GMITrend · Policies

How GMITrend handles information connected with its website, orders and support.

Last updated: 28 September 2026

Controller and contact

GMITrend
41, Meadow Drive, Saltash PL12 6XJ UK
Email: [email protected]

GMITrend is responsible for the website and order-administration processing described here. Contact the email or postal address above about privacy or rights requests. This notice covers store activity; processing inside a separately hosted software product must also be explained in its product-specific privacy information.

Information involved

Account and order functions can involve your name, organisation, email, billing details, account identifier, purchased SKU, transaction amount/currency and order status. Support involves the messages, attachments and contact details you choose to send. Website operation can involve IP addresses, browser/device information, security events and session identifiers.

Provide only what is needed. Do not email passwords, card security codes, private keys or unredacted customer/employee records. Required fields support the requested order, account or response; without them we may be unable to complete that function.

Purposes and legal bases

Account, order and support administration generally relies on performing a contract or responding to requested steps before one. Accounting and legally required disclosures rely on legal obligations. Proportionate security, fault investigation and defending claims can rely on legitimate interests in protecting the store and its users. Consent is used where required for optional activities, including relevant browser technologies or marketing.

Any use for a materially different purpose must be explained before it occurs where the law requires that notice.

Sources and recipients

We receive information directly from your interactions and relevant order-status information from services involved in the transaction. Providers supporting hosting, website administration, email, customer support or a payment you select may process the information needed for their functions. Information may also be disclosed to professional advisers, a court or a public authority where necessary and lawful. Access and disclosure are limited to the relevant purpose.

A payment provider available at checkout may also process information under its own privacy notice. You can contact us about the recipients relevant to your information.

Software business records

A store purchase does not require uploading your complete bookkeeping records to customer support. Before using a product that processes business records on a hosted system, review its hosting, data-access, export and retention information. Where GMITrend processes personal data solely on a business customer’s instructions, the applicable processing terms must identify those instructions and responsibilities. A general website notice is not a substitute for those terms.

Retention

We keep account information while it is needed for the account relationship and any remaining legal requirement. Order and payment records may need to be retained after a licence expires for accounting, tax, disputes and legal claims. Support and security records are retained for as long as reasonably necessary to address the matter and related legal requirements.

Retention depends on the record, why it is needed, any applicable statutory period and whether there is an unresolved complaint or legal hold. Data should be deleted or anonymised when no longer necessary. A 12-month licence does not mean all order records are erased after 12 months. Contact us to ask about the retention of your information or to request erasure where the law permits it.

International processing

Processing locations depend on the providers involved in the service you use. If your information is transferred to a country outside the protection of the applicable UK or European data-protection framework, the transfer must rely on a lawful basis and the safeguards required for that transfer. Contact [email protected] for information about the recipients, locations and safeguards relevant to your data.

Rights and objections

Depending on the circumstances, you may request access, correction, erasure, restriction or portability, object to legitimate-interest processing, or withdraw consent. You may object to direct marketing at any time. These rights have legal conditions and exemptions. We may seek proportionate identity information to avoid disclosing another person’s data and respond within the period required by law.

You may complain to the UK Information Commissioner’s Office at ico.org.uk, or another competent authority. You do not have to complete our complaints process before exercising that right.

Security, cookies and communications

The website uses HTTPS. Protect your account and device, and report suspected misuse promptly. No website can promise absolute security. The Cookie Policy describes store browser storage and the distinction between necessary and optional functions.

Order and support messages are operational communications. Optional marketing requires its own lawful basis and a working unsubscribe method; accepting sale terms is not blanket marketing permission.

Changes

Changes to processing require this notice to be reviewed. Material changes are communicated where appropriate. A policy revision does not retrospectively create consent that was not given.