This notice tells you what to expect us to do with your personal information.
Last updated: 24 August 2026
Gladiolus Limited is the controller for the personal information we process.
Registered office: 71-75 Shelton Street, Covent Garden, London, WC2H 9JQ
ICO registration reference: ZC112773
Email: privacy@gladiolus.dev
FGND Core GmbH
Hauptstrasse 151, 10827 Berlin, Germany
Email: gladiolus@core-privacy.eu
This contact is for GDPR-related privacy matters and requests from EU supervisory authorities and individuals in the EU.
We collect or use the following personal information for dealing with queries, complaints, or claims:
We receive this information directly from you when you contact us via our website or email.
Under UK data protection law and, where applicable, the EU General Data Protection Regulation (GDPR), we rely on the following lawful bases:
Your rights: You have the right to access, rectify, or erase your data, and to restrict or object to its processing. To exercise these, please contact us at the email above.
If you are located in the European Union or European Economic Area (EEA), the EU GDPR provides you with specific rights in relation to your personal information, including the right to access, rectify, or erase your data, to restrict or object to its processing, to data portability, and to withdraw consent at any time where processing is based on consent.
We have appointed an EU representative under Article 27 GDPR for GDPR-related privacy matters and for requests from EU supervisory authorities and individuals in the EU: FGND Core GmbH, Hauptstrasse 151, 10827 Berlin, Germany, gladiolus@core-privacy.eu.
You also have the right to lodge a complaint with your local EU data protection supervisory authority if you believe your privacy rights have been infringed.
We store your personal information for as long as necessary to fulfill the purposes we collected it for, including any legal or reporting requirements.
For general customer queries and correspondence, we typically retain data for 1 year following the last interaction to comply with statutory limitation periods for legal claims.
We use the following data processors to handle personal information on our behalf:
We may also need to share your personal information in the following situations:
Our data processors may share personal information outside of the UK and the European Economic Area. When doing so, they comply with the UK GDPR and, where applicable, the EU GDPR using appropriate safeguards, including adequacy decisions or approved standard contractual clauses.
Please refer to our Cookies Policy for details on website cookies. Our site may link to third-party sites (like app stores) which have their own privacy practices that we do not control.
In Short: We aim to protect your personal information through a system of organisational and technical security measures.
We have implemented appropriate and reasonable technical and organisational security measures designed to protect the security of any personal information we process. However, despite our safeguards and efforts to secure your information, no electronic transmission over the Internet or information storage technology can be guaranteed to be 100% secure, so we cannot promise or guarantee that hackers, cybercriminals, or other unauthorised third parties will not be able to defeat our security and improperly collect, access, steal, or modify your information. Although we will do our best to protect your personal information, transmission of personal information to and from our Services is at your own risk. You should only access the Services within a secure environment.
Our mobile applications may collect different data. Please refer to the privacy policy found within each individual app for details specific to that application.
If you have concerns, please contact us first. You also have the right to complain to the ICO:
Information Commissioner’s Office, Wycliffe House, Water Lane, Wilmslow, Cheshire, SK9 5AF.
Helpline: 0303 123 1113 | Website: www.ico.org.uk