EU / GDPR / International Compliance

Effective: 26/02/26

USIA.CO.UK (“USIA”, “we”, “us”, “our”) is committed to protecting personal data and respecting privacy rights in accordance with applicable data protection laws, including:

  • UK General Data Protection Regulation (UK GDPR)

  • EU General Data Protection Regulation (EU GDPR)

  • Applicable international data protection regulations

This page explains how we comply with these regulations.

1. Lawful Basis for Processing

We process personal data only when there is a lawful basis to do so, including:

  • Consent provided by the user

  • Performance of a contract or service

  • Compliance with legal obligations

  • Legitimate interests that do not override individual rights

2. Transparency and Fair Processing

USIA ensures that personal data is:

  • Collected for specified, explicit, and legitimate purposes

  • Processed fairly and lawfully

  • Limited to what is necessary for its intended purpose

  • Kept accurate and up to date

3. Data Subject Rights

In accordance with GDPR, individuals have the right to:

  • Access their personal data

  • Request correction of inaccurate or incomplete data

  • Request deletion of personal data (“right to be forgotten”)

  • Restrict or object to processing

  • Request data portability

  • Withdraw consent at any time

Requests can be made via our Contact page. We respond within the legally required timeframes.

4. International Data Transfers

Where personal data is transferred outside the UK or EU, USIA ensures appropriate safeguards are in place, including:

  • Adequacy decisions

  • Standard Contractual Clauses (SCCs)

  • Secure processing agreements with service providers

5. Data Security Measures

We implement appropriate technical and organizational measures to protect personal data, including:

  • Secure servers and encrypted connections

  • Restricted access to personal data

  • Regular system monitoring and updates

Despite these measures, no system can guarantee absolute security.

6. Third-Party Processors

USIA may work with trusted third-party service providers (such as payment processors or hosting services). These providers process data only under our instructions and in compliance with GDPR standards.

7. Data Retention

Personal data is retained only for as long as necessary to fulfill its purpose or comply with legal obligations. When no longer required, data is securely deleted or anonymized.

8. Cookies and Tracking Technologies

USIA uses cookies and similar technologies in compliance with EU and UK cookie laws. Users may manage cookie preferences through browser settings or cookie consent tools where applicable.

9. Complaints and Supervisory Authorities

If you believe your data protection rights have been violated, you have the right to lodge a complaint with a supervisory authority in your country of residence or with the UK Information Commissioner’s Office (ICO).

10. Updates to This Statement

This compliance statement may be updated periodically to reflect changes in laws or practices. Updates take effect immediately upon publication on the website.

11. Contact

For questions related to GDPR, data protection, or international compliance, please contact us via the details provided on our Contact page.