PHIIR Labs Privacy Policy

Last Updated: October 2025

1. Who We Are

PHIIR Labs Ltd (“PHIIR Labs”, “we”, “us”, “our”) is a research and development company based in the United Kingdom developing deterministic decision-support software for healthcare and enterprise applications.

2. Scope of this Policy

This Privacy Policy explains how we collect, use, store, and protect personal information obtained through our website (www.PHIIRLabs.com) and related contact forms. It does not apply to pilot research data, clinical collaborations, or partner systems, which are governed by separate data-processing agreements.

3. Information We Collect

We collect only what is necessary for legitimate business purposes:

  • Contact information (name, email, organization, message content) when you submit a form or email us.

  • Website analytics (anonymized usage data, cookies, and aggregate traffic metrics) via compliant analytics tools.

  • Professional details if you voluntarily supply them (e.g., role, sector, country) in a partnership inquiry.

We do not intentionally collect sensitive personal data, health information, or financial data via this website.

4. How We Use Information
  • To respond to inquiries and manage partnerships or investment discussions.

  • To evaluate interest in pilot participation or collaboration.

  • To maintain security, audit logs, and site functionality.

  • To comply with legal and regulatory obligations.

We do not sell or lease personal information.

5. Legal Basis for Processing

Under UK GDPR, our processing bases include:

  • Legitimate interest (communication with professionals and partners).

  • Consent (where you submit data voluntarily).

  • Legal obligation (compliance, record keeping).

6. Data Storage and Security
  • Data is stored on encrypted servers located in the UK or EEA.

  • Access is restricted to authorised PHIIR Labs personnel on a least-privilege basis.

  • We apply encryption in transit (TLS 1.3) and at rest.

  • Retention: data is kept only as long as necessary to fulfil its purpose or comply with law, then securely deleted.

7. Data Sharing and Transfers

We may share information with:

  • Technology or hosting providers bound by confidentiality and data-processing agreements.

  • Regulators or authorities where legally required.

  • Partner institutions under formal contracts that define data use and protection.
    We do not transfer personal data to jurisdictions lacking adequate protection without appropriate safeguards (Standard Contractual Clauses or equivalent).

8. Your Rights

Under UK GDPR / EU GDPR you may:

  • Request access to your data.

  • Request correction or deletion.

  • Object to processing or request restriction.

  • Withdraw consent at any time.

To exercise rights: contact privacy@PHIIRLabs.com.
We will respond within 30 days where legally required.

9. Cookies and Analytics

Our site uses minimal cookies for essential functionality and anonymised analytics.
You can disable non-essential cookies through your browser or our cookie banner.
We do not use tracking for advertising or profiling.

10. Children’s Privacy

The site and its services are not directed to individuals under 16.
We do not knowingly collect information from minors.

11. Updates to This Policy

We may update this Privacy Policy periodically.
The latest version will always be posted at www.PHIIRLabs.com/privacy.

12. Contact Us

Questions or requests regarding this policy should be sent to:
Data Protection Officer
PHIIR Labs Ltd
Email: privacy@PHIIRLabs.com