Clear boundaries for your information.
This notice explains what personal information ThePlus Tech uses when you visit our site, contact us, receive business communications, buy a service, or take part in a CyberGuardPlus pilot.
Who is responsible
The controller for our business, website, sales, account, and supplier records is Theophilus Ogieva trading as ThePlus Tech, a sole trader.
Address: 58 Porters Avenue, Dagenham, RM8 2AG, United Kingdom.
Email: theo@theplus-tech.com.
When CyberGuardPlus processes security telemetry for a customer, the customer will normally be the controller and ThePlus Tech its processor. The signed order form, data-handling schedule, and approved data-processing terms govern that processing.
What we use and why
| Purpose | Information | Lawful basis |
|---|---|---|
| Respond to enquiries and prepare proposals | Name, role, employer, business contact details, correspondence, and requirements | Steps requested before a contract; legitimate interests in responding and operating our business |
| Deliver and support contracted services | Named users, account records, service communications, delivery evidence, and support history | Contract; legitimate interests where the contract is with your organisation rather than you personally |
| Invoice, collect payment, and keep required records | Customer identity, billing contact, invoice, payment reference, and transaction status | Contract and legal obligations |
| Protect our site and services | IP address, device/browser details, request and authentication logs, security events, and audit records | Legitimate interests in security, fraud prevention, reliability, and legal claims |
| Relevant business development | Professional identity, employer, public role information, contact history, and opt-out status | Legitimate interests after a necessity and balancing assessment; consent where electronic-marketing rules require it |
You can object to direct marketing at any time. We do not sell personal information, and we do not make solely automated decisions that produce legal or similarly significant effects.
CyberGuardPlus pilots
A pilot may process source and destination IP addresses and ports, protocol and traffic-volume metadata, timestamps, usernames or account identifiers, authentication success/failure, analyst notes, and named console-user records. It is not intended to collect packet payloads, file contents, message contents, or special-category information.
Pilot telemetry is used only to provide the agreed threat-visibility, incident-correlation, evidence-reporting, security, support, backup, and deletion functions. CyberGuardPlus recommends response actions but does not automatically execute actions on a customer network.
Where information comes from
We obtain information:
- directly from you, your organisation, or a person who introduces you;
- from public business and professional sources, such as company websites and LinkedIn;
- from service activity, including security, audit, support, and delivery records; and
- for a CyberGuardPlus pilot, from the customer-approved sensor and named customer users.
Who receives it
Access is limited to ThePlus Tech and providers needed for the stated purpose. Current providers include:
- Vercel for website hosting, and Cloudflare for DNS and edge infrastructure;
- Google for business email and document services;
- Cal.com when you choose to book a meeting;
- Stripe when an invoice or payment link is used; and
- OVHcloud for the UK-hosted CyberGuardPlus pilot environment.
We may also disclose information to professional advisers, regulators, courts, law enforcement, or a business successor when the law permits or requires it. We require processors to protect information and use it only for the relevant service.
International transfers
Our primary CyberGuardPlus environment is in the United Kingdom. Some website, email, booking, and payment providers may process information outside the UK. Where UK data-protection law requires a transfer safeguard, we rely on an applicable UK adequacy regulation or the provider's contractual transfer mechanism, such as the UK International Data Transfer Agreement or UK Addendum.
How long we keep it
- Enquiries and business-contact records: normally up to 24 months after the last meaningful interaction.
- Contracts, invoices, and core transaction records: normally up to six years after the relationship ends.
- Our copies of routine website and security logs: normally up to 90 days, unless required for an incident or legal claim.
- Marketing opt-out records: as long as needed to respect the objection.
- CyberGuardPlus telemetry and backups: the periods agreed in the customer data-handling schedule; primary data is purged at closeout and backup expiry is recorded separately.
We may keep information longer when law, a dispute, fraud prevention, or a security investigation requires it.
Your rights
Depending on the circumstances, you may ask for access, correction, deletion, restriction, or portability of your information, or object to how it is used. Where processing relies on consent, you may withdraw it. These rights are not absolute and we will explain any lawful limitation.
Email theo@theplus-tech.com to exercise a right. You may also complain to the Information Commissioner's Office.
Cookies and changes
The public site does not currently use non-essential advertising or analytics cookies. Providers may still generate essential request, security, or booking/payment records when you use their services. If we introduce non-essential tracking, we will update this notice and obtain consent where required.
We will update the effective date and this page when our processing or legal obligations materially change.
This notice describes our current operating practices. Customer-specific processing remains subject to the signed agreement and data-handling schedule for that engagement.