How Triset Ltd collects, uses and protects personal data — across our website, our IT services and our secure disposal operations.
Triset Ltd ("Triset", "we", "us") is a private limited company registered in England and Wales (Company No. 17116041), providing IT field services, desktop and end-user support, IT dispatch and secure IT asset disposal (ITAD) across the United Kingdom.
For the purposes of UK GDPR and the Data Protection Act 2018, Triset Ltd is the data controller for personal data collected through our website and business operations, and acts as a data processor when handling data-bearing client equipment under instruction from our clients.
Contact for all privacy matters:
Fahad Nazeer, Founder — Triset Ltd
Email: [email protected] | Tel: +44 7491 569294
Manchester, M32 8PS, United Kingdom
a) Website enquiries. When you contact us via our website form or email, we collect your name, company name, email address, phone number and the content of your message.
b) Service delivery data. When providing IT services at your premises, we may collect contact details of your staff representatives, site access information, and asset records (equipment serial numbers and locations).
c) ITAD operations data. When collecting and disposing of client equipment, we maintain asset registers including device serial numbers, certificates of erasure/destruction, waste transfer documentation and client identity records — required for legal compliance and audit trails.
d) Technical data. Our website hosting (Netlify) may process standard server logs such as IP addresses and browser types for security and performance purposes.
We use personal data to:
We do not sell, rent or trade personal data to third parties for marketing purposes. We send no marketing emails unless you have explicitly asked to receive them.
When clients entrust us with data-bearing equipment, we act strictly as a data processor under their instruction:
Where equipment contains data that cannot be reliably attributed or instructed upon, we default to secure erasure or destruction before any recycling or resale.
We share personal data only where necessary:
All data is stored and processed within the UK or under adequacy arrangements. We do not transfer personal data outside UK GDPR protections.
Under UK GDPR you have the right to: access your personal data; rectify inaccurate data; request erasure; restrict or object to processing; data portability; and withdraw consent where processing is consent-based. You may also complain to the Information Commissioner's Office (ico.org.uk).
To exercise any right, email [email protected]. We respond within one month, free of charge.
Our website uses no advertising or tracking cookies. Only strictly necessary technical cookies/local storage may be used for site functionality. We do not run analytics, advertising pixels or third-party trackers at this time. Should this change, this policy and a consent notice will be updated accordingly.
We apply appropriate technical and organisational measures: encrypted website connections (HTTPS/SSL), restricted access to records, secure handling procedures for data-bearing equipment, and staff confidentiality obligations. Where incidents affecting personal data occur, affected individuals and the ICO are notified as legally required.
We may update this policy as our services or the law evolve. The latest version is always published on this page with its review date.
This policy was last reviewed: 2025. Next scheduled review: 2026.
Contact our data lead: [email protected] — response within one working day.