Compliant with European Union General Data Protection Regulation (GDPR) & EU Artificial Intelligence Act
Data transmission, processing, storage, privacy, and cybersecurity for this platform are solely the responsibility of The Oldest Barracks, Ltd (trading as ACL computing) and Brendan Boden.
The universities, academic institutions, higher education faculties, or research consortia are in no way connected to, liable for, or involved in this data collection, processing, transmission, or management.
All information is encrypted both in transit and at rest. Personal information is subject to strict access controls. Furthermore, all analytics are performed exclusively on pseudonymised information.
By clicking on the tickbox on our form you are explicitly consenting to our use of your data as outlined in this policy.
Welcome to The Oldest Barracks, Ltd (trading as ACL computing). We believe in being clear, open, and straightforward about how we collect, use, and safeguard your data. This policy explains our practices in plain language.
We only collect the minimal information necessary to deliver services, conduct research, and improve our offerings. Specifically:
Gathered data will be held and processed for use in Brendan Boden's Master's Practicum.
We perform internal analytics and future commercial analysis for internal company use (such as understanding user needs, evaluating features, and guiding internal technical/product development). All analytics utilize pseudonymised information.
Any identifiable personal details are locked behind rigorous role-based access restrictions.
Your data is kept strictly internal. We will never sell, rent, or transfer your personal data to external third parties.
Cookies are small text files stored on your device that help our website recognize you, keep you securely logged in, and remember your preferences.
You can manage or disable cookies at any time through your browser settings. If you disable cookies:
Under the EU GDPR, you retain complete ownership and control over your personal data:
You can request a copy of your personal data at any time. We will provide it promptly in a structured, standard, and machine-readable JSON portable format.
You have the right to request that all your customer and personal data be permanently and securely deleted from our systems.
You can request immediate correction of inaccurate or incomplete information.
You may restrict or object to specific processing activities at any time.
In accordance with European Union Artificial Intelligence governance and transparency standards:
You have the right to know when an AI system or automated model processes your data.
Where AI-assisted analytics or decision-support tools are utilized, you have the right to receive meaningful explanations regarding the logic involved and demand human review.
We govern all research and analytical models to prevent unfair bias and maintain strict data quality and risk management standards.
We treat security with the utmost seriousness, implementing industry-leading technical and organizational safeguards:
All stored data is protected using AES-256 encryption within a hardened, secure internal database.
All data transmitted between your browser and our servers, as well as during internal processing, is encrypted via modern TLS 1.3.
Page and API rate limiting is enforced across all endpoints to prevent brute-force attacks and abuse.
Interactive forms are protected against automated bots, spam, and CSRF attacks using invisible Google reCAPTCHA v3 and one-time cryptographic nonces.
Database access utilizes PHP Data Objects (PDO) with strict parameterized binding to eliminate SQL injection vulnerabilities.
All incoming data is rigorously sanitized, validated, and filtered prior to ingestion to defend against cross-site scripting (XSS) and malformed inputs.
To request a JSON export of your personal data, request secure erasure, or inquire about our data practices, please reach out to: