Last updated: August 14, 2026
Moon-trek is committed to compliance with the General Data Protection Regulation (GDPR) and the UK Data Protection Act 2018. We process personal data lawfully, fairly, and transparently.
Moon-trek acts as the data controller for personal information collected through our website and services. Our contact details are:
Moon-trek
42 Deansgate
Manchester M3 2BA
United Kingdom
Email: [email protected]
We process personal data under the following lawful bases:
Under GDPR, you have the following rights regarding your personal data:
You can request a copy of the personal data we hold about you, free of charge in most cases.
You can ask us to correct inaccurate or incomplete personal data.
You can request deletion of your personal data in certain circumstances, such as when it is no longer necessary for the purpose it was collected.
You can request that we limit how we use your data in specific situations.
You can request a copy of your data in a structured, commonly used, and machine-readable format to transfer to another service provider.
You can object to processing based on legitimate interests or for direct marketing purposes.
You have the right not to be subject to decisions based solely on automated processing that produce legal or similarly significant effects.
To exercise any of these rights, please contact us at [email protected]. We will respond to your request within one month, though this may be extended in complex cases.
For questions specifically related to data protection, you can contact our data protection officer at [email protected].
If you believe we have not handled your personal data properly, you have the right to lodge a complaint with the Information Commissioner's Office (ICO):
Information Commissioner's Office
Wycliffe House
Water Lane
Wilmslow
Cheshire SK9 5AF
Tel: 0303 123 1113
Website: www.ico.org.uk
We do not routinely transfer personal data outside the UK or European Economic Area. If such transfers become necessary, we will ensure appropriate safeguards are in place.
We implement appropriate technical and organizational measures to ensure a level of security appropriate to the risk, including:
In the event of a personal data breach that poses a risk to your rights and freedoms, we will notify the ICO within 72 hours of becoming aware of the breach. If the breach poses a high risk, we will also notify you directly.
Our services are not directed at children under 16. We do not knowingly collect personal data from children without appropriate parental consent.
We may update this GDPR compliance statement periodically to reflect changes in our practices or legal requirements. Please check this page regularly for updates.