Plain English Edition • Effective Date: August 2026
THE OLDEST BARRACKS, LTD T/A ACL COMPUTING

Privacy Policy

Compliant with European Union General Data Protection Regulation (GDPR) & EU Artificial Intelligence Act

Important Legal Governance Notice

Sole Company & Consultant Responsibility

Data transmission, processing, storage, privacy, and cybersecurity for this platform are solely the responsibility of The Oldest Barracks, Ltd (trading as ACL computing) and Brendan Boden.

The universities, academic institutions, higher education faculties, or research consortia are in no way connected to, liable for, or involved in this data collection, processing, transmission, or management.

Core Security & Data Principles:

All information is encrypted both in transit and at rest. Personal information is subject to strict access controls. Furthermore, all analytics are performed exclusively on pseudonymised information.

Explicit Consent:

By clicking on the tickbox on our form you are explicitly consenting to our use of your data as outlined in this policy.

Welcome to The Oldest Barracks, Ltd (trading as ACL computing). We believe in being clear, open, and straightforward about how we collect, use, and safeguard your data. This policy explains our practices in plain language.

1

What Data We Collect & How It Is Used

We only collect the minimal information necessary to deliver services, conduct research, and improve our offerings. Specifically:

Academic Research

Gathered data will be held and processed for use in Brendan Boden's Master's Practicum.

Internal & Commercial Analysis

We perform internal analytics and future commercial analysis for internal company use (such as understanding user needs, evaluating features, and guiding internal technical/product development). All analytics utilize pseudonymised information.

Strict Access Controls

Any identifiable personal details are locked behind rigorous role-based access restrictions.

No Third-Party Resale

Your data is kept strictly internal. We will never sell, rent, or transfer your personal data to external third parties.

2

Cookies & Tracking Technologies

Cookies are small text files stored on your device that help our website recognize you, keep you securely logged in, and remember your preferences.

What happens if you turn off cookies?

You can manage or disable cookies at any time through your browser settings. If you disable cookies:

  • Essential features may degrade: Secure logins, session persistence, and dynamic form submissions may not function correctly.
  • Preferences won't be saved: You may need to re-enter details or re-adjust site settings on every visit.
  • Standard browsing remains available: You will still be able to access public pages and read static content.
3

Your Rights Under GDPR (General Data Protection Regulation)

Under the EU GDPR, you retain complete ownership and control over your personal data:

Right to Access & Portability

You can request a copy of your personal data at any time. We will provide it promptly in a structured, standard, and machine-readable JSON portable format.

Right to Erasure ("Right to be Forgotten")

You have the right to request that all your customer and personal data be permanently and securely deleted from our systems.

Right to Rectification

You can request immediate correction of inaccurate or incomplete information.

Right to Object & Restrict Processing

You may restrict or object to specific processing activities at any time.

4

Your Rights Under the EU AI Act

In accordance with European Union Artificial Intelligence governance and transparency standards:

Transparency & Awareness

You have the right to know when an AI system or automated model processes your data.

Human Oversight & Explanations

Where AI-assisted analytics or decision-support tools are utilized, you have the right to receive meaningful explanations regarding the logic involved and demand human review.

Fairness & Bias Mitigation

We govern all research and analytical models to prevent unfair bias and maintain strict data quality and risk management standards.

5

Technical Security Features

We treat security with the utmost seriousness, implementing industry-leading technical and organizational safeguards:

AES-256 Encryption at Rest

All stored data is protected using AES-256 encryption within a hardened, secure internal database.

TLS 1.3 Encryption in Transit

All data transmitted between your browser and our servers, as well as during internal processing, is encrypted via modern TLS 1.3.

Intelligent Rate Limiting

Page and API rate limiting is enforced across all endpoints to prevent brute-force attacks and abuse.

reCAPTCHA v3 & Cryptographic Nonces

Interactive forms are protected against automated bots, spam, and CSRF attacks using invisible Google reCAPTCHA v3 and one-time cryptographic nonces.

PDO Data Abstraction

Database access utilizes PHP Data Objects (PDO) with strict parameterized binding to eliminate SQL injection vulnerabilities.

Comprehensive Validation & Filtering

All incoming data is rigorously sanitized, validated, and filtered prior to ingestion to defend against cross-site scripting (XSS) and malformed inputs.

Exercising Your Privacy Rights

To request a JSON export of your personal data, request secure erasure, or inquire about our data practices, please reach out to:

Data Controller: The Oldest Barracks, Ltd T/A ACL Computing
Lead Consultant: Brendan Boden | Email: sales@acl247.com | Tel: +353 71 98 52222
The Old Barracks, Main St, Ballyshannon, Co. Donegal, Ireland - F94 HTW5