Legal
Privacy Policy
Last updated: 31 July 2026 to confirm
This page is maintained by Rosary Sec Ltd and is provided as a working draft. Items marked to confirm are placeholders that must be confirmed by Rosary Sec Ltd and reviewed by qualified legal counsel before publication. Nothing here is legal advice or an independent certification.
1. Who we are
Rosary Sec Ltd (“Rosary Sec”, “we”, “us”) is a company registered in England & Wales under company number 00000000 to confirm, with its registered office at 85 Gresham Street, London EC2V 7NQ, United Kingdom. Rosary Sec is the data controller for personal data processed through this website and for personal data we hold about our customers, prospects, and suppliers. Our ICO registration reference is ZA000000 to confirm.
2. Data we collect
We collect the contact details you submit through our demo request and contact forms (name, work email, organisation, country, and any message content), and limited technical data such as IP address and browser type generated when you visit rosarysec.com. IP addresses are also processed transiently to rate-limit form submissions and block automated abuse.
Where Rosary Sec operates its detection and response platform on behalf of a customer, we act as a processor for the telemetry and investigation data held in that deployment, in accordance with the terms of the customer’s contract and data processing agreement.
3. How we use it
We use personal data to respond to enquiries, arrange and deliver product demonstrations, provide and support contracted services, meet legal and regulatory obligations, and maintain the security of our systems. Our lawful bases are legitimate interests, performance of a contract, and legal obligation.
4. Sharing and subprocessors
We share personal data only with service providers acting on our instructions, with our technology partner where required to deliver a contracted deployment, and with regulators or law enforcement where legally required. We do not sell personal data.
Our current subprocessors are: website hosting provider, email provider, CRM provider, platform technology partner to confirm. A current subprocessor list is available to customers on request.
5. Cookies and analytics
This website uses only strictly necessary cookies and does not run third-party advertising or analytics trackers. to confirm If analytics or marketing cookies are introduced, this section and a consent banner will be updated before they are set.
6. International transfers
Rosary Sec is UK-based and serves customers across EMEA. Where personal data is transferred outside the UK or EEA, we rely on adequacy regulations or the UK International Data Transfer Addendum together with the EU Standard Contractual Clauses.
7. Data retention
Enquiry and marketing contact data is retained for 24 months from the last meaningful interaction. Contract, billing, and statutory records are retained for 7 years. Customer platform data is retained for the period defined in the applicable customer agreement and securely deleted on termination. Security and access logs are retained for 12 months. to confirm
8. Security
We apply access control, encryption in transit, logging, and least-privilege administration across our corporate and delivery environments. to confirm Specific certifications and audit reports are only claimed where formally held; see the Terms page for the current position.
9. Your rights
You have the right to access, correct, erase, restrict, or object to our processing of your personal data, and the right to data portability. To exercise these rights, contact us using the details below. We respond within one month. You may also complain to the UK Information Commissioner’s Office.
10. Contact
Rosary Sec Ltd, 85 Gresham Street, London EC2V 7NQ, United Kingdom.
Privacy contact: privacy@rosarysec.com to confirm
Data protection lead: name and role to be confirmed to confirm