Privacy Policy
1. General information
This Privacy Policy describes how personal data is processed and how cookies are used in connection with the use of the aichatforbusiness.uk website.
The data controller is:
[full company name]
[registered address]
Company no.: [company number]
Email: [email protected]
For any matters relating to personal data you can contact the controller by email at: [email protected].
2. Scope and purposes of processing
Personal data may be processed in connection with:
- submitting the contact form,
- sending a request for a quote,
- contact by email or phone,
- booking a consultation,
- delivering a service,
- handling correspondence,
- pursuing or defending legal claims,
- analysing how the website performs,
- handling cookies and analytics tools.
The data processed may include, in particular:
- full name,
- company name,
- email address,
- phone number,
- IP address,
- data contained in the message,
- other data provided voluntarily by the user.
3. Legal basis for processing
Personal data is processed on the basis of:
- Article 6(1)(a) UK GDPR – consent of the data subject,
- Article 6(1)(b) UK GDPR – steps taken before entering into a contract, or performance of a contract,
- Article 6(1)(c) UK GDPR – a legal obligation to which the controller is subject,
- Article 6(1)(f) UK GDPR – the controller's legitimate interests, in particular contacting users, handling enquiries, securing the website, statistics, marketing of our own services and pursuing claims.
4. Contact form and contacting the controller
When you contact us via the form, email or phone, your data is processed in order to handle the enquiry and provide a response.
Providing your data is voluntary, but it may be necessary to handle your enquiry or prepare a proposal.
5. Service delivery and business cooperation
If a user or their company works with the controller, data may be processed in order to:
- prepare a proposal,
- conclude and perform a contract,
- issue invoices,
- maintain working contact,
- provide technical and organisational support,
- handle billing and document archiving.
6. Data recipients
Data may be shared with parties working with the controller, in particular providers of services needed to run the website and the business, such as:
- hosting,
- email,
- analytics tools,
- CRM systems,
- marketing tools,
- IT service providers,
- accountancy,
- legal advisers,
- payment providers – where applicable.
Where external AI, cloud or analytics tools are used to deliver our services, data may also be shared with such providers to the extent necessary to deliver the service.
7. Transfers outside the UK
Depending on the tools used, data may be transferred outside the United Kingdom, in particular where a service provider has infrastructure outside the UK.
In such cases, the controller applies the safeguards required by the UK GDPR, such as standard contractual clauses, or uses providers covered by appropriate compliance mechanisms.
8. Data retention period
Data will be retained for as long as is:
- necessary to respond to and handle your contact,
- necessary to perform a contract,
- required by legal obligations, including tax and accounting,
- until an effective objection is raised,
- until consent is withdrawn, where processing was based on consent,
- until claims become time-barred.
9. Rights of the data subject
Every data subject has the right to:
- access their data,
- rectify their data,
- erase their data,
- restrict processing,
- data portability,
- object to processing,
- withdraw consent at any time, where processing is based on consent,
- lodge a complaint with the Information Commissioner's Office (ICO).
10. Cookies
The website may use cookies in order to:
- ensure the website works correctly,
- maintain the user's session,
- analyse website traffic,
- for statistical purposes,
- for marketing purposes – where such tools are used.
Cookies are small pieces of text stored on the user's device.
You can manage cookies in your browser settings. Restricting cookies may affect how some features of the website work.
11. Data security
The controller applies appropriate technical and organisational measures to protect personal data at a level appropriate to the risk, in line with the requirements of the UK GDPR.
12. Changes to this Privacy Policy
The controller reserves the right to update this Privacy Policy, in particular in the event of legal, technological or organisational changes.
The current version of the Privacy Policy is published on the website.
13. Effective date
This Privacy Policy is effective from: [date]