Privacy Policy
Last updated: 8 October 2026
The Cliff ("we", "us", "our") respects your privacy. This Privacy Policy explains what personal data we collect through the-cliff.org (the "Site"), how we use it, and the rights you have. We process personal data in accordance with the EU General Data Protection Regulation (GDPR) and the Irish Data Protection Act 2018.
1. Who we are
The data controller for the Site is The Cliff, 39 Grove Park, Rathmines, Dublin 6, D06 KT28, Ireland. You can reach us at [email protected].
2. What we collect
- Information you send us. If you contact us by email or phone, we receive the details you provide (such as your name, email address and the content of your message).
- Technical & usage data. Like most websites, our servers and optional analytics may record limited technical information such as your browser type, device, approximate region and the pages you view.
- Cookies. We use a small number of cookies as described in our Cookie Policy.
3. How we use your data
- To respond to your enquiries and provide the information you ask for;
- To operate, maintain and improve the Site and understand how it is used;
- To keep the Site secure and prevent misuse;
- To comply with our legal obligations.
4. Legal bases
We rely on your consent (for optional cookies and analytics), our legitimate interests (in running and improving the Site and responding to you), and compliance with legal obligations, as applicable under the GDPR.
5. Third-party sharing
We do not sell your personal data. We may share it with trusted service providers who help us operate the Site (for example hosting and, where enabled, analytics and mapping providers), and where required by law.
6. International transfers
Some of our service providers may process your personal data in countries outside the European Economic Area (EEA). Where we transfer personal data internationally, we rely on appropriate safeguards recognised under the GDPR — such as an adequacy decision by the European Commission or Standard Contractual Clauses — to ensure your data remains protected. You may contact us for more information about these cross-border transfer safeguards.
7. Security
We take data security seriously and apply appropriate technical and organisational security measures to protect your personal data against unauthorised access, loss, misuse or alteration. These measures include encryption in transit (HTTPS), restricted access to information, and regular review of our practices. No method of transmission or storage is completely secure, but we work to safeguard your information and to respond promptly to any incident.
8. Retention
We keep personal data only for as long as necessary for the purposes described above or as required by law, and then delete or anonymise it.
9. Your rights
Under the GDPR you have the right to access, rectify, erase, restrict or object to the processing of your personal data, the right to data portability, and the right to withdraw consent at any time. You also have the right to lodge a complaint with the Irish Data Protection Commission (dataprotection.ie) or your local supervisory authority. To exercise any right, contact us at [email protected].
10. Children
The Site is not directed at children, and we do not knowingly collect personal data from children under the age of 16.
11. Changes to this policy
We may update this Policy from time to time. The current version is always posted on this page with its "last updated" date.
12. Contact
For any privacy question, email [email protected] or write to 39 Grove Park, Rathmines, Dublin 6, D06 KT28, Ireland.