Last Updated: October 7, 2026
Amethyst-glade is committed to protecting your personal data in accordance with the UK General Data Protection Regulation (UK GDPR) and the Data Protection Act 2018. This page outlines how we comply with these regulations and your rights as a data subject.
Amethyst-glade acts as the data controller for personal information collected through our website and course enrollment processes.
Contact: [email protected]
You have the right to request access to the personal data we hold about you. We will provide a copy of your data in a commonly used electronic format.
You may request that we correct any inaccurate or incomplete personal data we hold about you.
You have the right to request deletion of your personal data in certain circumstances, such as when the data is no longer necessary for the purposes for which it was collected, or if you withdraw consent.
You may request that we restrict processing of your personal data in specific situations, such as when you contest the accuracy of the data or object to processing.
You have the right to receive your personal data in a structured, commonly used, machine-readable format and to transmit that data to another controller.
You may object to processing of your personal data where we rely on legitimate interests as the legal basis for processing.
We do not use automated decision-making or profiling that produces legal effects or similarly significantly affects you.
To exercise any of these rights, please submit a request to [email protected] with the subject line "Data Subject Request." We will respond within one month of receiving your request.
We may need to verify your identity before processing your request. If your request is particularly complex or you have made multiple requests, we may extend the response period by two months, but we will inform you of this.
We process personal data for the following purposes:
We process personal data based on:
We only share your personal data with third parties when necessary for service delivery, legal compliance, or with your explicit consent. All third parties are required to maintain appropriate security measures and process data only as instructed.
We retain personal data only for as long as necessary to fulfill the purposes outlined in our Privacy Policy or as required by law. Course records are typically retained for seven years.
We do not routinely transfer personal data outside the United Kingdom. If such transfers become necessary, we will ensure appropriate safeguards are in place as required by UK GDPR.
We implement appropriate technical and organizational measures to ensure a level of security appropriate to the risk, including encryption, access controls, and regular security assessments.
In the event of a data breach that is likely to result in a risk to your rights and freedoms, we will notify you without undue delay and, where required, report the breach to the Information Commissioner's Office within 72 hours.
If you believe we have not handled your personal data in accordance with GDPR, you have the right to lodge a complaint with the Information Commissioner's Office (ICO):
Information Commissioner's Office
Wycliffe House
Water Lane
Wilmslow
Cheshire SK9 5AF
Website: www.ico.org.uk
We may update this GDPR compliance information periodically. The current version will always be available on this page with the last updated date indicated at the top.