GDPR Compliance

Last updated: 05 January 2026

1. Introduction

At One Mental Hub, we are committed to protecting your personal data and complying with the General Data Protection Regulation (GDPR). This GDPR Compliance statement explains how we handle your personal data in accordance with GDPR requirements.

2. Data Controller

One Mental Hub acts as the data controller for personal information collected through our website and services. As the data controller, we determine the purposes and means of processing personal data.

3. Lawful Basis for Processing

We process personal data on the following lawful bases:

  • Consent: Where you have explicitly agreed to our processing of your personal data for one or more specific purposes.
  • Contractual Necessity: Where processing is necessary for the performance of a contract with you.
  • Legal Obligation: Where processing is necessary for compliance with a legal obligation.
  • Legitimate Interests: Where processing is necessary for the purposes of our legitimate interests, except where such interests are overridden by your interests or fundamental rights and freedoms.

4. Privacy-Friendly Analytics

We use Plausible Analytics, a privacy-friendly and GDPR-compliant analytics tool that does not use cookies and does not collect personal data. This allows us to understand how our website is used without compromising your privacy.

Key features of our analytics implementation:

  • No cookies are used
  • No personal data is collected or stored
  • No cross-site tracking
  • No persistent identifiers
  • Data is anonymized and aggregated

5. Your Rights Under GDPR

Under the GDPR, you have the following rights regarding your personal data:

  • Right to Access: You have the right to request a copy of your personal data.
  • Right to Rectification: You have the right to request correction of inaccurate personal data.
  • Right to Erasure: You have the right to request the deletion of your personal data in certain circumstances.
  • Right to Restrict Processing: You have the right to request the restriction of processing of your personal data.
  • Right to Data Portability: You have the right to request a copy of your data in a structured, commonly used, and machine-readable format.
  • Right to Object: You have the right to object to the processing of your personal data in certain circumstances.

6. Data Protection Measures

We implement appropriate technical and organizational measures to ensure a level of security appropriate to the risk, including:

  • Encryption of personal data where appropriate
  • Regular testing of security measures
  • Access controls and authentication procedures
  • Staff training on data protection

7. International Transfers

When personal data is transferred outside the European Economic Area (EEA), we ensure that adequate safeguards are in place to protect your data, in compliance with GDPR requirements.

8. Contact Us

If you have any questions about our GDPR compliance or wish to exercise your rights, please contact us at contact @ onementalhub.com.