azure-ravine
Home About Courses Contact Content is promotional in nature

GDPR Compliance Statement

Last Updated: August 19, 2026

Our Commitment to Data Protection

azure-ravine is committed to compliance with the UK General Data Protection Regulation (UK GDPR) and the Data Protection Act 2018. We recognize the importance of protecting your personal data and respecting your privacy rights.

This statement outlines how we comply with data protection law and what measures we have implemented to safeguard your information.

Data Controller Information

For the purposes of UK GDPR, the data controller is:

azure-ravine
15 Irongate
Derby DE1 3GA
United Kingdom
Email: [email protected]

Lawful Basis for Processing

We process your personal data only when we have a lawful basis to do so. Our processing activities rely on the following legal grounds:

Consent

Where you have given clear consent for us to process your personal data for specific purposes, such as receiving marketing communications or participating in optional surveys.

Contract

Processing is necessary for the performance of a contract to which you are party, such as enrollment in our educational courses and the delivery of those services.

Legal Obligation

Processing is necessary to comply with legal obligations, including maintaining educational records as required by law and responding to legitimate requests from authorities.

Legitimate Interests

Processing is necessary for our legitimate interests, provided those interests are not overridden by your rights and freedoms. This includes improving our services, ensuring network security, and conducting internal administration.

Data We Collect

We collect and process the following categories of personal data:

  • Identity Data: Name, age group, educational background
  • Contact Data: Email address, postal address
  • Technical Data: IP address, browser type, device information
  • Usage Data: Information about how you use our website and services
  • Communication Data: Inquiries, feedback, and correspondence with us

Your Rights Under UK GDPR

You have the following rights regarding your personal data:

Right to be Informed

You have the right to clear, transparent information about how we use your personal data. This statement and our Privacy Policy provide that information.

Right of Access

You can request a copy of the personal data we hold about you. This is commonly known as a "subject access request." We will provide this information within one month, free of charge.

Right to Rectification

You have the right to have inaccurate personal data corrected or incomplete data completed. We encourage you to notify us of any changes to your information.

Right to Erasure

Also known as the "right to be forgotten," you can request deletion of your personal data in certain circumstances, such as when it is no longer necessary for the purpose it was collected or when you withdraw consent.

Right to Restrict Processing

You can request that we limit the processing of your personal data in specific situations, such as when you contest the accuracy of the data or object to processing.

Right to Data Portability

You have the right to receive your personal data in a structured, commonly used, machine-readable format and to transmit that data to another controller.

Right to Object

You can object to processing based on legitimate interests or direct marketing. We will stop processing unless we can demonstrate compelling legitimate grounds that override your interests.

Rights Related to Automated Decision Making

We do not use automated decision-making or profiling. All enrollment decisions and communications involve human oversight.

How to Exercise Your Rights

To exercise any of your rights, please contact us in writing at:

Email: [email protected]
Post: azure-ravine, 15 Irongate, Derby DE1 3GA, United Kingdom

We will respond to your request within one month. In complex cases, we may extend this period by a further two months, but we will notify you if this is necessary.

You will not have to pay a fee to exercise your rights. However, we may charge a reasonable fee or refuse to comply with your request if it is clearly unfounded, repetitive, or excessive.

Data Security Measures

We have implemented appropriate technical and organizational measures to protect your personal data, including:

  • Encryption of data in transit and at rest
  • Access controls limiting who can view personal data
  • Regular security assessments and updates
  • Staff training on data protection obligations
  • Secure backup and recovery procedures

Data Retention

We retain personal data only for as long as necessary to fulfill the purposes for which it was collected and to comply with legal obligations.

Course enrollment records are retained for seven years after completion. Marketing consent records are kept until you withdraw consent. Technical logs are typically deleted after 90 days.

International Data Transfers

We primarily store and process data within the United Kingdom. If we transfer personal data outside the UK, we ensure appropriate safeguards are in place, such as standard contractual clauses or adequacy decisions.

Data Breach Notification

In the unlikely event of a data breach that poses a risk to your rights and freedoms, we will notify you and the Information Commissioner's Office (ICO) within 72 hours of becoming aware of the breach.

Third-Party Processors

We work with carefully selected third-party service providers who process data on our behalf. These processors are bound by contractual obligations to keep your data secure and process it only according to our instructions.

Children's Data

We provide educational services to children but collect personal information through enrollment forms completed by parents or guardians. We process children's data with appropriate safeguards and obtain parental consent where required.

Complaints

If you believe we have not handled your personal data properly, please contact us first so we can investigate and resolve your concerns.

You also have the right to lodge a complaint with the supervisory authority:

Information Commissioner's Office (ICO)
Wycliffe House, Water Lane
Wilmslow, Cheshire SK9 5AF
Telephone: 0303 123 1113
Website: ico.org.uk

Updates to This Statement

We may update this GDPR compliance statement to reflect changes in our practices or legal requirements. The most current version will always be available on our website with the revision date clearly indicated.

Contact Us

For questions about our GDPR compliance or to exercise your rights, contact us at:

Email: [email protected]
Post: azure-ravine, 15 Irongate, Derby DE1 3GA, United Kingdom

azure-ravine

Empowering financial literacy across generations in Derby and beyond.

Quick Links

  • About Us
  • Our Courses
  • Contact

Legal

  • Privacy Policy
  • GDPR
  • Cookies Policy
  • Terms of Use

Contact

15 Irongate, Derby DE1 3GA
United Kingdom

[email protected]

© 2026 azure-ravine. All rights reserved.