peak-otter
Advertising Content Services About Contact

GDPR Compliance

Last updated: June 10, 2026

Our Commitment to Data Protection

We are committed to protecting your personal data in accordance with the General Data Protection Regulation (GDPR) and applicable UK data protection legislation. This document outlines how we comply with GDPR requirements.

Data Controller Information

For the purposes of GDPR, the data controller is:

peak-otter
47 Broadwick Street
London, W1F 9QT
United Kingdom
[email protected]

Lawful Basis for Processing

We process your personal data only when we have a lawful basis to do so:

  • Consent: When you voluntarily provide information through our contact forms or service requests
  • Contract: When processing is necessary to perform services you have engaged us to provide
  • Legal Obligation: When we must process data to comply with accounting regulations, tax laws, and other legal requirements
  • Legitimate Interests: When processing is necessary for our legitimate business interests, provided these do not override your rights and interests

Your Rights Under GDPR

Right of Access

You have the right to request copies of your personal data that we hold.

Right to Rectification

You have the right to request correction of inaccurate or incomplete personal data.

Right to Erasure

You have the right to request deletion of your personal data in certain circumstances. Note that we may be required to retain certain information for legal or regulatory purposes.

Right to Restrict Processing

You have the right to request that we restrict processing of your personal data in certain situations.

Right to Data Portability

You have the right to request transfer of your personal data to another organisation or directly to you in a structured, commonly used, and machine-readable format.

Right to Object

You have the right to object to processing based on legitimate interests or for direct marketing purposes.

Rights Related to Automated Decision Making

We do not use automated decision-making or profiling in our services.

Exercising Your Rights

To exercise any of your GDPR rights, contact us at [email protected]. We will respond to your request within one month. If your request is complex or we receive multiple requests, we may extend this period by two months and will inform you accordingly.

Data Security Measures

We implement appropriate technical and organisational measures to ensure data security:

  • Secure data storage and transmission protocols
  • Access controls limiting data access to authorised personnel only
  • Regular security assessments and updates
  • Staff training on data protection requirements
  • Secure backup procedures

Data Retention

We retain personal data only for as long as necessary to fulfil the purposes for which it was collected:

  • Client financial records: Seven years from the end of the relevant financial year (in accordance with UK accounting regulations)
  • Contact inquiries: Two years from last contact
  • Website usage data: Thirteen months

International Data Transfers

Your personal data is processed within the United Kingdom and European Economic Area. If data is transferred outside these regions, we ensure appropriate safeguards are in place in accordance with GDPR requirements.

Data Breach Notification

In the event of a data breach that poses a risk to your rights and freedoms, we will notify the relevant supervisory authority within 72 hours of becoming aware of the breach. If the breach poses a high risk to your rights, we will also inform you directly.

Third-Party Processing

When we engage third-party service providers who process personal data on our behalf, we ensure they:

  • Implement appropriate security measures
  • Process data only according to our documented instructions
  • Comply with GDPR requirements
  • Enter into data processing agreements with us

Children's Data

Our services are not directed at children under 16 years of age. We do not knowingly collect or process personal data of children.

Right to Lodge a Complaint

If you believe we have not handled your personal data in accordance with GDPR, you have the right to lodge a complaint with the supervisory authority:

Information Commissioner's Office (ICO)
Website: ico.org.uk
Telephone: 0303 123 1113

Updates to This Information

We may update this GDPR compliance information periodically to reflect changes in our practices or legal requirements. We will post updated versions on this page with a revised date.

Contact Us

For questions about our GDPR compliance or to exercise your data protection rights, contact us at:

[email protected]
47 Broadwick Street, London, W1F 9QT, United Kingdom

peak-otter

Professional accounting and tax services for self-employed individuals across the United Kingdom.

Services

  • All Services
  • Bookkeeping
  • Tax Returns

Information

  • About Us
  • Contact
  • Privacy Policy
  • Terms of Use

Legal

  • GDPR
  • Cookie Policy

© 2026 peak-otter.org. All rights reserved.

We use essential cookies to ensure our website functions properly. By continuing to browse, you accept our use of cookies. Learn more