Data Policies

Global Privacy & Data Protection Policy

This policy outlines our commitment to international compliance and the rights you hold regardless of where you live.

1. Our Global Compliance Framework

We maintain a “Privacy First” infrastructure that meets or exceeds the requirements of the world’s most stringent data protection regulations.

FrameworkRegionKey Requirement / Law Reference
GDPR / UK-GDPREU & UKRight to Access (Art. 15), Right to be Forgotten (Art. 17), Data Portability (Art. 20)
POPIASouth AfricaAccountability of Responsible Parties (Sections 8–10), Right to Access (Section 23)
CCPA / CPRAUSA (California)Right to Opt-Out of Sale (Cal. Civ. Code §1798.120), Global Privacy Control (GPC) support
PIPEDA / CPPACanadaMeaningful Consent (Sections 5–7), Mandatory Breach Reporting (Section 10.1)
Privacy Act 1988AustraliaTransparency on Automated Decisions (2026 Rule), Access & Correction rights
Privacy Act 2020New ZealandIPP 3A (Indirect Collection Notification), Right to Access & Correction

2. Data We Collect & Why

We follow the principle of Data Minimization: if we don’t need it to provide our service, we don’t ask for it.


3. AI & Automated Decision-Making (ADM)

In compliance with Australia Privacy Act (2026) and EU AI Act, we are transparent about automated decision-making:

4. Security: AES-256 Standard

We treat your data like our own.

5. Your Global Rights

Regardless of your location, you have these “Golden Rights”:

6. Contact & Redress

For questions or formal requests under your local law (such as a DSAR):

Email: notifications@imedi8.online
Response Time: Within 3 days