PRIVACY POLICY
Privacy Policy for WeCanMake Ltd
Effective date: [Insert date]
Last updated: [Insert date]
WeCanMake Ltd ("we", "us", "our") respects your privacy and is committed to protecting your personal data. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you visit our website, engage our services, or otherwise interact with us.
This policy is designed to comply with the UK General Data Protection Regulation (UK GDPR) and the Data Protection Act 2018.
1. Data Controller
WeCanMake Ltd is the data controller responsible for your personal data.
Company name: WeCanMake Ltd
Registered address: [Insert registered address]
Email: [Insert contact email]
Phone: [Insert phone number, optional]
If you have any questions about this Privacy Policy or your data, please contact us using the details above.
2. The Data We Collect
We may collect, use, store, and transfer the following types of personal data:
Identity Data
Name
Username or similar identifier
Contact Data
Email address
Phone number
Billing address
Business address
Financial Data
Billing information
Payment details (processed securely via third-party providers; we do not store full card details)
Technical Data
IP address
Browser type and version
Time zone setting and location
Operating system and platform
Usage Data
Information about how you use our website, products, and services
Marketing and Communications Data
Your preferences in receiving marketing from us
Communication preferences
3. How We Collect Your Data
We collect data through:
Direct interactions (when you contact us, fill in forms, or engage our services)
Automated technologies (cookies, server logs)
Third parties (payment processors, analytics providers, or partners)
4. How We Use Your Personal Data
We use your personal data for the following purposes:
To provide and manage our services
To respond to enquiries and communications
To process payments and manage billing
To improve our website and services
To comply with legal obligations
To send service-related communications
To send marketing communications (where lawful and with your consent where required)
5. Lawful Basis for Processing
Under UK GDPR, we rely on the following lawful bases:
Contract: Processing necessary to perform a contract with you
Legitimate interests: To operate and improve our business
Legal obligation: To comply with legal requirements
Consent: Where you have given clear consent
You may withdraw consent at any time.
6. Sharing Your Data
We may share your personal data with:
Service providers (hosting, payment processors, email providers)
Professional advisers (lawyers, accountants)
Regulators and authorities where required
We require all third parties to respect the security of your personal data.
We do not sell your personal data.
7. International Transfers
Some of our service providers may be located outside the UK. Where this occurs, we ensure appropriate safeguards are in place, such as:
UK adequacy regulations
Standard contractual clauses
8. Data Security
We implement appropriate technical and organisational measures to protect your personal data, including:
Secure servers
Access controls
Encryption where appropriate
9. Data Retention
We retain personal data only as long as necessary for the purposes collected, including legal, accounting, or reporting requirements.
Typical retention periods:
Client records: up to 6 years (legal requirement)
Marketing data: until consent is withdrawn
Technical logs: up to 12 months
10. Your Legal Rights
Under UK GDPR, you have the right to:
Access your personal data
Correct inaccurate data
Request deletion of your data
Restrict processing
Object to processing
Request transfer of your data
Withdraw consent
To exercise your rights, contact us at [Insert contact email].
11. Cookies
Our website may use cookies and similar technologies to improve user experience and analyse website traffic.
You can control cookies through your browser settings.
For more information, see our Cookie Policy: [Insert link if applicable]
12. Third-Party Links
Our website may contain links to third-party websites. We are not responsible for their privacy practices.
13. Complaints
You have the right to complain to the UK Information Commissioner's Office (ICO):
Website: https://www.ico.org.uk
Phone: 0303 123 1113
We would appreciate the opportunity to address your concerns first.
14. Changes to This Privacy Policy
We may update this Privacy Policy from time to time. Updates will be posted on this page with a revised "Last updated" date.
15. Contact Us
If you have any questions about this Privacy Policy or your personal data, contact:
WeCanMake Ltd
Email: [Insert contact email]
Address: [Insert registered address]
End of Privacy Policy
Optional Additions (Recommended)
You may wish to add sections if applicable:
Cookie Policy (separate detailed document)
Client confidentiality clause
Newsletter / mailing list details
Children’s data statement (if applicable)
Analytics providers (Google Analytics, etc.)
Disclaimer: This template is provided for general informational purposes and does not constitute legal advice. You should have a qualified legal professional review it to ensure compliance with your specific business activities.