Last Updated: June 18, 2026
snug-mist is committed to protecting your personal data in accordance with the UK General Data Protection Regulation (UK GDPR) and the Data Protection Act 2018. This page outlines how we comply with data protection principles and respect your rights.
For the purposes of data protection legislation, snug-mist is the data controller responsible for the personal information we process. You can contact us regarding data protection matters at [email protected].
We adhere to the following data protection principles:
Under the UK GDPR, you have the following rights regarding your personal data:
You have the right to request a copy of the personal information we hold about you. We will provide this information within one month of your request.
If you believe any information we hold about you is inaccurate or incomplete, you have the right to request that we correct it.
You may request that we delete your personal data in certain circumstances, such as when the data is no longer necessary for the purposes it was collected. Please note that we may be required to retain certain information for legal or regulatory compliance.
You have the right to request that we restrict the processing of your personal data in specific situations, such as when you contest the accuracy of the data.
You have the right to receive your personal data in a structured, commonly used, and machine-readable format and to transmit that data to another controller.
You have the right to object to the processing of your personal data in certain circumstances, including processing based on legitimate interests or for direct marketing purposes.
Where we rely on your consent to process personal data, you have the right to withdraw that consent at any time.
If you believe we have not handled your personal data appropriately, you have the right to lodge a complaint with the Information Commissioner's Office (ICO), the UK supervisory authority for data protection.
To exercise any of your GDPR rights, please contact us at [email protected]. We will respond to your request within one month. In complex cases, we may extend this period by two additional months, and we will inform you if this is necessary.
We implement comprehensive security measures to protect your personal data, including:
In the unlikely event of a data breach that poses a risk to your rights and freedoms, we will notify you and the ICO within 72 hours of becoming aware of the breach, as required by UK GDPR.
We do not routinely transfer personal data outside the United Kingdom. If such transfers become necessary, we will ensure appropriate safeguards are in place to protect your data in accordance with UK GDPR requirements.
We may update this GDPR compliance statement periodically to reflect changes in our practices or legal requirements. Please review this page regularly to stay informed about how we protect your data.
For questions about our GDPR compliance or to exercise your data protection rights, please contact us at [email protected].