Trustd Privacy Notice
1. What is Trustd IDV under the UK DVS?
Trustd’s Identity Verification service allows one time verification of a living person’s identity. This identity verification is conducted under the rules set out in the Department for Science, Innovation and Technology’s UK digital identity and attributes trust framework (known as the “UK DVS”).
Trustd uses its Identity Verification service, certified against the UK DVS, to assist its Clients conduct digital ID and Right to Work checks. You do not have to pay Trustd for this service, but Trustd will charge its Clients. If you do not want to complete a digital check, you should contact the organisation (the Trustd Client) that asked you to complete the check and ask for an alternative way of proving your identity.
2. Who we are
Managed Identities Limited (Company No. 12044881), trading as Trustd, of Newstead House, Pelham Road, Nottingham, United Kingdom NG5 1AP (“we”, “us”, “our”) provides the Trustd identity verification service.
In this notice, “Client” means the organisation that asked you to complete an identity check using Trustd, and with which we have a contract. “You” means the individual whose identity is being checked.
3. Our role, and the Client’s role
Data protection law distinguishes between a controller, who decides why and how personal data is used, and a processor, who acts on the controller’s instructions.
| Processing | Role | Who to contact |
| Identity verification carried out because a Client asked you to complete a check | The Client is the controller. We act as processor on the Client’s instructions. | The Client, for questions about why the check was required, the result, and how long the result is kept |
| Our own limited purposes described at section 7 — securing and operating the service, detecting fraud against it, meeting our own legal and certification obligations, and our website | We are the controller | Us, using the contact details at section 17 |
Where we act as processor, the Client is responsible for telling you why your identity is being checked, on what lawful basis, and what it does with the result. If you have questions about those matters, or you want to be verified another way, you should contact the Client.
Our Clients are the organisations that ask you to verify. At the date of this notice they are Transport Exchange Group Limited, in the United Kingdom, and uShip, in the United States. If your check was requested by uShip, information about you is transferred to the United States. Section 12 explains how that is protected.
4. Information we collect from you
We collect and process some or all of the following, depending on the check the Client has asked you to complete:
- Information needed to verify your identity, which may include biometric data where you choose to provide it.
- Personal details such as name, date of birth, address, and details taken from your identity document.
- Driving licence details, driver’s insurance and vehicle details, and other licences, qualifications and registrations relevant to your position with the Client.
- A record of your progress through the verification, and the result of each check carried out.
- A record of any correspondence, if you contact us.
- Technical information about your use of the Trustd platform, including traffic data, weblogs and other communication data.
5. Information we collect from other sources
To carry out a check we may send your details to third-party providers and use their response. The providers we use are:
| Provider | What it is used for |
| GBG — ID Scan | Biometric checks: liveness detection and matching your selfie to the photograph in your identity document |
| GBG — ID3 Global | Verifying identity details including date of birth, driving licence details and entitlement to drive, and checking that the identity has existed over time. GBG may search records held by the UK credit reference agencies to do this. |
| GBG — Trust | Identity fraud checking |
| DVLA — MOT History | MOT history of a vehicle |
| DVLA — Access to Driver Data | Driving licence endorsements |
| Intellicheck (United States service only) | Verifies your identity document and compares it with your face. Receives your biometric facial image. Named in the written release at section 9.1 |
| Certificial (United States service only) | Verifies and monitors certificates of insurance. No biometric data |
| SAFER Web — FMCSA (United States service only) | A free public United States government register we look carriers up on. A source of information, not a recipient of your information. No biometric data |
| Creditsafe | Confirms businesses, identifies directors and ultimate beneficial owners, and screens for sanctions, politically exposed persons and adverse media, including ongoing monitoring where a client asks for it |
| GBG (screening) | Screens for sanctions and politically exposed persons where a client asks for it |
We may also receive information about you from the Client.
6. Automated processing
The matching of your information against third-party records is carried out automatically. The result is provided to the Client. Decisions about what to do with the result — for example whether to engage you — are taken by the Client, not by us.
If the result is a pass, you continue through onboarding without anyone at Trustd reviewing it.
If the result is not a pass, a person at Trustd reviews it before anything further happens. You are not refused onboarding on the basis of an automated result alone.
You can ask for a person to review any outcome, and you can challenge it. We will tell you the outcome of your check. Where a fraud indicator is involved we will not tell you what the indicator was, but we will tell you the outcome and you can dispute it. We will tell you which fraud prevention agency to contact where that applies.
7. Why we process your information, and on what basis
7.1 Where we act as processor
We process your information on the Client’s documented instructions, to carry out the identity check the Client has asked you to complete and to return the result to it. The lawful basis for that processing is the Client’s to determine and to explain to you.
7.2 Where we act as controller
We are the controller for the following, and for these we are answerable to you directly:
Keeping your verified profile. Once your check passes we create a Trustd profile and keep it, so you do not verify again each time you work with a different Client. Our lawful basis is our legitimate interests, and those of Clients, in making sure that nobody else can pass themselves off as you.
Trustd Loads. This lets a Client confirm that the person collecting a load is the person who was verified. You take a live photograph and we compare it with your profile. Our lawful basis is legitimate interests — preventing the theft of goods and the impersonation of a driver who has been checked.
Preventing and investigating fraud against the service. Our lawful basis is legitimate interests.
Running our support desk when you contact us. Our lawful basis is legitimate interests.
Because we rely on legitimate interests for these, you have the right to object to them. Section 15 explains how.
| Purpose | Lawful basis |
| Collecting biometric data to verify that you are a real person and that you match your identity document | Explicit consent, which you give before each biometric capture. If you do not want to give it, contact the Client and ask to be verified another way. For the special category condition we rely on substantial public interest, namely preventing fraud and dishonesty |
| Keeping records of how each verification was carried out, to meet our obligations under the UK digital verification services trust framework and to evidence them to our auditor and the regulator | Legal obligation, and our legitimate interest in maintaining certification |
| Detecting and preventing fraud against the service, including sharing information with fraud prevention agencies and the authorities where we suspect an offence | Legitimate interest, and substantial public interest for any special category data |
| Securing and operating the platform, including access control and monitoring | Legitimate interest |
| Responding to your questions and to any complaint or rights request | Legitimate interest, and legal obligation where the request is one the law requires us to answer |
| Improving the accuracy of the service and reducing bias in how it performs | Legitimate interest. See section 7.3 |
| Confirming a business and identifying its directors and beneficial owners | On the Client’s instructions. See section 10 |
| Sanctions, politically exposed person and adverse media screening, and ongoing monitoring | On the Client’s instructions, which usually rest on its legal duties around money laundering and sanctions. See section 10 |
7.3 Improving the service
We may use information collected during verification to test and improve the accuracy of the service and to reduce bias in how it performs across different groups of people. Where we do this, we use the minimum information necessary.
8. Your biometric information
This section is set out separately because your facial image is the most sensitive information we hold about you. Data protection law calls it special category data, and it has stricter protection than ordinary personal data.
What we collect. When you verify, you take a live photograph of your face and the service checks that it is a real person in front of the camera rather than a photograph or a mask. That image is compared with the photograph in your identity document. From your facial image we also create a biometric template — a mathematical representation of the measurements of your face. The template is what makes it possible to recognise you again.
Why we keep it. We keep your template for as long as you have a Trustd profile, so that a Client can confirm you are the person who was verified when you present to collect a load. That is the Trustd Loads service. Without a stored template there is nothing to compare a later photograph against, and the only alternative would be to put you through the whole verification process again every time — which would mean collecting more information about you, more often, not less. Keeping one template is the option that involves the least information.
What it protects against. Someone else presenting themselves as you in order to collect goods. That is a real and well-documented risk in road haulage, and it is the risk Clients use the service to manage.
Our lawful basis. We rely on our legitimate interests under Article 6(1)(f) of the UK GDPR. For the special category condition we rely on Article 9(2)(g), substantial public interest, together with the condition in Schedule 1, Part 2, paragraph 12 of the Data Protection Act 2018, which covers preventing and detecting unlawful acts.
We do not rely on your consent for this, and we want to be clear about why. Consent has to be a free choice that you can withdraw. Because you cannot obtain a verified identity through Trustd without a biometric check, and because you are usually asked to verify by an organisation you want work from, describing that as a free choice would not be accurate. Relying on legitimate interests instead means you have a genuine right to object, which is a real protection rather than a nominal one. If we have previously told you that you were consenting to biometric processing, this notice replaces that.
How long we keep it. For as long as you have a profile. We close your profile if you ask us to, and automatically if there has been no Client connection and no activity on it for 24 months. When your profile closes we delete your biometric template, your facial image, any live photographs taken for a Trustd Loads check, and your identity document images, within 30 days.
What we keep afterwards. We keep a record that a verified check took place, the date it happened and the level of confidence it reached. That record contains no biometric information. We keep it for six years, because we have to be able to evidence that checks were carried out properly, and to answer a question or a dispute about a check later.
Live photographs taken for Trustd Loads. These are deleted once the comparison has been made. We keep the result — confirmed or not confirmed — and a record of when the check happened.
Who sees it. Nobody outside Trustd sees your facial image or your template. Clients see the outcome of your check and, for Trustd Loads, whether the comparison confirmed you. They do not receive the image or the template. Our own access is limited to named administrators, every access is logged, and the information is encrypted.
What we do not do with it. We do not use it to train or develop facial recognition technology. We do not sell it. We do not share it for advertising or marketing. We do not use it to check you against any watchlist or database of other people — the only comparison we make is between your face and your own document, and later between your face and your own template.
Where it is held. In the United States, with the protections described at section 12. We recognise that this is information people care about, and section 12 explains the safeguard we rely on and how to get a copy of it.
Your rights over it. You can ask us for a copy, ask us to correct it, ask us to delete it, and object to our use of it. Asking us to delete your biometric information means you can no longer use Trustd Loads, and we will tell you that before we act. It does not remove the record that your identity was verified. Section 15 explains how to make a request.
9. If you onboard in the United States
This section applies if you are onboarded in the United States, or if you are a resident of a United States state that has its own biometric privacy law. It is in addition to the rest of this notice, not instead of it. Where a state law gives you a stronger right than the rest of this notice describes, the state law applies.
The United States service is a separate service from the UK one. It is not certified under the UK digital verification services trust framework, it does not involve a UK right to work check, and it does not require a British or Irish passport or a UK driving licence. Sections 1 and 2 of this notice describe the UK certified service; this section describes what is different if you onboard in the United States.
It also serves as our written policy on biometric data for the purposes of the Illinois Biometric Information Privacy Act, which requires that policy to be made available to the public. If you are in Illinois, this section is that policy.
9.1 What Illinois law requires of us, and what we do
The Illinois Biometric Information Privacy Act, 740 ILCS 14, sets specific rules for collecting and holding biometric identifiers and biometric information. Our position against each of them is set out below.
We tell you in writing. Before we collect it, we tell you in writing that a biometric identifier or biometric information is being collected and stored. That is what this notice does, and it is presented to you in the app before the facial capture step.
We tell you why, and for how long. We tell you the specific purpose and the length of the term for which your biometric data is collected, stored and used. The purpose is to verify your identity and then to confirm at a later date that you are the person who was verified. The term is set out at section 9.2 below.
We obtain your written release. We obtain a written release from you, signed by you, before we collect your biometric data. An electronic signature counts as a written release. This is a separate step from accepting this notice or our terms — it is not bundled into either, and you are asked for it on its own. The release states what is collected, why, for how long, and that your facial image is passed to Intellicheck for the purpose of verifying your document.
We do not sell or profit from it. We do not sell, lease, trade or otherwise profit from your biometric identifier or biometric information.
We do not disclose it without your consent. We do not disclose, redisclose or otherwise disseminate your biometric data unless you consent to it, or unless disclosure is required by law or by a valid warrant or subpoena. One provider does receive your facial image in order to run the service: Intellicheck, which verifies your identity document and compares it with your face. Intellicheck is named in the written release you sign, so that you are agreeing to that specific disclosure and not to a general permission.
We protect it. We store, transmit and protect your biometric data using the reasonable standard of care for our industry, and in a way that is at least as protective as the way we handle other confidential and sensitive information. Section 14 sets out how.
9.2 How long we keep your biometric data, and when we destroy it
We destroy your biometric identifier and biometric information at the earliest of the following:
- when the purpose for collecting it has been satisfied — that is, when you no longer hold a Trustd profile;
- within three years of your last interaction with us; or
- within 30 days of you asking us to delete it.
In practice the second of these rarely arrives first, because we close a profile automatically after 24 months with no client connection and no activity on it, and we then delete the biometric data within 30 days. Twenty-four months plus thirty days is inside the three year limit.
Destruction means permanent destruction. We are excused from this schedule only where a valid warrant or subpoena requires us to keep the data.
After destruction we keep a record that a verified check took place, its date and the level of confidence it reached. That record contains no biometric identifier and no biometric information.
9.3 Other United States state laws
Texas. The Capture or Use of Biometric Identifier Act requires us to inform you and obtain your consent before capturing a biometric identifier for a commercial purpose, not to sell or disclose it except in limited circumstances, and to destroy it within a reasonable time and no later than one year after the purpose for collecting it expires. The one year period is shorter than the three years Illinois allows, and we apply the shorter period where Texas law applies to you.
Washington, Colorado and other states. A number of states treat biometric data as sensitive personal data that may only be processed with your opt-in consent, and give you rights to access, correct, delete and obtain a copy of it, and to opt out of certain uses. We honour those rights wherever you live rather than only where a law compels it.
We do not use your biometric data for targeted advertising, we do not sell it, and we do not use it for profiling that produces legal or similarly significant effects about you other than the identity check described at section 6.
9.4 Who processes your information for the United States service
The providers we use for the United States service are different from those we use in the United Kingdom. They act on our instructions, under contract, and may not use your information for their own purposes.
Intellicheck — Verifies your identity document and confirms it is genuine and unaltered, and compares your facial image with the photograph on the document. Intellicheck does receive your biometric facial image. Because Illinois law restricts the disclosure of biometric data even to a provider acting on our behalf, Intellicheck is named expressly in the written release you sign before your biometric data is collected. It acts only on our instructions and may not use your information for its own purposes.
Certificial — Verifies and monitors certificates of insurance, so that a client can confirm that cover is current and valid. This handles insurance and business information. It does not receive your facial image or any biometric identifier.
SAFER Web — This is not a provider that receives information about you. It is a free public register operated by the United States Federal Motor Carrier Safety Administration. We look a carrier up on it using a USDOT number, an MC or MX number or a company name, and it returns that carrier’s identification, size, commodity information, safety rating, roadside out-of-service inspection summary and crash history. We send it a company identifier and nothing else — no identity information about you, and no biometric data.
One point about the SAFER Web records. Where you operate as a sole proprietor or owner-operator, the carrier being looked up is you. Information that looks like company information — including the inspection and crash history — is then also information about you personally. We treat it that way, and your rights at section 9.5 apply to it. The underlying record is held by the Federal Motor Carrier Safety Administration and is public; if you believe it is wrong, it has to be corrected with them rather than with us, and we will tell you how.
Your biometric data is stored on Amazon Web Services in the United States, as described at section 12. For the United States service this is domestic storage rather than an international transfer.
Intellicheck does not retain your facial image after it has completed the comparison.
9.5 Your rights, and how to enforce them
You can ask us for a copy of the biometric data we hold about you, ask us to correct it, ask us to destroy it, and withdraw your written release. Withdrawing it means we destroy your biometric data and you can no longer use the identity confirmation service described at section 8. It does not remove the record that your identity was verified.
To make any of these requests, contact us using the details at section 17.
Illinois law gives you a right to bring a claim in your own name if we breach it, and you do not need a regulator to act for you first. We would rather you came to us and gave us the chance to put something right, but that is your choice and not a condition.
10. Business checks, and checks against sanctions and public interest lists
Some clients ask us to carry out checks that go beyond confirming who you are. These are done only where a client asks for them. They are not part of the identity check described at section 1 and are not covered by our UK certification.
10.1 Checking the business
Where you operate through a business, we confirm that the business is registered and trading, and we identify its registered directors and its ultimate beneficial owners — the people who ultimately own or control it. We use Creditsafe for this, alongside the public Companies House register and the register of people with significant control.
This means we hold information about directors and beneficial owners: name, date of birth, nationality, country of residence, correspondence address, and the size of their shareholding or control.
If you are a director or beneficial owner, you may be reading this because we hold information about you even though you have never used Trustd. We obtained it from public registers and from Creditsafe, not from you. You have the same rights as anyone else described in this notice, including the right to see what we hold and to object. Section 17 explains how to contact us.
10.2 Sanctions, politically exposed persons and adverse media
Where a client asks us to, we check people against three kinds of source. We use Creditsafe, and for the first two we may also use GBG.
Sanctions lists — official lists of people and organisations subject to financial or trade restrictions.
Politically exposed persons — people who hold or have held prominent public office, and their close family members and known close associates. Being on such a list is not an allegation of wrongdoing; it means the law requires extra care.
Adverse media — publicly reported information suggesting involvement in financial crime, fraud or similar conduct.
These checks exist because clients have legal duties around money laundering, terrorist financing and sanctions, and because they need to know who they are trading with. Your client decides that a check is needed and what it does with the result; we carry it out on its instructions.
10.3 Ongoing monitoring
Where a client asks for it, these checks are not carried out once. You and, where relevant, the officers of your business are monitored continuously against the same sources for as long as the client requires, so that a new match is picked up when it appears.
We stop monitoring when the client stops asking us to. If your relationship with a client ends, monitoring for that client ends with it.
10.4 If there is a match, and how to challenge it
A match does not decide anything on its own. Every match is looked at by a person before it results in any consequence for you. Automated screening alone does not suspend you or refuse you work.
These checks can and do produce false matches. Adverse media in particular can pick up someone who shares your name, an old report that was later corrected or withdrawn, or a story that turns out to concern someone else. We record why a match was accepted or discounted, and a match we have discounted is not held against you in a later check.
If a check produces a match that affects you, you will be told there is a match and you can dispute it. Where the underlying information comes from a public register or a news source, the record has to be corrected at that source rather than by us, and we will tell you where to go. Where we hold the assessment, we will correct our own record.
One thing worth saying plainly. Adverse media searches read publicly reported information about you, and that reporting can incidentally reveal things that have nothing to do with financial crime — your political views, your religion, your health. We do not go looking for it, we do not use it, and we do not keep it beyond what is needed to record the decision on the match.
11. Who we share your information with
- The Client that asked you to complete the check. We provide the result of the verification and a record of how it was carried out.
- The third-party providers listed at section 5, so that they can carry out the checks we have asked them to perform.
- Fraud prevention agencies and the authorities, where we suspect identity fraud or another offence.
- Law enforcement or another public body where we receive a valid legal order. We satisfy ourselves that the request is valid and that no more information is provided than is necessary, and we tell the Client where we are able to.
- Our auditor and the regulator of the digital verification services trust framework, for the purpose of certification and supervision.
- A buyer or seller, if we sell or buy a business or assets, or if our business is acquired.
We do not sell your information. We do not share the information collected when your identity is verified with advertisers. Cookies on our marketing website do involve third parties, including an advertising network; this is explained at section 16 and in the Trustd Cookie Policy.
12. Where your information is stored, and international transfers
The Trustd service is hosted on Amazon Web Services in the United States, in the US East (Ohio) region, across more than one data centre so the service keeps running if one fails. Backups are held in the same region and kept for seven days. This means all the information described in this notice, including your biometric information, is stored in the United States.
Our support system is provided by Zendesk and is hosted in the United Kingdom. Limited information about you is passed to it if you raise a support ticket. Your biometric information is not.
Where your check was requested by uShip, which is established in the United States, the outcome of your check and your profile status are made available to uShip there.
Because the United States does not have UK adequacy status, we rely on the International Data Transfer Agreement, or the International Data Transfer Addendum to the European Commission’s standard contractual clauses, together with an assessment of the risks of the transfer. You can ask us for a copy of the safeguards we rely on, and we will provide it.
If the earlier version of this notice told you that your information was stored in Ireland and would not be transferred outside the United Kingdom or the European Economic Area, that is no longer correct and this notice replaces it.
13. How long we keep your information
Your biometric template, your facial image and your identity document images — for as long as you have a profile. Deleted within 30 days of your profile closing. Section 8 explains this in full.
Your profile information, such as your name, date of birth and contact details — for as long as you have a profile, then deleted within 30 days.
Live photographs taken for a Trustd Loads check — deleted once the comparison is complete.
The record that a verified check took place, its date and the confidence level reached — six years from the date of the check. This contains no biometric information.
Results of activity history and fraud checks — six years from the date of the check.
Fraud investigation records — six years from the case closing. These are not deleted when a profile closes, because the reason for holding them outlasts the profile.
Support tickets — 24 months from the ticket closing.
Bank details, where you use a Client’s payment service through Trustd — deleted when the payment account is deleted. Records of financial crime checks are kept for six years, because anti-money-laundering law requires it.
We close your profile if you ask us to, and automatically if there has been no Client connection and no activity for 24 months. That automatic closure exists so that “for as long as you have a profile” cannot become “indefinitely”.
If an earlier version of this notice gave you a different period — seven years, or 28 days — this notice replaces it.
Where we are under a legal obligation to keep information for longer, for example following a valid request from law enforcement, we will do so.
14. How we protect your information
- Personal data is encrypted in transit and at rest.
- Access is restricted to those with a genuine business need, is subject to a duty of confidentiality, and is protected by multi-factor authentication.
- We operate an information security management system certified to ISO/IEC 27001, and a risk management framework aligned to ISO/IEC 27005.
- We have a documented procedure for responding to a personal data breach, and we will notify you and the regulator where the law requires it.
The transmission of information over the internet is never completely secure. We protect your information as far as we are able, but any transmission is at your own risk.
15. Your rights
You have the following rights in relation to your personal data: to be told how it is used and to have a copy of it; to have inaccurate information corrected; to have information erased in certain circumstances; to receive information you provided in a portable format; to object to processing in certain circumstances, including at any time to direct marketing; to have processing restricted in certain circumstances; and to complain to the Information Commissioner’s Office.
Where we act as processor, the Client is responsible for answering your request. If you contact us we will pass your request to the Client and tell you that we have done so. Where the request concerns processing for which we are the controller, as described at section 7.2, we will answer it ourselves.
To make a request, contact us using the details at section 17, tell us enough to identify you, and tell us what your request relates to. We may ask you to confirm your identity before we act, so that we do not disclose your information to someone else.
We do not have to disclose information about fraud indicators. Where that applies you should contact the relevant fraud prevention agency.
16. Cookies and similar technologies
A cookie is a small file of letters and numbers stored on your browser or device. Cookies contain information that is transferred to your device and allow the Trustd platform to recognise it.
Cookies that are strictly necessary for the platform to work are enabled by default and are set automatically at the point you access the Trustd platform. Any cookie that is not strictly necessary is set only where you expressly consent to it through the cookie banner. You can change your choice at any time.
| Type of cookie | What it does |
| Strictly necessary | Required for the operation of the Trustd platform. These include cookies that let you sign in to secure areas of the platform, and cookies that record that you have accepted this notice. |
| Analytical | Allow us to recognise and count visitors and to see how visitors move around the Trustd platform. This helps us improve the way the platform works, for example by making sure people can find what they are looking for. |
| Functionality | Recognise you when you return to the Trustd platform. These allow us to personalise content, greet you by name, and remember your preferences such as your choice of language or region. |
| Targeting | Record your visit to our websites, the pages you visit and the links you follow. We use this to make our websites, and any offers we send you, more relevant to your interests. On our marketing website these cookies involve third parties, listed below. They are set only where you agree first. |
Some cookies on our marketing website are set by other organisations rather than by us. Those organisations receive information about your visit and handle it under their own privacy policies, which we do not control. They are:
| Third party | What it is used for |
| Google Tag Manager | Manages which tags and cookies load on the website |
| Google Analytics | Measures how visitors reach and move around the website so that we can improve it |
| Records visitor behaviour on the website and supports our advertising on LinkedIn |
We do not sell cookie information, and we do not pass it to anyone other than the providers named above and any provider we use to operate the service itself.
Full details of every cookie we use, including how long each lasts and how to change your choices, are set out in the Trustd Cookie Policy on our help centre. That policy covers both the Trustd platform and our marketing website, and is maintained by Managed Identities Limited.
16.1 Device and usage information
We may collect information about the mobile phone, computer or other device from which you access the Trustd platform, including where available your IP address, operating system, screen size and resolution, and browser type. We use this for systems administration and to understand how the service is used.
This is statistical information about how the platform is used and does not by itself identify you. We may, however, use it together with other information we hold about you in order to understand your use of the service.
17. How to contact us, and how to complain
We hope we can resolve any concern you raise about how your information is used.
| Purpose | Contact |
| Questions about why you were asked to complete a check, the result, or how long the result is kept | The Client that asked you to complete the check |
| Questions about this notice or about how we handle personal data | [email protected] |
| Data protection officer | [email protected] |
| Postal address | Managed Identities Limited, Newstead House, Pelham Road, Nottingham, United Kingdom NG5 1AP |
You may also complain to the Information Commissioner’s Office, which regulates the handling of personal information in the United Kingdom, at ico.org.uk/make-a-complaint or on 0303 123 1113. You do not have to complain to us first, although we would prefer the chance to put things right.