Skip to main content

Privacy Policy

ABOUT THIS POLICY

The Accessus Group Limited is committed to protecting and respecting your privacy.

We would like you to know that we will only use your personal information where necessary in order to provide and or receive services.

This Policy explains why and how we collect your personal information through your use of this website, how we use it, how we protect it, who has access to it and for what purpose and what rights you have in relation to our use of your personal information.

This website is not intended for children and we do not knowingly collect data relating to children.

WHO WE ARE

The Accessus Group Limited, a private company limited by shares (no. 16060922), is the immediate parent of the three following companies, all of which are wholly owned subsidiaries of The Accessus Group Limited:

  • Accessus Chat Limited (no. 16064545)
  • Accessus Connect Limited (no. 16065821)
  • Accessus Consult Limited (no. 16065974)

together referred to as 'the Group'.

This privacy policy is issued on behalf of the Group so when we mention "Accessus", "we", "us" or "our" in this privacy policy, we are referring to the relevant company in the Group responsible for processing your data. We will let you know which entity will be the controller for your data when you engage with us as part of service delivery and/or receipt.

The Accessus Group Limited is the controller and responsible for this website.

The registered address for all companies within the Group is Appleton House, 25 Rectory Road, West Bridgford, Nottingham, NG2 6BE.

If you have any questions about this privacy policy, including any requests to exercise your legal rights please contact us using the information set out in the contact details section.

WHAT PERSONAL INFORMATION DO WE COLLECT AND WHY?

The information we collect will depend upon your interaction with us. We have grouped our interactions into the following categories:

Commercial Clients

In relation to existing, potential or past commercial clients, we will hold the necessary information to enable us to maintain our contractual and legal obligations in relation to the delivery of the services commissioned from us. This is likely to include your business contact details (name, email address and telephone number) and your job title. For legal purposes only, we will hold this information for six years from the date the commercial relationship ceases.

Employees

If you are an employee, we will collect the following personal information from you for remuneration, taxation, pension and benefits, training, and employee records purposes:

  • Name
  • Address
  • NI number
  • Identity documentation
  • Contact details
  • Bank details

We will hold this data for the duration of your employment and seven years thereafter, in order to meet our legal obligations.

Service Recipients (Market Access & Payer Engagement Services)

We consider this category to be any individual with whom we interact, in order to deliver services on behalf of our commercial clients. This might include healthcare professionals or other relevant decision makers within the healthcare system in the United Kingdom.

We will only hold personal information to the extent this is necessary to deliver services on behalf of our commercial clients or evidence the same. This is likely to include:

  • Name
  • Contact details (email address or telephone number)
  • Job title
  • Employer
  • Place of work

Prospective Employees

If you have applied for a vacancy with us, we will hold your personal information, in order to process your application. The information we hold is likely to include:

  • Name
  • Address
  • Contact details
  • CV/Application Form

If you are unsuccessful in obtaining a role with us, unless you give us your specific consent to retain your personal information for future opportunities, we will not keep your personal information once the role has been filled, you can be assured that all the details we hold on you will be deleted at this stage. If you are successful in obtaining a role with us, your personal information will be treated in accordance with our section above titled 'Employees'.

Healthcare Professional (Market Research Activities)

Where you are engaged as an independent contractor to provide market research services via our subsidiary, Accessus Chat Limited, Accessus Chat Limited — not The Accessus Group Limited — acts as the sole independent data controller for that processing. This reflects the independent, non-promotional nature of the research and the double-blind model under which it operates.

Please see Accessus Chat Limited's own privacy policy for full details of what is collected, why, and your rights in relation to that data.

Supplier

If the organisation you represent is a supplier or other business providing services to us, we will hold your personal information for a legitimate business interest. It is likely that you either provided this information to us with a business card or we obtained it from publicly available sources. This information might include:

  • Name
  • Contact details (email address and telephone number)
  • Organisation you represent

Website Visitors

If you visit our website, or contact us through it (for example via a contact form, enquiry form or email link), we will collect the personal information you choose to provide to us. This is likely to include your name, email address, telephone number and the content of your message.

We use this information to respond to your enquiry only.

HOW IS YOUR INFORMATION COLLECTED?

We obtain the majority of the personal information we hold via direct interaction with you e.g. you may give us your name and contact details directly or by filling in forms or corresponding with us by phone or email.

There are some circumstances where we obtain personal information from third parties (e.g. recruitment consultants or directly from our commercial clients). In these instances, we will ensure the third party has complied with all legal requirements in obtaining the personal data they provide to us.

We also collect technical data automatically via cookies — see our Cookie Policy.

HOW WE USE YOUR PERSONAL INFORMATION?

We will only use your personal data when the law allows us to. We have set out below a description of all the ways we plan to use your personal data, and which of the legal bases we rely on to do so.

We use the following categories to describe the personal data in question:

  • Identity Data — your name and job title.
  • Contact Data — your address, email address and telephone number.
  • Financial Data — your bank account details.
  • Transaction Data — details of payments made to or by you.

We rely on one or more of the following legal bases:

  • Performance of a contract with you: Where we need to perform the contract we are about to enter into or have entered into with you.
  • Legitimate interests: We may use your personal data where it is necessary to conduct our business and pursue our legitimate interests. We make sure we consider and balance any potential impact on you and your rights before we process your personal data for our legitimate interests.
  • Legal obligation: We may use your personal data where it is necessary for compliance with a legal obligation that we are subject to.
  • Consent: We rely on consent only where we have obtained your active agreement to use your personal data for a specified purpose.

Processing activities and lawful basis:

Purpose or activityType of dataLawful basis
To register you as a new customerIdentity, ContactPerformance of a contract with you
Ongoing provision of services (manage payments, fees, charges; collect money owed)Identity, Contact, Financial, TransactionPerformance of a contract with you; Legitimate interests (to recover debts)
To manage our relationship with you (service information, changes to terms or privacy policy)Identity, ContactPerformance of a contract; Legal obligation; Legitimate interests (keep records updated)
Ongoing employment relationship (paying you, reporting to regulators, liaising with clients)Identity, Contact, FinancialPerformance of a contract; Legitimate interests (maintain client relationships and fulfil legal obligations as employer)
To commission services from youIdentity, ContactPerformance of a contract with you
To provide services on behalf of our commercial clientsIdentity, ContactLegitimate interests (delivery of services on behalf of commercial clients)

WHO HAS ACCESS TO YOUR INFORMATION?

We will only share your personal information to the extent necessary to allow us to provide our services. We will never share your information with third parties for marketing purposes.

We may pass your information to our third-party service providers, agents, subcontractors and other associated organisations for the purposes of completing tasks and providing services to you on our behalf. We require all third parties to respect the security of your personal data and to treat it in accordance with the law. We do not allow our third-party service providers to use your personal data for their own purposes and only permit them to process your personal data for specified purposes and in accordance with our instructions.

We may also transfer your personal information to a third party as part of a sale of some, or all of our business and assets or as part of any business restructuring or reorganisation, or if we're under a duty to disclose or share your personal data in order to comply with any legal obligation. However, we will take all steps to ensure that your privacy rights continue to be protected.

INTERNATIONAL TRANSFERS

We may transfer your personal data to third-party service providers who carry out functions on our behalf, some of whom may be based outside the United Kingdom. Where this involves transferring your personal data to a country which has not been assessed by the UK Government as providing an adequate level of data protection, we ensure a similar degree of protection is afforded to it by ensuring at least one of the following safeguards is in place:

  • we only transfer your personal data to countries that the UK Government has deemed to provide an adequate level of protection for personal data; or
  • we enter into specific contracts approved for use in the UK, namely the International Data Transfer Agreement (or the International Data Transfer Addendum to the European Commission's Standard Contractual Clauses), which give your personal data the same protection it has in the UK.

Where cookies or similar technologies used on our website result in a transfer of your personal data outside the UK, further detail is set out in our Cookie Policy.

Please contact us at data@accessusgroup.com if you would like further information about the specific safeguard used for a particular transfer, or a copy of the relevant contractual safeguards.

YOUR LEGAL RIGHTS

In certain circumstances, you have rights under data protection laws in relation to your personal data:

  • Request access to your personal data (a "data subject access request"). This enables you to receive a copy of the personal data we hold about you and to check that we are lawfully processing it.
  • Request correction of the personal data that we hold about you.
  • Request erasure of your personal data where there is no good reason for us continuing to process it.
  • Object to processing of your personal data where we are relying on a legitimate interest and there is something about your particular situation which makes you want to object.
  • Request restriction of processing of your personal data in the following scenarios: if you want us to establish the data's accuracy; where our use of the data is unlawful but you do not want us to erase it; where you need us to hold the data even if we no longer require it to establish, exercise or defend legal claims; or where you have objected to our use of your data but we need to verify whether we have overriding legitimate grounds to use it.
  • Request the transfer of your personal data to you or to a third party in a structured, commonly used, machine-readable format.
  • Withdraw consent at any time where we are relying on consent to process your personal data.

If you wish to exercise any of the rights set out above, please contact us at data@accessusgroup.com

You will not have to pay a fee to access your personal data. However, we may charge a reasonable fee if your request is clearly unfounded, repetitive or excessive.

We try to respond to all legitimate requests within one month.

DATA SECURITY

We have put in place appropriate security measures to prevent your personal data from being accidentally lost, used or accessed in an unauthorised way, altered or disclosed. In addition, we limit access to your personal data to those employees, agents, contractors and other third parties who have a business need to know.

We have put in place procedures to deal with any suspected personal data breach and will notify you and any applicable regulator of a breach where we are legally required to do so.

HOW LONG WILL YOU USE MY PERSONAL DATA FOR?

We will only retain your personal data for as long as necessary to fulfil the purposes we collected it for, including for the purposes of satisfying any legal, accounting, or reporting requirements.

To determine the appropriate retention period for personal data, we consider the amount, nature, and sensitivity of the personal data, the potential risk of harm from unauthorised use or disclosure of your personal data, the purposes for which we process your personal data and whether we can achieve those purposes through other means, and the applicable legal requirements.

HOW YOU CAN UPDATE YOUR INFORMATION

The accuracy of your information is important to us. If your personally identifiable information changes, please email data@accessusgroup.com

COOKIES

For more information about the cookies we use and how to change your cookie preferences, please see our Cookie Policy.

COMPLAINTS

We aim to meet the highest standards when collecting and using personal data and take any complaints received very seriously. We encourage you to bring to our attention any unfair, misleading or inappropriate collection or use of your data.

You also have the right to make a complaint at any time to the Information Commissioner's Office (ICO), the UK supervisory authority for data protection matters (www.ico.org.uk). We would, however, appreciate the opportunity to address your concerns before you approach the ICO, so please contact us in the first instance at data@accessusgroup.com.

THIRD PARTY LINKS

Our website may include links to third-party websites, plug-ins and applications. Clicking on those links or enabling those connections may allow third parties to collect or share data about you. We do not control these third-party websites and are not responsible for their privacy practices. When you leave our website, we encourage you to read the privacy policy of every website you visit.

CHILDREN

Our website is not directed at, and is not intended for use by, children under the age of 18. We do not knowingly collect personal data from children. If you believe a child has provided us with personal data, please contact us at data@accessusgroup.com and we will take steps to delete it.

HOW TO CONTACT US

Further details on any aspect of this policy and its implementation can be obtained by emailing data@accessusgroup.com

We keep this Policy under regular review. This Policy was last updated in August 2026, but historic versions can be obtained by contacting us. We may change this privacy policy from time to time by amending this page.