Legal document

Privacy Policy

How LYTHERASOLUTIONS LTD collects, uses, stores, and protects personal data across the website and related communications.

Effective date: 25 February 2026Last updated: 25 February 2026Open source PDF

1. Introduction

This Privacy Policy (the "Policy") describes how LYTHERASOLUTIONS LTD, a private limited company incorporated in England and Wales under company number 17052255, with its registered office at 167-169 Great Portland Street, Fifth Floor, London, England, W1W 5PF (the "Company", "we", "us", or "our"), collects, uses, stores, discloses, and otherwise processes personal data through its website located at https://lythera.site (the "Website").

This Policy applies solely to personal data collected through the Website and related communications initiated via the Website, including email correspondence arising from contact form submissions.

This Policy does not govern personal data processed by the Company in connection with the provision of professional services to clients under separate contractual arrangements.

We are committed to processing personal data lawfully, fairly, and transparently, and in accordance with the following frameworks and principles.

  • The UK General Data Protection Regulation ("UK GDPR").
  • The Data Protection Act 2018.
  • The Privacy and Electronic Communications Regulations 2003 ("PECR").
  • Applicable principles of information security and confidentiality.

2. Interpretation and Definitions

For the purposes of this Policy, "Personal Data" means any information relating to an identified or identifiable natural person, including identifiers such as name, contact details, online identifiers, and technical device information.

"Processing" means any operation or set of operations performed on Personal Data, whether automated or not, including collection, recording, organisation, storage, adaptation, retrieval, consultation, use, disclosure, restriction, erasure, or destruction.

"User", "you", or "your" refers to any individual accessing or using the Website.

"Controller" means the natural or legal person which determines the purposes and means of the processing of Personal Data.

3. Data Controller

For the purposes of UK data protection legislation, LYTHERASOLUTIONS LTD acts as the Data Controller in respect of Personal Data collected through the Website.

Contact details for data protection matters: info@lythera.site.

The Company does not currently appoint a statutory Data Protection Officer, as it is not required to do so under applicable law. Data protection matters are handled internally by authorised personnel.

4. Scope of Data Collected

4.1 Information Voluntarily Provided by You

When you contact us via the Website or by email, we may collect the following categories of information. Provision of such information is voluntary; however, failure to provide required information may limit our ability to respond.

  • Full name
  • Business email address
  • Telephone number (if voluntarily provided)
  • Company name
  • Professional position (if disclosed)
  • The content of your message or inquiry
  • Any additional information you choose to submit

4.2 Automatically Collected Technical Data

When you access or use the Website, certain technical information may be collected automatically for legitimate operational purposes, including system integrity, performance optimisation, and protection against malicious activity.

We do not engage in automated decision-making or profiling based on Website visitor data.

  • IP address
  • Browser type and version
  • Device type and device identifiers
  • Operating system
  • Date and time of access
  • Pages visited and navigation patterns
  • Referring website address

5. Purposes of Processing

We process Personal Data strictly for legitimate and proportionate purposes.

We do not use Website visitor data for behavioural advertising, automated profiling, or unsolicited marketing communications.

  • Responding to inquiries and communications
  • Providing information regarding our services
  • Managing pre-contractual communications
  • Ensuring technical functionality of the Website
  • Monitoring system performance and cybersecurity
  • Detecting and preventing fraud, misuse, or unauthorised access
  • Establishing, exercising, or defending legal claims
  • Complying with statutory or regulatory obligations

6. Lawful Basis for Processing

In accordance with UK GDPR, we rely on the following lawful bases.

6.1 Legitimate Interests

Processing necessary for the operation, security, and administration of the Website and related communications.

6.2 Contractual Necessity

Processing necessary to respond to requests or inquiries that may lead to a contractual relationship.

6.3 Legal Obligation

Processing required to comply with applicable laws or lawful authority requests.

7. Data Retention

Personal Data is retained only for as long as reasonably necessary to fulfil the purposes for which it was collected.

  • Managing inquiries and communications
  • Maintaining internal business records
  • Complying with legal obligations
  • Protecting legal rights and resolving disputes

8. Disclosure and Data Sharing

We may disclose Personal Data to the following categories of recipients.

All third-party service providers are contractually bound by confidentiality and data protection obligations and are required to implement appropriate safeguards.

We do not sell, lease, trade, or otherwise commercially exploit Personal Data.

  • Website hosting and infrastructure providers
  • IT support and cybersecurity providers
  • Professional advisers (legal, accounting, regulatory)
  • Competent authorities where legally required

9. International Transfers

Where Personal Data is transferred outside the United Kingdom, we ensure appropriate safeguards are implemented in accordance with UK GDPR.

  • UK International Data Transfer Agreements (IDTA)
  • Standard Contractual Clauses
  • Adequacy regulations
  • Supplementary technical and organisational safeguards

10. Data Security

We implement appropriate technical and organisational measures to protect Personal Data against accidental or unlawful destruction, loss, alteration, unauthorised disclosure, or access.

Notwithstanding these measures, no method of electronic transmission or storage is entirely secure, and absolute security cannot be guaranteed.

  • Encrypted communications (HTTPS/TLS)
  • Secure hosting infrastructure
  • Access controls and authentication procedures
  • Principle of least privilege
  • Internal data handling policies
  • Security monitoring and incident response mechanisms

11. Data Subject Rights

Subject to applicable law, you may have the following rights.

Requests may be submitted to info@lythera.site. We may require appropriate verification of identity before responding.

ICO: https://ico.org.uk

  • Right of access
  • Right to rectification
  • Right to erasure
  • Right to restrict processing
  • Right to object
  • Right to lodge a complaint with the Information Commissioner’s Office (ICO)

12. Cookies and Similar Technologies

The Website may use strictly necessary cookies required for essential functionality and security.

Where non-essential cookies are introduced, prior consent will be obtained in accordance with PECR.

Further information is provided in our separate Cookie Policy.

14. Amendments

We reserve the right to amend this Policy at any time to reflect changes in legal requirements or operational practices. The updated version will be published on this page with a revised "Last Updated" date.

Continued use of the Website after publication of changes constitutes acknowledgment of the revised Policy.