Legal
Privacy Policy
Last updated: 17 May 2025
1. Who we are
Pacific Infotech Group Ltd (“we”, “us”, “our”) is the data controller responsible for the personal data collected through this website (https://pacificinfotechgroup.co.uk) and through the course of providing our IT services.
We are registered in England and Wales. Our registered address is:
Pacific Infotech Group LtdLondon
United Kingdom
You can contact us about privacy matters at: business@pacificinfotechgroup.co.uk
2. What personal data we collect
We collect personal data in the following ways:
Information you provide directly
- Name, job title, and company name
- Email address and telephone number
- Postal address (where relevant to service delivery)
- Messages and correspondence submitted through our contact form or by email
- Details of your IT environment, systems, or requirements shared during consultations
Information collected automatically
- IP address and browser type
- Pages visited, time spent on site, and referring URL
- Device type and operating system
- Cookie identifiers (see our Cookie Policy)
Information from third parties
- Business contact details from LinkedIn or other professional networks where you have engaged with us publicly
- Referral details from existing clients or business partners
3. How we use your personal data
We use your personal data for the following purposes and on the following legal bases:
| Purpose | Legal basis (UK GDPR) |
|---|---|
| Responding to enquiries and contact form submissions | Legitimate interests / pre-contractual steps |
| Providing and managing our IT services under a contract | Performance of a contract |
| Sending service updates, invoices, and operational communications | Performance of a contract |
| Sending marketing communications about our services (where you have opted in or are an existing client) | Consent / Legitimate interests |
| Improving our website and services through analytics | Legitimate interests |
| Complying with legal and regulatory obligations | Legal obligation |
| Preventing fraud and maintaining the security of our systems | Legitimate interests / Legal obligation |
4. Marketing communications
We may contact you by email about services, updates, or resources that may be of interest to you if:
- You have given us explicit consent to do so, or
- You are an existing client or business contact and we are contacting you about similar services (soft opt-in under PECR)
You can unsubscribe from marketing communications at any time by clicking the unsubscribe link in any email we send, or by emailing us at business@pacificinfotechgroup.co.uk.
5. Who we share your data with
We do not sell your personal data. We may share it with the following categories of third parties where necessary:
- Service delivery partners: technology vendors, subcontractors, or engineers engaged to assist in delivering our IT services
- Cloud and software providers: Microsoft 365, Google Workspace, helpdesk, CRM, and invoicing platforms used in the operation of our business
- Analytics providers: we use privacy-respecting website analytics (see Cookie Policy)
- Professional advisers: accountants, solicitors, and insurers under obligations of confidentiality
- Legal and regulatory authorities: where required by law, court order, or to protect our legal rights
All third-party processors are bound by data processing agreements and are required to handle your data in accordance with applicable law.
6. International data transfers
We primarily store and process data within the United Kingdom and the European Economic Area. Where data is transferred to countries outside the UK or EEA, we ensure appropriate safeguards are in place, such as:
- UK adequacy decisions made by the Secretary of State
- Standard Contractual Clauses (SCCs) approved by the ICO
- Other appropriate transfer mechanisms under UK GDPR
7. How long we keep your data
| Data type | Retention period |
|---|---|
| Enquiry / contact form data (non-client) | 2 years from last contact |
| Client contract and service records | 7 years from contract end (for legal/tax purposes) |
| Financial records and invoices | 7 years (HMRC requirement) |
| Marketing consent records | Until consent is withdrawn + 1 year |
| Website analytics data | 26 months (then anonymised or deleted) |
| Job applicant data (unsuccessful) | 6 months from notification |
8. Your rights under UK GDPR
Under the UK General Data Protection Regulation (UK GDPR) and the Data Protection Act 2018, you have the following rights:
- Right of access: request a copy of the personal data we hold about you (Subject Access Request)
- Right to rectification: request correction of inaccurate or incomplete data
- Right to erasure: request deletion of your data where there is no compelling reason to continue processing
- Right to restriction: request that we limit processing of your data in certain circumstances
- Right to data portability: receive your data in a structured, machine-readable format
- Right to object: object to processing based on legitimate interests, including direct marketing
- Rights related to automated decision-making: not to be subject to solely automated decisions that significantly affect you
To exercise any of these rights, please email business@pacificinfotechgroup.co.uk. We will respond within one calendar month. We may need to verify your identity before processing your request.
If you are unhappy with how we handle your data, you have the right to lodge a complaint with the Information Commissioner’s Office (ICO) at ico.org.uk or by calling 0303 123 1113.
9. Security
We implement appropriate technical and organisational measures to protect your personal data against unauthorised access, loss, or disclosure. These include encrypted data transmission (TLS/SSL), access controls, and staff awareness of data protection obligations.
No method of transmission over the internet is 100% secure. While we take data security seriously, we cannot guarantee absolute security. In the event of a data breach that poses a risk to your rights and freedoms, we will notify you and the ICO as required by law.
10. Cookies
We use cookies and similar technologies on our website. Please see our Cookie Policy for full details of the cookies we use and how to manage your preferences.
11. Links to third-party websites
Our website may contain links to third-party websites. We are not responsible for the privacy practices of those websites and encourage you to read their privacy policies before providing any personal data.
12. Changes to this policy
We may update this Privacy Policy from time to time. When we make material changes, we will update the “last updated” date at the top of this page. We encourage you to review this policy periodically. Continued use of our website after any changes constitutes your acceptance of the updated policy.
13. Contact us
If you have any questions about this Privacy Policy or how we handle your personal data, please contact us:
Pacific Infotech Group LtdLondon
United Kingdom
business@pacificinfotechgroup.co.uk
You can also use our contact form.
