Data Rights & Compliance
Jun, 30 2025Legal Basis for Data Processing
Red Floor Pharmaceuticals processes personal data strictly in accordance with applicable data privacy laws in the United States of America. Our legal basis for processing personal information collected through our website is founded upon obtaining user consent, fulfilling contractual obligations, complying with legal requirements, and pursuing legitimate business interests in delivering accurate pharmaceutical information and improving our services. We observe rigorous transparency regarding the types of data we process, which may include user names, contact details, IP addresses, and usage analytics. All personal data is processed only for the explicit purposes communicated at the point of collection, ensuring full alignment with statutory and regulatory data protection frameworks. We engage in regular reviews of our data processing activities to confirm ongoing compliance with evolving legal standards and ensure that only necessary data is retained. Our processes are designed to minimize the risk of unauthorized access, accidental loss, and breaches of confidentiality. Should data processing operations be based on your explicit consent, you are entitled to withdraw it at any time without impact on previous lawfulness. We provide clear means for users to manage their consent preferences, and all records of individual consent are securely maintained. Our privacy practices are reviewed and updated in sync with any changes to relevant legal or regulatory requirements. We are committed to ensuring that data is processed fairly, lawfully, and transparently, and we do not use collected personal data for purposes other than those specified without renewed consent. When applicable, we may process personal information under the legitimate interests provision, which encompasses managing our business operations, maintaining cybersecurity, and optimizing user experience. Additionally, we process personal data to satisfy statutory obligations such as responding to official requests from judicial authorities or regulatory agencies. We will never sell, lease, or share personal data with unaffiliated third parties for commercial gain. Any information that is transferred outside the United States is subjected to appropriate protection mechanisms. Continued interaction with our website constitutes acceptance of our data processing policies under the outlined legal bases.
Data Subject Rights
Data subjects whose personal information is processed by Red Floor Pharmaceuticals are entitled to exercise several rights that ensure control and transparency over their data. These include the right to be informed about the collection and use of their personal data, ensuring clarity about our purposes and data practices. You retain the right to access your personal information and request detailed disclosures concerning the categories, sources, recipients, and intended use of such data. Where appropriate, users may request rectification of inaccurate or incomplete personal data to guarantee accuracy and integrity. You have the right to request the erasure of your personal information when it is no longer needed for the purposes for which it was collected, subject to legal or contractual retention obligations. If you object to certain types of data processing or wish to restrict processing, you may exercise these rights by contacting us in writing. Withdrawal of consent or restrictions on data processing may affect your access to particular website features or services, but we will endeavor to implement such requests promptly and comprehensively. In situations where personal data is transferred to third parties for processing, we will ensure that your rights are equally recognized and upheld. Should you wish to receive your processed data in a commonly used and machine-readable format, we will provide such access upon request. If you have concerns about data processing, you may contact us directly for clarification or raise a formal complaint, and we will address these in accordance with applicable dispute resolution protocols. All data subject requests are handled with the highest priority to ensure swift, transparent, and fair resolution. We reserve the right to request proper identification to authenticate any data subject exercising their rights. To initiate or inquire about exercising your rights, please reach out to Jenna Mallory, the website owner, using the contact details provided below. We document and track all data subject requests for accountability and improvement of our compliance protocols.
Information Security and Data Retention
Red Floor Pharmaceuticals employs robust organizational and technical measures to secure your personal data from unauthorized access, disclosure, alteration, or destruction. Our data security strategy involves routine risk assessments, the use of encrypted protocols for data transmission, and secure storage systems with controlled access authorization. User data is protected by best-in-class firewall technology, intrusion detection systems, and continuous monitoring to promptly identify and neutralize threats. Access to personal information is granted solely to authorized employees and service providers under strict confidentiality obligations. We regularly review, test, and enhance our information security programs to adapt to evolving threats and comply with legal standards. Data retention policies are crafted to ensure personal information is retained only as long as necessary to fulfill the original collection purposes or as required by law, after which it is securely deleted or anonymized. All data destruction practices are conducted according to industry best practices and compliance regulations. Backups of sensitive data are maintained in secure locations and encrypted formats to safeguard against data loss due to system failures or disasters. We regularly train staff on privacy responsibilities and incident response for data breaches. In the unlikely event of a data breach that may affect user rights, we will notify affected individuals and authorities as required by applicable law. Our commitment to information security extends to all third-party processors and partners, who are contractually obliged to implement equivalent security measures. Regular audits are performed to verify the effectiveness of our safeguards, and any identified vulnerabilities are addressed promptly. Third-party access is restrictively managed and documented for accountability. All devices and systems used to process personal data are maintained and updated to ensure resiliency against emerging risks. Any suspected or actual incidents involving personal data are escalated immediately to designated personnel for urgent remediation. We continuously consult industry guidance to maintain or exceed the standards expected for data confidentiality, integrity, and availability.
Cookies and Tracking Technologies
Red Floor Pharmaceuticals utilizes cookies and similar tracking technologies to enhance user experience, analyze website performance, and deliver relevant content. Cookies are small data files stored on your device when you visit our website, serving functional, analytical, and performance purposes. Users are informed of cookie usage upon their first visit, providing opportunities to customize preferences and opt in or out of certain categories. Functional cookies enable essential features, such as log-in sessions, language preferences, and navigation assistance, to ensure a seamless browsing experience. Analytical cookies help us understand how visitors interact with our website by providing aggregated data on site usage, which guides improvements and optimizations. We may use limited profiling via cookies to personalize content recommendations or highlight relevant pharmaceutical information, but this is never used for invasive marketing or unsolicited advertising. Users retain full control over their cookie settings and may modify or delete stored cookies through their browser configurations at any time. Disabling certain cookies may impact your access to specific website functions but will not affect core service accessibility. We ensure full transparency about cookie categories, data purpose, and duration through our cookie management interface. All cookie data is managed in accordance with prevailing privacy regulations and is never shared with unauthorized third parties. For any third-party services that use cookies on our website, such as analytics providers, we ensure contractual obligations mandate strict compliance with our privacy standards. Regular reviews of our cookie policy are conducted to ensure its compatibility with new technologies and regulatory obligations. Detailed information about the specific cookies in use is presented through our cookie disclosure mechanism, and support is available to address any user concerns regarding cookie data. Should you require detailed guidance on managing your cookies, our team can provide instructions tailored to your technology environment. We remain dedicated to ensuring transparency, choice, and security around all aspects of tracking technology usage on our site, respecting your rights and privacy choices at all times. The adoption and deployment of cookies are continuously reviewed to ensure alignment with evolving legal and technological landscapes.
International Transfers and Third-Party Processors
Certain business functions performed by Red Floor Pharmaceuticals may necessitate the transfer of personal data to third-party processors or partners located outside of the United States. Whenever such transfers occur, we implement comprehensive safeguards to ensure that your data remains secure and is treated with equivalent levels of protection as governed by U.S. data privacy laws. Third-party processors retained by us for hosting, analytics, or customer support are contractually required to adhere to robust privacy and security practices that meet or exceed our own standards. Prior to initiating any international transfer of data, we assess the privacy landscape in the recipient jurisdiction and adopt mechanisms such as standard contractual clauses or equivalent measures to ensure lawful and secure processing. These transfers are limited to the necessary extent for providing and enhancing our services, conducting regulatory reporting, or facilitating technical infrastructure requirements. We maintain a verified list of authorized third-party processors and perform rigorous due diligence before sharing any personal information. Ongoing monitoring of data processing partners ensures continuous compliance and immediate corrective action in the event of any deviation from prescribed protocols. We provide transparency to our users regarding the categories and identities of third-party recipients, as well as the reasons for such disclosures. At every step, we prioritize minimizing the volume and sensitivity of exported data, applying the principle of data minimization to cross-border processing activities. User data is never transferred for marketing purposes without obtaining prior and explicit consent. In instances where legal or regulatory obligations require the disclosure of information to foreign authorities, we verify such requests and ensure all necessary protections are in place prior to compliance. Should a data subject’s rights be affected by an international transfer, we will facilitate access, rectification, or erasure as mandated by law and our privacy practices. All international data transfer practices are reviewed and updated regularly to accommodate new regulatory frameworks or contractual changes with third parties. Our approach to international transfers is governed by principles of accountability, transparency, and ongoing risk assessment to ensure continued trust and protection of all personal data under our stewardship.
Contact Information for Data Protection Inquiries
If you have questions, requests or concerns regarding your personal data, data subject rights, or our compliance with data protection laws, you are encouraged to contact us in writing. The designated owner responsible for data protection is Jenna Mallory. Correspondence may be addressed as follows: Jenna Mallory, Bath Spa University, Newton Park, Bath, BA2 9BN, United Kingdom. Alternatively, you may reach us via email at [email protected]. Our team is committed to responding promptly and thoroughly to all inquiries pertaining to personal data, privacy practices, or the exercise of your rights under applicable regulations. All communication is treated with the utmost confidentiality, and appropriate measures are taken to ensure the security and integrity of the data included therein. We are dedicated to providing clear, comprehensive, and accessible information to support your understanding of our data protection commitments. Should your inquiry require escalation or legal review, you will be notified in writing of the relevant process and expected timelines for resolution. Our contact details are provided on every page to ensure ease of access for all data subjects. We thank you for trusting Red Floor Pharmaceuticals with your personal data and for your ongoing partnership in data security and compliance.