Privacy Policy.
Document Version: 2026.01
Effective Date: 25/08/2026
Date last updated:25/08/2026
Introduction
Welcome to ACS-APT COMPUTER SYSTEMS LTD (“Company”, “we”, “our”, or “us”).
We are committed to protecting your privacy and ensuring that your personal data is handled securely, fairly, and transparently. This Privacy Policy explains how we collect, use, disclose, store, and protect personal information when you use our website, products, software, and professional IT services.
This Privacy Policy complies with:
UK General Data Protection Regulation (UK GDPR)
EU General Data Protection Regulation (EU GDPR)
UK Data Protection Act 2018
Applicable European privacy laws
By using our services or interacting with us, you acknowledge that you have read this Privacy Policy.
Data Controller
Company Name: ACS-APT COMPUTER SYSTEM LTD
Registered Address:
Unit 22, The Empire Centre, Imperial Way, Watford, WD24 4YH
Email: contact@acs-apt.com
Telephone: 01923 244444
If required by law, our Data Protection Officer (DPO) can be contacted at:
Email: contact@acs-apt.com
Scope
This Privacy Policy applies to:
Our website
Software applications
Cloud-based services
IT consultancy services
Software development services
Technical support services
Recruitment activities
Marketing communications
Business relationships with clients and suppliers
Personal Data We Collect
Depending on your interaction with us, we may collect:
Identity Information
Full name
Job title
Employer
Username
Customer ID
Contact Information
Email address
Telephone number
Business address
Billing address
Technical Information
IP address
Browser type
Operating system
Device identifiers
Session information
Time zone
Cookie identifiers
Usage Information
Website activity
Software usage
Login history
Support requests
Feature usage
Error reports
Audit logs
Financial Information
Billing details
VAT information
Payment records
Payment card information is normally processed by secure third-party payment providers and is not stored by us unless specifically required.
Recruitment Data
Where applicable
CV
Employment history
Qualifications
References
Interview notes
Special Category Data
We do not intentionally collect special category personal data unless:
required by law;
necessary for employment;
you have explicitly provided consent.
Where such data is processed, additional safeguards are applied.
How We Collect Data
Personal data may be collected through:
Website forms
Contact forms
Email correspondence
Telephone conversations
Customer support
Software applications
Cookies
Analytics tools
Business meetings
Contracts
Recruitment applications
Third-party integrations
Publicly available business information
Legal Basis for Processing
We process personal data under one or more of the following lawful bases:
Contract
Processing necessary to:
provide software
deliver IT services
fulfil contracts
provide technical support
Legitimate Interests
Including:
improving services
maintaining security
fraud prevention
responding to enquiries
customer relationship management
business administration
Consent
Where required, such as:
newsletters
promotional communications
optional cookies
Consent may be withdrawn at any time.
Legal Obligation
Where processing is necessary to comply with legal requirements, including taxation, accounting, employment, and regulatory obligations.
How We Use Personal Information
We use information to:
Deliver software development services
Provide managed IT services
Respond to enquiries
Create customer accounts
Process orders
Manage subscriptions
Improve products
Maintain platform security
Detect fraud
Troubleshoot issues
Provide technical support
Send service updates
Comply with legal obligations
Recruit employees
Manage supplier relationships
Cookies
Our website uses cookies to:
remember preferences;
improve website functionality;
analyses website traffic;
enhance security.
Where legally required, non-essential cookies are used only after obtaining your consent.
You can manage cookie preferences through your browser settings or our cookie consent banner.
Sharing Personal Information
We may share information with:
Cloud hosting providers
Email service providers
Payment processors
Customer support platforms
IT infrastructure providers
Analytics providers
Professional advisers
Regulators
Law enforcement agencies where legally required
All third parties are required to maintain appropriate security and confidentiality.
International Transfer
Where personal data is transferred outside the UK or European Economic Area (EEA), we ensure appropriate safeguards are in place, including:
UK International Data Transfer Agreement (IDTA)
EU Standard Contractual Clauses (SCCs)
Adequacy Decisions
Other legally approved transfer mechanism
Data Security
We implement appropriate technical and organisational measures including:
Encryption
Access controls
Firewalls
Secure authentication
Network monitoring
Vulnerability management
Backup procedures
Security awareness training
Logging and auditing
Incident response procedures
No method of transmission or storage is completely secure; however, we take reasonable steps to protect your personal data.
Data Retention
We retain personal information only for as long as necessary to:
provide services;
meet contractual obligations;
comply with legal requirements;
resolve disputes;
enforce agreements.
Retention periods vary according to the type of information and applicable legal obligations.
Your Rights
Under the UK GDPR and EU GDPR, you may have the right to:
Access your personal data
Correct inaccurate information
Request deletion (“Right to be Forgotten”)
Restrict processing
Object to processing
Data portability
Withdraw consent
Lodge a complaint with a supervisory authority
Requests can be made by contacting: contact@acs-apt.com
Automated Decision-Making
We do not make decisions based solely on automated processing that produce legal or similarly significant effects unless permitted by law.
Childen’s Privacy
Our services are intended for businesses and individuals aged 16 or over.
We do not knowingly collect personal information from children.
Third-Party Website
Our website may contain links to third-party websites.
We are not responsible for the privacy practices of external websites.
Users should review the privacy policies of those websites separately.
Data Breaches
In the event of a personal data breach, we will:
investigate promptly;
contain the breach;
assess the impact;
notify the relevant supervisory authority where legally required;
notify affected individuals where there is a high risk to their rights and freedoms
Marketing Communications
You may receive marketing communications if:
you have requested information;
you are an existing customer where permitted by law;
you have provided consent where required.
You may unsubscribe at any time using the unsubscribe link in our emails or by contacting us directly.
Complaints
If you have concerns regarding our handling of your personal data, please contact us first.
If you remain dissatisfied, you may lodge a complaint with the appropriate supervisory authority.
For the UK:
Information Commissioner’s Office (ICO)
For EU residents:
You may contact your local national data protection authority.
Changes to This Privacy Policy
We may update this Privacy Policy from time to time.
Material changes will be published on our website together with an updated revision date.
Contact Us
If you have any questions regarding out Privacy Policy, please contact:
For the attention of:
Data Protection Officer – Sailesh Devlukia
ACS-Apt Computer Systems Ltd
Unit 22, Empire Centre
Imperial Way
Watford, Hertfordshire
WD24 4YH
United Kingdom
Telephone: +44-(0)1923 244 444
Email: contact@acs-apt.com
Website: www.acs-apt.com
ACS-Apt Computer Systems Ltd - Registered in England with Company Registration No 02447522 and VAT Registration No: GB-541257853.
Definitions
Personal Data means any information relating to an identified or identifiable natural person.
Processing means any operation performed on personal data, including collection, recording, storage, use, disclosure, and deletion.
Controller means the organisation determining the purposes and means of processing personal data.
Processor means a third-party processing personal data on behalf of the Controller.
GDPR means the General Data Protection Regulation (EU) 2016/679 and the UK GDPR, as applicable.