TytoTYTO
Policies

Data Protection and Privacy Policy

Sets out how Tyto Marketing handles personal data under UK GDPR, covering security, rights and retention.

Purpose

Tyto Marketing Limited is committed to protecting personal data and complying with the UK General Data Protection Regulation (UK GDPR) and Data Protection Act 2018.

Data We Process

The company may process:

  • Client contact details
  • Supplier information
  • Business development contacts
  • Employee and contractor records
  • Website enquiries

Data Protection Principles

Tyto Marketing will:

  • Process data lawfully, fairly and transparently.
  • Collect only data necessary for legitimate business purposes.
  • Maintain accurate records.
  • Protect personal data against unauthorised access.
  • Retain data only as long as necessary.

Data Security

Appropriate technical and organisational measures are maintained including:

  • Password protection
  • Secure cloud storage
  • Access controls
  • Regular software updates

Third-Party Services

The company may use approved service providers including CRM, email, accounting and marketing platforms that comply with applicable privacy regulations.

Data Subject Rights

Individuals may request access, correction or deletion of their personal data in accordance with UK GDPR requirements.

Contact

Privacy enquiries should be directed to:

Charles Weatherstone, Managing Director, Tyto Marketing Limited

Review

This policy is reviewed annually.

Version 1.0August 2026Approved by Charles Weatherstone, Managing Director