Our commitment to protecting your data under the General Data Protection Regulation.
Last updated: January 2024
milliaddes is fully committed to complying with the General Data Protection Regulation (GDPR) and the UK Data Protection Act 2018. We take the protection of your personal data seriously and have implemented comprehensive measures to ensure your information is handled responsibly and securely.
For the purposes of data protection legislation, milliaddes acts as the data controller for personal information collected through our website and services. Our contact details are:
milliaddes
47 Queen Square
Bristol, BS1 4LH
United Kingdom
Email: [email protected]
The GDPR provides you with specific rights regarding your personal data. These rights include:
You have the right to request a copy of the personal information we hold about you. This is commonly known as a "subject access request." We will provide this information free of charge within one month of receiving your request.
If you believe any personal information we hold about you is inaccurate or incomplete, you have the right to request that we correct or complete this information.
Also known as the "right to be forgotten," you may request that we delete your personal data in certain circumstances, such as when the data is no longer necessary for the purpose it was collected.
You have the right to request that we restrict the processing of your personal data in certain situations, such as when you contest the accuracy of the data.
You have the right to receive your personal data in a structured, commonly used, and machine-readable format, and to transmit this data to another controller.
You have the right to object to the processing of your personal data in certain circumstances, including processing for direct marketing purposes.
You have the right not to be subject to decisions based solely on automated processing, including profiling, that produce legal or similarly significant effects on you.
To exercise any of your rights under GDPR, please contact us at [email protected]. We will respond to your request within one month. In some cases, we may need to verify your identity before processing your request.
Please note that certain exemptions may apply to some requests. If we are unable to comply with your request, we will explain the reasons why.
We process personal data for the following purposes:
When you book travel services through us, we may need to transfer your personal data to travel suppliers located outside the UK and European Economic Area. In such cases, we ensure appropriate safeguards are in place to protect your data, such as Standard Contractual Clauses approved by the relevant authorities.
We have implemented appropriate technical and organisational measures to protect personal data against accidental or unlawful destruction, loss, alteration, unauthorised disclosure, or access. Our security measures are regularly reviewed and updated to maintain the highest standards of data protection.
In the event of a personal data breach that is likely to result in a risk to your rights and freedoms, we will notify the Information Commissioner's Office (ICO) within 72 hours of becoming aware of the breach. Where the breach is likely to result in a high risk to your rights and freedoms, we will also notify you directly without undue delay.
If you are not satisfied with how we handle your personal data or your request, you have the right to lodge a complaint with the supervisory authority:
Information Commissioner's Office (ICO)
Wycliffe House
Water Lane
Wilmslow
Cheshire, SK9 5AF
United Kingdom
Website: ico.org.uk
We may update this GDPR compliance notice from time to time. Any changes will be posted on this page with an updated revision date. We encourage you to review this notice periodically.