Data Processing Policy (GDPR)
This Data Processing Policy explains how PR VENTURES LTD ("we," "our," or "us") processes personal data in compliance with the General Data Protection Regulation (GDPR) and other applicable data protection laws.
1. Data Controller Information
For the purposes of data protection laws, the data controller is:
PR VENTURES LTD
London,
United Kingdom
Email: contact@theprventures.com
2. Legal Basis for Processing
We process personal data based on one or more of the following legal grounds:
- Consent: You have given clear consent for us to process your personal data for a specific purpose.
- Contract: Processing is necessary for the performance of a contract with you or to take steps at your request before entering into a contract.
- Legal Obligation: Processing is necessary for compliance with a legal obligation to which we are subject.
- Vital Interests: Processing is necessary to protect someone's life.
- Legitimate Interests: Processing is necessary for our legitimate interests or the legitimate interests of a third party, unless there is a good reason to protect your personal data which overrides those legitimate interests.
3. Categories of Personal Data
We may process the following categories of personal data:
- Identity Data: Name, username, title
- Contact Data: Email address, telephone number, postal address
- Technical Data: IP address, browser type, device information, login data
- Usage Data: Information about how you use our website and services
- Transaction Data: Details about payments and purchases
- Profile Data: Your preferences, feedback, and survey responses
- Marketing Data: Your preferences for receiving marketing communications
4. Your Data Protection Rights
Under GDPR, you have the following rights regarding your personal data:
Right of Access (Article 15)
You have the right to request a copy of the personal data we hold about you and information about how we process it.
Right to Rectification (Article 16)
You have the right to request correction of inaccurate personal data and to have incomplete data completed.
Right to Erasure (Article 17)
You have the right to request deletion of your personal data in certain circumstances, such as when the data is no longer necessary for the purpose it was collected.
Right to Restrict Processing (Article 18)
You have the right to request that we restrict the processing of your personal data in certain circumstances.
Right to Data Portability (Article 20)
You have the right to receive your personal data in a structured, commonly used, and machine-readable format and to transmit it to another controller.
Right to Object (Article 21)
You have the right to object to the processing of your personal data based on legitimate interests or for direct marketing purposes.
Right Not to Be Subject to Automated Decision-Making (Article 22)
You have the right not to be subject to a decision based solely on automated processing, including profiling, which produces legal effects concerning you.
5. Exercising Your Rights
To exercise any of your rights, please contact us using the information provided below. We will respond to your request within one month of receipt. This period may be extended by two further months where necessary, taking into account the complexity and number of requests.
We may need to request specific information from you to help us confirm your identity and ensure your right to access your personal data.
6. International Data Transfers
We may transfer your personal data to countries outside the European Economic Area (EEA). When we do so, we ensure appropriate safeguards are in place:
- Transfers to countries with an adequacy decision from the European Commission
- Standard Contractual Clauses approved by the European Commission
- Binding Corporate Rules for transfers within corporate groups
- Other lawful transfer mechanisms as permitted by GDPR
7. Data Retention
We retain personal data only for as long as necessary to fulfill the purposes for which it was collected, including to satisfy any legal, accounting, or reporting requirements. The retention period may vary depending on the context of the processing and our legal obligations.
8. Data Security
We have implemented appropriate technical and organizational measures to ensure a level of security appropriate to the risk, including:
- Encryption of personal data in transit and at rest
- Regular testing and evaluation of security measures
- Access controls limiting who can access personal data
- Staff training on data protection requirements
- Incident response procedures for data breaches
9. Data Breach Notification
In the event of a personal data breach that is likely to result in a risk to your rights and freedoms, we will:
- Notify the relevant supervisory authority within 72 hours of becoming aware of the breach
- Notify affected individuals without undue delay if the breach is likely to result in a high risk to their rights and freedoms
- Document all breaches and the actions taken in response
10. Data Protection Officer
For any questions about this policy or our data protection practices, you may contact our Data Protection Officer at:
Email: dpo@theprventures.com
11. Right to Lodge a Complaint
If you believe that our processing of your personal data violates data protection laws, you have the right to lodge a complaint with a supervisory authority in the EU Member State of your habitual residence, place of work, or place of the alleged infringement.
12. Changes to This Policy
We may update this Data Processing Policy from time to time. We will notify you of any significant changes by posting the updated policy on our website and updating the "Last updated" date.
13. Contact Us
For any questions about this policy or to exercise your data protection rights, please contact us at:
PR VENTURES LTD
London,
Email: contact@theprventures.com
PR VENTURES LTD
London, United Kingdom · Last updated June 1, 2026