICO via their website: https://www.ico.org.uk or by phone at 0303 123 1113.
16. Changes to This Privacy Policy
We may update this Privacy Policy from time to time to reflect changes in our business practices, technology, or legal requirements. Any updates will be published on our website, and we encourage you to review this policy periodically to stay informed about how we are protecting your personal data.
17. Cookie Policy
We use cookies and similar technologies to enhance your experience on our website and for analytics purposes. For more details, please see our Cookie Policy.
Accreditations
Our accreditations - certificate of competency & authority


