crossborder
BOOK A CONSULTATION

Privacy and Legal Policy

Privacy and Legal Policy

Cross Borders - Privacy and Legal Policy

Last revised: 20th January, 2025

At Cross Borders, accessible via crossbordersltd.co.uk, we are dedicated to safeguarding your personal information and ensuring your privacy. This Privacy Policy explains how we collect, use, store, and protect your personal data in full compliance with the UK General Data Protection Regulation (UK GDPR) and the Data Protection Act 2018.

Cross Borders Ltd. (“Cross Borders,” “we,” “our,” or “us”) places great importance on the privacy of all individuals who visit or use our online services. We are committed to maintaining the confidentiality, integrity, and accessibility of any information entrusted to us. This Privacy Policy applies to all users of the Cross Borders website www.crossbordersltd.co.uk and any other services, applications, domains, and products we offer (referred to as “Services”).

Please take the time to read this Policy carefully to understand how we collect, use, and manage your personal information, as well as the choices you have in relation to your data. This Policy is an integral part of our Terms of Use and complements our commitment to data protection.

Compliance with Data Protection Laws

Cross Borders adheres strictly to the UK General Data Protection Regulation (UK GDPR) and the Data Protection Act 2018 to ensure that your personal data is processed lawfully, fairly, and transparently.

If you have any questions or need further clarification regarding this policy, please contact us. This policy applies solely to data collected through our website and does not cover offline data collection or other communication channels.

Consent

By accessing and using our website, you agree to the practices outlined in this Privacy Policy, including the collection and processing of your personal data as detailed below.

Information We Collect

We collect and process the following types of personal data:

  1. Information You Provide:
    • Name, email address, gender, phone number, and other contact details shared through forms or direct communication.
    • Information provided during registration or account creation, such as company name, postal address, and any preferences or notes.
    • The content of messages, attachments, or documents shared with us.
  2. Automatically Collected Information:
    • IP address, browser type, Internet Service Provider (ISP), timestamps, referring/exit pages, and click data via log files.
    • Cookies and similar technologies to monitor website usage and enhance user experience.

We ensure that data collection is necessary, proportionate, and processed in accordance with UK data protection regulations.

How We Use Your Information

We process your personal data in compliance with the UK GDPR and the Data Protection Act 2018 for the following purposes:

  1. Website Operations:

    To manage and enhance the functionality of our website, ensuring smooth navigation, form submissions, and account management. This aligns with Article 6(1)(b) of the UK GDPR, which allows processing for contract performance.

  2. User Experience Improvement:

    By analyzing user behaviour, we make improvements to the website and customize content to suit user preferences, in line with our legitimate interests as per Article 6(1)(f) of the UK GDPR.

  3. Customer Support:

    To respond to inquiries and provide the necessary support, which is necessary for contract performance or pre-contractual obligations under Article 6(1)(b) of the UK GDPR.

  4. Marketing Communications:

    With your explicit consent, we may send promotional or marketing communications. You can withdraw consent at any time via an opt-out mechanism, as required by Article 6(1)(a) of the UK GDPR.

  5. Fraud Prevention and Security:

    To detect and prevent fraudulent activities or security threats, which is necessary for compliance with legal obligations under Article 6(1)(c) of the UK GDPR.

  6. Legal Compliance:

    We may disclose your information when required by law or to protect our rights, property, or safety, or that of others.

  7. Sharing with Third Parties:

    We may share your information with third parties only when you provide explicit consent, as required by Article 6(1)(a) of the UK GDPR. You may withdraw consent at any time.

Aggregated or De-identified Data

We may share aggregated or de-identified data with third parties for research, analytics, or service improvement purposes. This data cannot be traced back to any individual.

Third-Party Data Sharing

We may share data with third-party service providers for functions such as service delivery, legal compliance, or protecting legitimate business interests, in accordance with the UK GDPR. All third-party processors are required to comply with data protection laws.

Data Protection in Third-Party Agreements

We enter into legally binding agreements with third-party service providers to ensure compliance with data protection standards, including clear instructions on data processing and confidentiality commitments.

International Data Transfers

When transferring data outside the UK to non-adequate countries, we implement safeguards such as Standard Contractual Clauses (SCCs) or similar measures, in compliance with Chapter V of the UK GDPR.

Data Storage and Security

We take robust measures to protect your data, using encryption, firewalls, and other advanced security protocols to prevent unauthorized access or data breaches. We conduct regular audits to evaluate the effectiveness of our security systems.

Compliance with Legal Framework

Our data processing activities comply with the following legal requirements:

  • UK GDPR: Governs the lawful processing of personal data, ensuring transparency, security, and respect for user rights.
  • Data Protection Act 2018: Provides additional provisions specific to the UK.
  • Privacy and Electronic Communications Regulations (PECR): Regulates email marketing, cookies, and other communications.

Log Files

We use log files to track non-personally identifiable data such as IP addresses, browser types, ISP details, timestamps, referring pages, and click data. This helps us analyze website performance, user behavior, and ensure security. The data is anonymized and does not identify individuals.

Cookies and Web Beacons

Cookies are used to enhance your experience on our website. They help us remember preferences, optimize website performance, and analyze usage patterns. You can disable cookies through your browser settings, although this may affect some website functionalities.

Third-Party Privacy Policies

We may collaborate with third-party service providers to improve our services, such as analytics, advertising, or payment processing. These third parties may have their own privacy policies, and we encourage users to review them to understand how they handle data.

Your Data Protection Rights

You have the following rights regarding your personal data under the UK GDPR:

  1. Right to Access:

    You can request a copy of the data we hold about you and information on how it is used.

  2. Right to Rectification:

    You can request corrections to any inaccurate or incomplete data.

  3. Right to Erasure:

    You can request the deletion of your data under certain conditions.

  4. Right to Restrict Processing:

    You can request that we limit how we process your data.

  5. Right to Data Portability:

    You can request the transfer of your data to another organization in a structured, machine-readable format.

  6. Right to Object:

    You can object to the processing of your data, particularly for direct marketing purposes.

Exercising Your Rights

To exercise any of these rights, please contact us at hello@crossbordersltd.co.uk. We will respond to your request within one month, though this period may be extended for complex requests.

Children's Privacy

Our Services are not intended for children under the age of 13. We do not knowingly collect personal information from children. If we learn that we have inadvertently collected data from a child under 13, we will delete it.

Data Security

We implement technical and organizational safeguards to protect your data from unauthorized access or loss. However, we cannot guarantee the security of data transmitted via the internet, and you do so at your own risk.

Technical Safeguards

We use encryption, firewalls, intrusion detection systems, and multi-factor authentication to protect your data.

Organizational Safeguards

Access to your data is restricted to authorized personnel only, and our staff undergoes regular training on data security.

Incident Response

In the event of a data breach, we have a response plan in place to notify both regulatory authorities and affected individuals promptly.

Policy Updates

We may update this Privacy Policy to reflect changes in our practices, legislation, or business operations. Updates will be posted on this page, and we encourage you to review it periodically. The date of the most recent revision is noted at the top of the page.

For further inquiries or concerns, please contact us at hello@crossbordersltd.co.uk or by mail at 35-37 Ludgate Hill, London, EC4M 7JN, United Kingdom.

This Privacy Policy reaffirms our commitment to protecting your privacy and maintaining transparency in our data handling practices.

Get in touch for better health

We specialize in personalized medical procedures with world-class surgeons and facilities. Be informed, feel comfortable and get the look you want, without the premium price tag. Find out why we're different and how we can help you.