GDPR Compliance
Last Updated: July 21, 2026
Our Commitment to GDPR
dawn-dive is committed to protecting your personal data in accordance with the General Data Protection Regulation (GDPR) and UK data protection laws.
Data Controller
dawn-dive acts as the data controller for the personal information collected through our website and services.
Contact: [email protected]
Address: 42 Kensington High Street, London, W8 4PF, United Kingdom
Legal Basis for Processing
We process your personal data based on the following legal grounds:
- Consent: You have given clear consent for us to process your personal data for specific purposes
- Contract: Processing is necessary for a contract we have with you, or because you have asked us to take specific steps before entering into a contract
- Legal obligation: Processing is necessary for us to comply with the law
- Legitimate interests: Processing is necessary for our legitimate interests or the legitimate interests of a third party, provided those interests are not outweighed by your rights and interests
Your GDPR Rights
Under GDPR, you have the following rights regarding your personal data:
Right to Access
You have the right to request copies of your personal data. We may charge a small fee for this service.
Right to Rectification
You have the right to request that we correct any information you believe is inaccurate or complete information you believe is incomplete.
Right to Erasure
You have the right to request that we erase your personal data, under certain conditions.
Right to Restrict Processing
You have the right to request that we restrict the processing of your personal data, under certain conditions.
Right to Object to Processing
You have the right to object to our processing of your personal data, under certain conditions.
Right to Data Portability
You have the right to request that we transfer the data that we have collected to another organization, or directly to you, under certain conditions.
How to Exercise Your Rights
To exercise any of your GDPR rights, please contact us at [email protected]. We will respond to your request within one month.
You also have the right to lodge a complaint with the Information Commissioner's Office (ICO) if you believe we have not handled your data appropriately.
Data Retention
We retain your personal data only for as long as necessary to fulfill the purposes for which it was collected, including:
- To provide and maintain our services
- To comply with legal obligations
- To resolve disputes
- To enforce our agreements
When personal data is no longer needed, we securely delete or anonymize it.
Data Security
We implement appropriate technical and organizational measures to ensure a level of security appropriate to the risk, including:
- Encryption of data in transit and at rest
- Regular security assessments
- Access controls and authentication
- Staff training on data protection
- Incident response procedures
International Data Transfers
Your personal data is processed within the United Kingdom. If we need to transfer data outside the UK or European Economic Area, we ensure appropriate safeguards are in place to protect your data.
Automated Decision Making
We do not use automated decision-making or profiling that produces legal effects or similarly significant effects on individuals.
Data Breach Notification
In the event of a data breach that is likely to result in a risk to your rights and freedoms, we will notify you and the relevant supervisory authority within 72 hours of becoming aware of the breach.
Updates to This Policy
We may update this GDPR compliance statement from time to time. Any changes will be posted on this page with an updated revision date.
Contact Information
For any questions about GDPR compliance or to exercise your rights, please contact us:
Email: [email protected]
Address: 42 Kensington High Street, London, W8 4PF, United Kingdom