Last updated: July 21, 2026
root-oryx is committed to protecting your personal data and respecting your privacy rights in accordance with the General Data Protection Regulation (GDPR).
The data controller responsible for your personal data is:
root-oryx
47 Whiteladies Road
Bristol BS8 2LS
United Kingdom
Email: [email protected]
Under the GDPR, you have the following rights regarding your personal data:
You have the right to request copies of your personal data. We may charge a reasonable fee if your request is clearly unfounded or excessive.
You have the right to request that we correct any information you believe is inaccurate or complete information you believe is incomplete.
You have the right to request that we erase your personal data, under certain conditions.
You have the right to request that we restrict the processing of your personal data, under certain conditions.
You have the right to request that we transfer the data we have collected to another organization, or directly to you, under certain conditions.
You have the right to object to our processing of your personal data, under certain conditions.
You have the right not to be subject to a decision based solely on automated processing, including profiling, which produces legal effects concerning you or similarly significantly affects you.
How to Exercise Your Rights: To exercise any of these rights, please contact us at [email protected]. We will respond to your request within one month. If your request is complex or numerous, we may extend this period by two further months, and we will inform you of this.
We process your personal data under the following lawful bases:
We collect and process the following categories of personal data:
We will only retain your personal data for as long as necessary to fulfill the purposes we collected it for, including for the purposes of satisfying any legal, accounting, or reporting requirements.
To determine the appropriate retention period for personal data, we consider the amount, nature, and sensitivity of the personal data, the potential risk of harm from unauthorized use or disclosure, the purposes for which we process your personal data, and applicable legal requirements.
We have implemented appropriate security measures to prevent your personal data from being accidentally lost, used, accessed in an unauthorized way, altered, or disclosed. We limit access to your personal data to those employees, agents, contractors, and other third parties who have a business need to know.
We do not transfer your personal data outside the European Economic Area (EEA). Should this change in the future, we will ensure appropriate safeguards are in place to protect your data.
You have the right to lodge a complaint with a supervisory authority, in particular in the EU member state of your habitual residence, place of work, or place of the alleged infringement if you consider that the processing of your personal data infringes the GDPR.
In the United Kingdom, the supervisory authority is the Information Commissioner's Office (ICO):
Information Commissioner's Office
Wycliffe House, Water Lane
Wilmslow, Cheshire SK9 5AF
Tel: 0303 123 1113
Website: www.ico.org.uk
We may update this GDPR compliance notice from time to time. Any changes will be posted on this page with an updated revision date.
If you have any questions about this GDPR compliance notice or wish to exercise your rights, please contact us at [email protected].