sherlock. & GRAY

Privacy Policy

Sherlock & Gray Ltd (“we”, “our”, “us”) operates this website as a remote-first company. We are committed to protecting your personal data and handling it in compliance with the General Data Protection Regulation (GDPR) and other applicable data protection laws.

1. Data Controller

Sherlock & Gray Ltd
Evrypidou 15
Strovolos
2007 Nicosia, Cyprus

Email: office@sherlockgray.com

2. Purpose and Legal Basis of Processing

We process personal data only to:

  • respond to inquiries, provide services or schedule consultations (Art. 6 (1)(b) GDPR);
  • comply with legal obligations (Art. 6 (1)(c));
  • operate and secure this website, improve user experience and perform analytics where you consent (Art. 6 (1)(a) and (f)).

3. Categories of Data

  • Identification and contact details (e.g., name, email).
  • Technical data (IP address, browser type, pages accessed).
  • Usage data from website analytics (only after consent).

4. Cookies & Analytics

Cookies and tracking technologies are only activated with your explicit consent. You may withdraw consent at any time via the cookie settings. Analytics data is anonymized wherever possible.

5. Data Retention

We retain data only as long as necessary to fulfill the purpose for which it was collected or as required by law.

6. Data Sharing

Data is only shared with:

  • Service providers bound by confidentiality and data processing agreements (e.g. hosting, analytics);
  • authorities where legally required.

No data is sold or transferred to third parties for advertising purposes.

7. International Transfers

Where data is transferred outside the EU, it is protected using Standard Contractual Clauses or other appropriate safeguards.

8. Your Rights

You may at any time request:

  • access, correction, deletion;
  • restriction or objection to processing;
  • data portability;
  • withdrawal of consent.

Please submit requests to office@sherlockgray.com. You also have the right to lodge a complaint with your local data protection authority.

9. Data Security

We use SSL encryption, restricted access controls and technical and organizational measures to protect your data from loss, misuse or unauthorized access.

10. Changes to This Policy

We may update this policy to reflect regulatory or operational changes. The latest version is always available on this page.

Last updated: 17 November 2025