Privacy policy
Last updated 22 August 2026
Two different sets of people appear in this policy: businesses who enquire with us, and the customers of those businesses whose details sit inside a CRM we run.
When you enquire with us
The enquiry form collects your name, your business name, your email address, your trade, and whatever you write in the last box. We use it to reply to you and to prepare for the call. That is the whole purpose.
We keep enquiries for twelve months from your last contact with us, then delete them. We do not sell them, and we do not add you to a marketing list without you asking for one.
When we run your back office
Once you are a customer we process your customers' personal data on your instructions. In data protection language you are the controller and we are the processor. You decide what is collected and why. We provide the machinery and keep it secure.
That data typically includes names, phone numbers, email addresses, service addresses, job notes, message history and payment records.
Cookies and measurement
This website sets no advertising cookies and runs no cross site tracking. If we add analytics we will use a measurement tool that does not build a profile of you, and we will name it here before it goes live.
Who else sees the data
We use suppliers to host the site, send messages, and take payments. Each one is bound by a contract that limits them to acting on our instructions. We will name the current list on request, and we will tell you before we add a new one that touches customer data.
We do not sell personal data. There is no version of this where we would.
How long we keep things
- Enquiries to us: twelve months from your last contact.
- Customer records inside your CRM: for as long as your plan runs, then until you confirm your export is complete.
- Invoices and payment records: as long as tax law requires, which is usually six years.
- Server logs: thirty days.
Your rights
You can ask for a copy of your data, ask for it to be corrected, ask for it to be deleted, or object to how we use it. We will respond within one month. There is no charge.
If you are unhappy with how we handled a request you can complain to your data protection regulator. Telling us first usually gets it fixed faster.
Security
Data is encrypted in transit and at rest. Access is limited to the people who need it to run your account. If a breach affects you we will tell you, and we will tell the regulator inside seventy two hours where the law requires it.