Privacy Policy

This Privacy Policy explains how ConsentTrace (“we”, “us”, “our”) collects and uses personal data when you visit our website or contact us about our services.

We are committed to protecting your privacy and handling personal data in a transparent and secure manner.

1. Who We Are

ConsentTrace is a cookie compliance verification consultancy.

Data Controller: ConsentTrace

Email: contactus@consent-trace.com

Website: www.consent-trace.com

2. What Data We Collect

We may collect and process the following personal data:

a) Data you provide to us

  • name
  • company name
  • email address
  • phone number (if provided)
  • message contents (e.g., enquiry details)

b) Data collected automatically

When you visit the website, we may collect limited technical information such as:

  • IP address (may be anonymised depending on hosting/provider)
  • browser and device details
  • pages visited
  • timestamps and basic usage analytics

3. How We Use Your Data

We use your personal data to:

  • respond to enquiries
  • provide quotes and service information
  • deliver consultancy services and reports
  • manage client relationships and communications
  • improve site performance and security

4. Legal Basis for Processing

We process personal data under the UK GDPR based on:

  • Legitimate interests (e.g. responding to enquiries, operating the website)
  • Contractual necessity (where services are provided)
  • Legal obligations (e.g. financial records, if applicable)
  • Consent (only where required, such as optional analytics cookies if you enable them)

5. Cookies

We may use cookies that are strictly necessary for the website to function.

If we use optional cookies (such as analytics), these will only be used where consent has been provided through the cookie banner (if applicable).

You can manage cookies through your browser settings.

6. Sharing Your Data

We do not sell your data.

We may share limited data with trusted service providers such as:

  • website hosting providers
  • email and communication providers
  • security tools (e.g., spam prevention)

These suppliers process data only as needed to provide their services.

7. Data Retention

We keep personal data only for as long as necessary:

  • enquiry details: typically up to 12 months
  • client records: retained for the duration of the relationship and for a reasonable period afterwards
  • invoice/accounting records: retained as required by law

8. Your Rights (UK GDPR)

You have the right to:

  • access your personal data
  • request correction of inaccurate data
  • request deletion (where applicable)
  • object to processing
  • request restriction of processing
  • request data portability (where applicable)
  • withdraw consent (if processing is based on consent)

To exercise any rights, contact us using the details in Section 1.

9. Security

We take reasonable steps to protect personal data from unauthorised access, disclosure or loss. However, no system can be guaranteed as completely secure.

10. International Transfers

If any service providers process data outside the UK, we will ensure appropriate safeguards are used (such as adequacy decisions or contractual protections).

11. Changes to This Policy

We may update this Privacy Policy from time to time. The latest version will be published on our Website.

12. Contact

If you have questions or concerns, contact:

ConsentTrace

Email: contactus@consent-trace.com