Privacy Policy
Version 0.1 · Last updated: 29 January 2026
1. Introduction
Magpie Standard ("we", "us") is committed to protecting your privacy. This Privacy Policy explains how we collect, use, and protect your personal data.
We are the data controller for data collected directly. Societies are controllers for their member data.
2. Data We Collect
We collect:
- Account information (name, email, organisation)
- Work metadata (titles, descriptions, not the works themselves)
- ISCC fingerprints (cryptographic hashes only)
- Transaction records
- Usage analytics
3. How We Use Your Data
We use your data to:
- Provide and improve our services
- Process licensing transactions
- Generate certificates and reports
- Communicate service updates
- Comply with legal obligations
5. Your Rights
Under UK GDPR, you have the right to:
- Access your personal data
- Rectify inaccurate data
- Erase your data (subject to legal retention)
- Restrict processing
- Data portability
- Object to processing
- Withdraw consent
6. Data Retention
We retain data for:
- Active accounts: Duration of account plus 2 years
- Transaction records: 7 years (legal requirement)
- ISCC fingerprints: Indefinitely (for verification)
7. Security
We protect your data with:
- Encryption (TLS 1.3 in transit, AES-256 at rest)
- Access controls and authentication
- Regular security audits
- Incident response procedures
8. Contact Us
For privacy queries:
Data Protection Officer
Magpie Standard
Email: privacy@magpiestandard.co.uk
You also have the right to lodge a complaint with the ICO.