1. Who we are and how to contact us
Pivot Blue Limited (“we”, “us”, “our”) is the data controller responsible for your personal data. We are registered in England and Wales under company number 16449219.
If you have any questions about this Privacy Policy or how we handle your personal data, please contact us at [email protected] or write to us at our registered address (see below).
2. What personal data we collect
We may collect and process the following personal data about you:
- Contact information — name, email address, company name, submitted via our contact form
- Communication data — the content of messages you send us via the contact form or email
- Usage data — information about how you use our website, including IP address, browser type, pages visited, and time spent on pages (collected via analytics tools)
- Technical data — device type, operating system, and other technical information collected automatically when you visit our website
We do not collect any special category personal data (such as health data, racial or ethnic origin, or financial data) through this website.
3. How we collect your personal data
We collect personal data through the following means:
- Directly from you when you complete and submit our contact form
- Directly from you when you email us at [email protected]
- Automatically via cookies and similar tracking technologies when you visit our website
4. How we use your personal data
We use your personal data for the following purposes:
- To respond to your enquiries and communicate with you about our services
- To assess whether our services are relevant to your needs
- To improve our website and understand how visitors use it
- To comply with our legal and regulatory obligations
We will only use your personal data for the purposes for which it was collected, unless we reasonably consider that we need to use it for another reason that is compatible with the original purpose.
5. Legal basis for processing
We rely on the following legal bases under UK GDPR to process your personal data:
- Legitimate interests — responding to enquiries and communicating with prospective clients
- Consent — for non-essential cookies and analytics tracking (where applicable)
- Legal obligation — where required by law to retain certain records
6. How long we keep your data
We retain your personal data only for as long as necessary to fulfil the purposes for which it was collected, including for the purposes of satisfying any legal, accounting, or reporting requirements.
Contact form submissions and email correspondence are typically retained for up to 3 years unless you ask us to delete them sooner or we enter into a client relationship, in which case our client data retention policy applies.
7. Who we share your data with
We do not sell, rent, or trade your personal data to third parties. We may share your data with the following trusted service providers:
- Mailchimp (Intuit Inc.) — our email marketing platform. Email addresses collected via our website are stored in Mailchimp and used to send marketing communications to subscribers who have opted in. Mailchimp’s privacy policy: mailchimp.com/legal/privacy
- Google Analytics — website analytics to understand how visitors use our site. Data is anonymised where possible. Google’s privacy policy: policies.google.com/privacy
- LinkedIn (LinkedIn Ireland Unlimited Company) — LinkedIn Insight Tag for conversion tracking and retargeting. LinkedIn’s privacy policy: linkedin.com/legal/privacy-policy
- Google Ads (Google LLC) — conversion tracking and retargeting. Google’s privacy policy: policies.google.com/privacy
- Website and email hosting providers — solely to facilitate the operation of our website and email communications
- Professional advisers — lawyers or accountants where required
- Regulatory authorities — where required by law
All third-party service providers are required to take appropriate security measures and are only permitted to process your personal data for specified purposes in accordance with our instructions.
8. Your rights
Under UK GDPR, you have the following rights in relation to your personal data:
- Right of access — to request a copy of the personal data we hold about you
- Right to rectification — to request we correct inaccurate or incomplete data
- Right to erasure — to request we delete your personal data in certain circumstances
- Right to restrict processing — to request we limit how we use your data
- Right to data portability — to request a copy of your data in a structured, machine-readable format
- Right to object — to object to processing based on legitimate interests
- Right to withdraw consent — where processing is based on consent, to withdraw it at any time
To exercise any of these rights, please contact us at [email protected]. We will respond within one month of receiving your request.
You also have the right to lodge a complaint with the Information Commissioner’s Office (ICO) at www.ico.org.uk.
9. Data security
We have implemented appropriate technical and organisational security measures to protect your personal data against accidental loss, unauthorised access, alteration, or disclosure. Access to your personal data is restricted to those with a legitimate business need.
10. Changes to this policy
We may update this Privacy Policy from time to time. Any changes will be posted on this page with an updated revision date. We encourage you to review this policy periodically.
Pivot Blue Limited. Registered in England and Wales. Company No. 16449219. Registered office: Sundial Cottage, 6 Bouverie Road, Chipstead, Coulsdon, England, CR5 3LX.