Our commitment to protecting your data under the General Data Protection Regulation.
Last updated: July 2026
Gorge-falcon is committed to compliance with the General Data Protection Regulation (GDPR) and ensuring that all personal data is processed lawfully, fairly, and transparently. This page provides information about how we meet our obligations under GDPR.
For the purposes of GDPR, gorge-falcon acts as a data controller for personal data we collect through our website and business activities. As a data controller, we determine the purposes and means of processing personal data and are responsible for ensuring compliance with data protection requirements.
In processing personal data, we adhere to the following GDPR principles:
As a data subject, you have the following rights:
You have the right to know how your personal data is being used. This information is provided in our Privacy Policy and this GDPR page.
You can request a copy of the personal data we hold about you. We will respond to valid requests within one month.
If any personal data we hold about you is inaccurate or incomplete, you have the right to have it corrected.
Also known as the right to be forgotten, you can request deletion of your personal data in certain circumstances, such as when it is no longer necessary for the purpose for which it was collected.
You can request that we limit how we use your data in certain situations, such as when you contest its accuracy.
You can request your personal data in a structured, commonly used, machine-readable format to transfer to another service provider.
You have the right to object to processing based on legitimate interests or for direct marketing purposes.
You have the right not to be subject to decisions based solely on automated processing if they have legal or similarly significant effects on you.
To exercise any of your GDPR rights, please contact us using the details below. We may need to verify your identity before processing your request. We will respond to all valid requests within one month, though this may be extended by two additional months for complex requests.
There is no fee for exercising your rights, though we may charge a reasonable fee for manifestly unfounded or excessive requests.
If we transfer personal data outside the European Economic Area, we ensure appropriate safeguards are in place, such as standard contractual clauses approved by the European Commission or transfers to countries with an adequacy decision.
In the event of a personal data breach that is likely to result in a risk to your rights and freedoms, we will notify the relevant supervisory authority within 72 hours of becoming aware of the breach. Where appropriate, we will also notify affected individuals without undue delay.
If you believe we have not handled your data appropriately, you have the right to lodge a complaint with a supervisory authority. In Ireland, this is the Data Protection Commission:
Data Protection Commission
21 Fitzwilliam Square South
Dublin 2, D02 RD28
Ireland
For any questions or concerns about how we handle your personal data, or to exercise your rights under GDPR, please contact us:
Email: [email protected]
Address: Unit 42, Sandyford Business Park, Dublin 18, D18 Y2X7, Ireland