Privacy Policy

Version: 1.4

Dated: 14th May 2026

This policy applies to Biometric Access Control (operating via the website biometric-accesscontrol.com). Collectively referred to in this document as 'Biometric Access Control', we operate this website and provide high-security biometric identification, facial recognition, fingerprint scanning, and physical access control solutions. This privacy policy explains how we use any personal information we collect about you when you use this website and our wider services.

Glossary of Terms

  • What is personal data? Personal data relates to any information about a natural person that makes you identifiable. This may include names, contact information, job titles, and system log event data (such as time of entry/exit).
  • What is sensitive personal data (Special Category Data)? This includes biometric data used uniquely for identity verification (e.g., fingerprint templates, facial geometry maps, iris scans). Under UK GDPR, this data requires elevated levels of security and explicit lawful bases for processing.
  • What is a Data Controller? The Data Controller is Biometric Access Control. You can contact us at [Insert Contact Email].
  • What is Data Processing? Data processing is any operation performed upon personal data, such as collection, recording, structuring, encryption, hashing, storing, or erasure.

What Information Do We Collect About You and How?

Biometric Access Control, as a Data Controller, is bound by the requirements of the UK General Data Protection Regulation (UK GDPR). We obtain, use, and process the information you provide to enable us to discharge our high-security services, including:

  • Updating client, administrator, and corporate user records.
  • Marketing, advertising, and hardware/software technical updates.
  • Business analysis for internal management and statutory tax returns.
  • Legal/regulatory compliance, site security, and crime prevention.

We collect traditional contact information when you fill in enquiry forms on our website or request system quotes.

Processing of Biometric Data

Where our hardware or cloud software is utilized to process biometric templates for access verification, we process this data strictly under explicit instructions or via designated legal gateways (such as explicit user consent or fulfilling obligations under employment and health and safety law).

Important Data Note: Our systems are designed to convert biometric physical characteristics into encrypted, mathematical data hashes (templates) rather than storing raw images of fingerprints or faces. These templates cannot be reverse-engineered to recreate the original physical trait.

Analytics and IP Addresses

We use Google Analytics and advanced SEO monitoring tools to track website usage. These cookies do not store personal information. We also use web analytics for business marketing purposes; while this collects IP addresses to identify companies visiting our site, no individual personal details are captured through this process.

Brochure and Technical Specification Downloads

When you download architecture diagrams, hardware datasheets, or software integration guides from our website, personal data (such as your name and email address) is transmitted voluntarily. This data is used solely for processing your request or contacting you regarding your security project.

How Will We Use the Information About You and Why?

We take your privacy and data minimization seriously.

  • Business to Business Communication: Our lawful basis for general commercial processing is "legitimate interests" (e.g., providing technical quotations to businesses).
  • System Deployment: Our lawful basis for contract administration is "contractual necessity" (e.g., setting up a secure cloud instance for an enterprise client).
  • Biometric Verification: The processing of special category biometric data is heavily restricted and relies entirely on explicit consent from the individual or compliance with strict statutory employment laws.

We may pass relevant organizational information to third-party service providers (such as secure data centers or direct hardware manufacturers) to complete tasks on our behalf. We disclose only the necessary information and ensure rigid data processing agreements are in place. We will never share your information with outside companies for their marketing purposes.

Security and Retention

Because of the high-security nature of our industry, data integrity is our primary focus. We implement end-to-end encryption, regular penetration testing, and restricted-access storage protocols.

  • Marketing Data Retention: Data is held for 10 years with a review every 5 years.
  • Contracted Security Services Retention: Client operational data is held for 7 years after contract termination to fulfill statutory, audit, and liability obligations.
  • Biometric Templates: Where stored on client hardware or managed cloud instances, biometric mathematical data is deleted immediately upon an employee leaving an organization or the revocation of their access privileges.

Your Rights

You have the right to request a copy of your information (Subject Access Request), the right to correction, the right to portability, and the "right to be forgotten." Because biometric data is highly personal, you have an absolute right to withdraw consent for biometric processing at any time, requiring alternative access methods (such as a PIN or key fob) to be provided by your organization.

To exercise these rights, please contact us directly via email:

Data Protection

Biometric Access Control

Email:

Changes to our Privacy Policy

We keep our privacy policy under regular review. This version was last updated on 14th May 2026.

All content © 2026 Biometric Access Control