Governance

Data Protection & Information Governance Statement

Last Updated: June 2026

Introduction

Lazomis is operated by Flux Medical Limited.

We recognise the importance of protecting personal information and maintaining high standards of information governance, privacy and security.

This statement outlines our commitment to data protection and information governance principles.

About Flux Medical Limited

Flux Medical Limited
Company Number: 16158150

Registered Office:
Unit 7 Wheatcroft Business Park
Landmere Lane
Edwalton
Nottingham
England
NG12 4DG

Our Commitment

We are committed to:

  • Protecting personal information
  • Maintaining appropriate security measures
  • Supporting compliance with UK data protection legislation
  • Promoting good information governance practices
  • Handling information responsibly and transparently

Information governance is considered throughout the design, development and operation of Lazomis.

UK GDPR and Data Protection Act 2018

Flux Medical Limited is committed to complying with the principles of:

  • UK General Data Protection Regulation (UK GDPR)
  • Data Protection Act 2018

We aim to ensure that personal information is:

  • Processed lawfully, fairly and transparently
  • Collected for legitimate purposes
  • Limited to what is necessary
  • Accurate and kept up to date
  • Retained only as long as necessary
  • Protected through appropriate security measures

Information Commissioner's Office Registration

Flux Medical Limited is registered with the Information Commissioner's Office (ICO).

We are committed to meeting our responsibilities as a UK organisation processing personal information.

NHS Data Security and Protection Toolkit

Flux Medical Limited maintains compliance with the NHS Data Security and Protection Toolkit (DSPT).

The DSPT provides a framework for measuring and improving information governance and data security practices across health and care organisations.

We review and maintain our compliance as part of our ongoing commitment to information security and governance.

Information Security

We take appropriate steps to protect information against:

  • Unauthorised access
  • Unauthorised disclosure
  • Loss
  • Destruction
  • Alteration

Security measures may include:

  • Secure hosting environments
  • Encryption in transit
  • Access controls
  • Authentication safeguards
  • Audit logging
  • Monitoring and security review processes

Clinical Audit and Quality Improvement Data

Lazomis is designed to support clinical audit and quality improvement activities.

Healthcare organisations remain responsible for ensuring that any use of patient or clinical information complies with:

  • Local governance requirements
  • NHS policies
  • UK GDPR
  • Data Protection Act 2018
  • Applicable organisational policies

Users should ensure appropriate approvals and governance arrangements are in place before processing patient information.

Data Minimisation

We encourage the collection and processing of only the information necessary to achieve a legitimate quality improvement or audit objective.

Where possible, organisations should consider the use of anonymised or pseudonymised information.

Third-Party Providers

Where trusted third-party providers are used to support the operation of Lazomis, appropriate due diligence and contractual safeguards are maintained.

We seek to ensure that suppliers handling information on our behalf maintain appropriate standards of security and confidentiality.

Training and Awareness

We recognise that effective information governance depends on both technology and people.

Information governance, privacy and security considerations are incorporated into our operational processes and platform development activities.

Contact

For questions regarding data protection or information governance, please contact:

Flux Medical Limited
Unit 7 Wheatcroft Business Park
Landmere Lane
Edwalton
Nottingham
England
NG12 4DG

Email: privacy@lazomis.co.uk