Last Updated: June 19, 2026
cascade-gazelle is committed to compliance with the General Data Protection Regulation (GDPR). This page explains how we process personal data in accordance with GDPR requirements and your rights as a data subject.
cascade-gazelle acts as the data controller for personal information collected through our website and travel services.
cascade-gazelle
47 Colmore Row
Birmingham, B3 2BS
United Kingdom
Email: [email protected]
We process personal data under the following lawful bases:
As a data subject, you have the following rights:
You have the right to request copies of your personal data that we hold. We may charge a reasonable fee for additional copies.
You have the right to request correction of inaccurate or incomplete personal data.
You have the right to request deletion of your personal data under certain circumstances, including when the data is no longer necessary for the purposes for which it was collected.
You have the right to request restriction of processing your personal data under certain conditions.
You have the right to request transfer of your personal data to another organization or directly to you in a structured, commonly used, machine-readable format.
You have the right to object to processing of your personal data based on legitimate interests or for direct marketing purposes.
You have the right not to be subject to decisions based solely on automated processing, including profiling, which produce legal effects or similarly significantly affect you.
To exercise any of your rights under GDPR, please contact us at [email protected] with the subject line "GDPR Request". We will respond within one month of receiving your request.
We process the following categories of personal data:
We share personal data only when necessary to:
We ensure all third parties respect the security of your personal data and process it in accordance with applicable law.
When arranging travel services, your data may be transferred to countries outside the European Economic Area. We ensure appropriate safeguards are in place, including standard contractual clauses approved by the European Commission.
We retain personal data only for as long as necessary to fulfill the purposes for which it was collected and to comply with legal, accounting, or reporting requirements.
We implement appropriate technical and organizational measures to ensure a level of security appropriate to the risk, including:
In the event of a personal data breach that is likely to result in a risk to your rights and freedoms, we will notify you and the relevant supervisory authority within 72 hours of becoming aware of the breach.
You have the right to lodge a complaint with a supervisory authority if you believe our processing of your personal data violates GDPR. In the United Kingdom, the supervisory authority is:
Information Commissioner's Office (ICO)
Wycliffe House
Water Lane
Wilmslow
Cheshire SK9 5AF
United Kingdom
We may update this GDPR compliance statement from time to time. Changes will be posted on this page with an updated revision date.
For any questions about our GDPR compliance or to exercise your rights, please contact us at [email protected]