Introduction
At MDIT, we value your privacy and are dedicated to safeguarding and respecting your personal data. This Privacy Policy explains what information we collect when you visit https://mdit.uk, how we use it, and the measures we take to protect it.
By using our website you consent to the practices described here. Please also read our Terms of use, which govern your use of the site.
Last updated: 2026
Data controller and representative
MDIT is the data controller for personal data processed through this website. Our nominated representative for data protection matters is the MDIT CISO, Gerasimos Theotokatos.
For privacy enquiries, contact hello@mdit.uk.
Information we collect
We collect and process the following categories of data:
- Information you provide: When you complete forms on our website or contact us by phone, email or other means, we may collect your name, address, email address, phone number, professional details, employer information and job description.
- Information we collect automatically: During your visits we may collect technical information such as IP address, browser type and version, time zone, operating system, device details, referral source and usage statistics.
- Information from third parties: We work with business partners, sub-contractors and analytics providers who may share information with us for specific purposes, such as delivering services you request or improving site performance.
Cookies
Our website uses cookies to improve browsing and site functionality. The cookies we use fall into the following categories:
- Strictly necessary cookies: Essential for website operation and secure access.
- Analytical or performance cookies: Help us understand traffic, visitor counts and navigation so we can improve performance.
- Functionality cookies: Recognise returning visitors so we can personalise content and remember preferences.
- Targeting cookies: Track visits and interactions so we can make the site more relevant to your interests.
You can manage cookie preferences in your browser settings. Blocking certain cookies may limit access to parts of our site. Except for essential cookies, most cookies expire after 30 days.
How we use your information
We process personal data only where permitted by law, including:
- Contractual obligations: To fulfil contracts with you, provide information on similar goods and services, send service updates and present content effectively.
- Legitimate interests: To administer our site, improve functionality, maintain security, respond to enquiries and provide recommendations where your rights do not override those interests.
- Consent: Where required, for example for certain marketing communications or non-essential cookies.
- Legal and regulatory compliance: To comply with legal obligations, enforce our Terms of use, protect MDIT and our customers, and prevent fraud.
Legal bases for processing (EEA and UK)
Where the UK GDPR or EU GDPR applies, we rely on one or more of the following legal bases: performance of a contract, legitimate interests, consent, and compliance with a legal obligation. You may withdraw consent at any time where processing is based on consent, without affecting the lawfulness of processing before withdrawal.
Sharing your information
We do not sell your personal data. We may share information with:
- service providers who host, secure or support our website and business systems;
- professional advisers such as lawyers or accountants where reasonably required;
- regulators, courts or law enforcement when required by law.
All processors are required to protect personal data and use it only for the purposes we specify.
Data retention
We keep personal data only for as long as necessary for the purposes described in this policy, including to satisfy legal, accounting or reporting requirements. Retention periods vary depending on the type of data and our relationship with you.
When data is no longer required, we securely delete or anonymise it.
Data storage and security
We store information on secure servers. Messages sent through our services are encrypted where applicable. While we take appropriate technical and organisational measures to protect your data, transmission over the internet is not completely secure.
Personal data is not routinely transferred outside the European Economic Area (EEA) or the United Kingdom unless necessary for our services. Where transfer is required, we apply appropriate safeguards such as standard contractual clauses or transfers to countries recognised as providing adequate protection.
Your rights
Depending on your location, you may have the right to:
- request access to personal data we hold about you;
- request correction of inaccurate or incomplete data;
- request erasure of your data in certain circumstances;
- restrict or object to certain processing;
- request data portability where applicable;
- withdraw consent where processing is based on consent;
- lodge a complaint with a supervisory authority.
To exercise these rights, email hello@mdit.uk. We may need to verify your identity before responding.
Third-party websites
Our website may contain links to third-party websites or embedded services. We are not responsible for the privacy practices of those sites. We encourage you to read their privacy policies before providing personal data.
Children
Our website is intended for business and professional users. We do not knowingly collect personal data from children. If you believe a child has provided us with personal data, please contact us so we can delete it.
Changes to this policy
We may update this Privacy Policy from time to time. Material changes will be published on this page with an updated date. Continued use of the website after changes are published constitutes acknowledgement of the updated policy.
Contact
For privacy enquiries, email hello@mdit.uk or contact our Support team. For technical support, you can also email support@mdit.uk.
