Privacy policy
1. Controller
The controller responsible for processing personal data on this website within the meaning of the General Data Protection Regulation (GDPR) is:
Sogln Ltd.
69 Great Hampton Street
Birmingham, United Kingdom, B18 6EW
Email: office@lpm.academy
If a data protection officer has been appointed, you can contact them at: [insert the data protection officer’s email address, if applicable].
2. Provision of the website and server log files
When you visit our website, the hosting provider automatically records information in server log files. This includes:
- IP address of the requesting device
- Date and time of the server request
- Name and URL of the resource accessed
- Volume of data transferred
- Referrer URL (the page previously visited)
- Browser used and, where applicable, the operating system
- Name of the access provider
Purpose: This data is processed to ensure that the website operates without disruption, to improve security and to analyse errors.
Legal basis: Article 6(1)(f) GDPR (legitimate interest in providing a secure and stable website).
Retention period: Log files are automatically deleted after [number] days, unless they are needed to investigate a specific security incident.
3. Contacting us
If you contact us by email or telephone, the data you provide (for example, your name, email address, telephone number and the content of your enquiry) will be processed to handle your enquiry.
Purpose: Responding to your enquiry and, where applicable, taking steps prior to entering into a contract.
Legal basis: Article 6(1)(b) GDPR (steps prior to entering into a contract) or Article 6(1)(f) GDPR (legitimate interest in responding to enquiries).
Retention period: Your data will be deleted once your enquiry has been fully dealt with, provided that no statutory retention obligations prevent its deletion.
4. External links
Our website contains links to external services, particularly ESGSDG, LPM Academy, the Academy programme and GEOP. When you access these external services, the respective providers’ privacy policies apply. We have no influence over the processing of data by these third-party providers. Please consult their policies separately.
5. Third-party providers and tracking
The supplied website draft does not integrate external fonts, analytics, advertising or social media tracking services. Images and scripts are served locally.
If third-party services (such as Google Analytics, newsletter tools or external media) are used in future, this privacy policy will be updated accordingly beforehand and your consent will be obtained where required.
6. Data subject rights
Under the GDPR, you have the following rights:
- Right of access (Article 15 GDPR) to the personal data held about you.
- Right to rectification (Article 16 GDPR) of inaccurate or incomplete data.
- Right to erasure (Article 17 GDPR) of your data, provided that no statutory retention obligations prevent erasure.
- Right to restriction of processing (Article 18 GDPR).
- Right to data portability (Article 20 GDPR).
- Right to object (Article 21 GDPR) to processing based on a legitimate interest.
- Right to withdraw consent previously given (Article 7(3) GDPR), with effect for the future.
- Right to lodge a complaint with a competent data protection supervisory authority (Article 77 GDPR).
To exercise your rights, you may contact the controller at the address given above; no particular form is required.
7. Data security
We take appropriate technical and organisational measures to protect your data against loss, misuse and unauthorised access. Data is transmitted using encryption (SSL/TLS).
8. Updates to this privacy policy
This privacy policy must be adapted to the systems actually used and the applicable legal requirements. As soon as further functions, such as forms, analytics tools, newsletters, external media or marketing technologies, are added, this policy will be updated without delay.
Last updated: 22 September 2026