Privacy Policy Summary
This privacy policy explains how BrassBonac ("we", "us", or "our")
collects, uses, and protects your personal information when you
use our website and services. We are committed to protecting your
privacy and complying with UK data protection laws, including the
UK GDPR and the Data Protection Act 2018.
1. Information We Collect
1.1 Information You Provide to Us
We collect information you provide directly to us, including:
-
Contact Information: Name, email address, phone
number, and postal address
-
Account Information: Username, password, and
service preferences
-
Communication Data: Information you provide when
contacting us for support or enquiries
-
Transaction Information: Payment details and
purchase history (processed securely through third-party payment
processors)
-
Feedback and Reviews: Comments, testimonials, and
survey responses you choose to provide
1.2 Information We Collect Automatically
When you visit our website, we automatically collect certain
information:
-
Usage Data: Pages visited, time spent on pages,
and navigation patterns
-
Device Information: IP address, browser type,
operating system, and device identifiers
-
Location Data: General geographic location based
on IP address
-
Cookies and Tracking Technologies: As described
in our Cookie Policy
2. How We Use Your Information
We use your personal information for the following purposes:
2.1 Service Provision
-
Providing and delivering our spreadsheet templates and services
- Processing your orders and managing your account
- Providing customer support and responding to enquiries
- Sending service-related communications and updates
2.2 Business Operations
- Improving our website, products, and services
- Conducting business analytics and market research
- Preventing fraud and ensuring security
- Complying with legal obligations and regulations
2.3 Marketing (with your consent)
-
Sending newsletters and promotional materials about our services
-
Notifying you about new products, features, and special offers
- Personalising your experience on our website
3. Legal Basis for Processing
Under UK GDPR, we process your personal data based on the following
legal grounds:
-
Contract: Processing necessary for the
performance of a contract with you
-
Legitimate Interests: For business operations,
security, and service improvement
-
Consent: For marketing communications and certain
cookies
-
Legal Obligation: To comply with applicable laws
and regulations
4. How We Share Your Information
We do not sell, rent, or trade your personal information. We may
share your information in the following circumstances:
4.1 Service Providers
We work with trusted third-party service providers who assist us in:
- Payment processing (Stripe, PayPal)
- Email marketing services (Mailchimp)
- Website hosting and content delivery
- Customer support platforms
- Analytics and reporting tools
4.2 Legal Requirements
We may disclose your information if required by law or in response
to:
- Court orders or legal proceedings
- Regulatory requests or investigations
- Protecting our rights, property, or safety
- Preventing fraud or illegal activities
4.3 Business Transfers
In the event of a merger, acquisition, or sale of assets, your
information may be transferred as part of the business transaction.
5. Data Security
We implement appropriate technical and organisational measures to
protect your personal information:
-
Encryption: Data transmission is protected using
SSL/TLS encryption
-
Access Controls: Limited access to personal data
on a need-to-know basis
-
Regular Security Audits: Periodic reviews of our
security practices
-
Secure Storage: Data stored in secure,
access-controlled environments
-
Employee Training: Regular privacy and security
training for our staff
6. International Data Transfers
Your personal information is primarily processed within the UK. If
we transfer data outside the UK, we ensure:
-
Adequate protection through adequacy decisions or appropriate
safeguards
- Standard contractual clauses where applicable
- Compliance with UK data protection requirements
7. Data Retention
We retain your personal information for as long as necessary to:
- Provide our services and support your account
-
Comply with legal obligations (minimum 6 years for financial
records)
- Resolve disputes and enforce our agreements
- Achieve legitimate business purposes
Marketing data is retained until you unsubscribe or withdraw
consent. Website analytics data is typically retained for 2 years.
8. Your Rights
Under UK data protection law, you have the following rights:
Right of Access
Request a copy of the personal data we hold about you
Right to Rectification
Request correction of inaccurate or incomplete data
Right to Erasure
Request deletion of your personal data in certain circumstances
Right to Restrict Processing
Request limitation of how we process your data
Right to Data Portability
Request transfer of your data to another organisation
Right to Object
Object to processing based on legitimate interests
To exercise these rights, contact us at
[email protected].
We will respond within one month of receiving your request.
9. Cookies and Tracking
We use cookies and similar technologies to improve your website
experience. For detailed information about our cookie practices,
please see our Cookie Policy.
10. Children's Privacy
Our services are not directed to children under 16 years of age. We
do not knowingly collect personal information from children under
16. If you believe we have collected information from a child under
16, please contact us immediately.
11. Third-Party Links
Our website may contain links to third-party websites. We are not
responsible for the privacy practices of these external sites. We
encourage you to review their privacy policies before providing any
personal information.
12. Changes to This Policy
We may update this privacy policy periodically to reflect changes in
our practices or legal requirements. We will:
- Post the updated policy on our website
- Update the "Last updated" date
-
Notify you of significant changes via email or website notice
- Obtain new consent where required by law
13. Contact Information
For questions about this privacy policy or our data practices,
contact us:
14. Supervisory Authority
If you have concerns about our data processing practices, you have
the right to lodge a complaint with the UK Information
Commissioner's Office (ICO):
-
Website:
ico.org.uk
- Phone: 0303 123 1113
-
Post: Information Commissioner's Office, Wycliffe
House, Water Lane, Wilmslow, Cheshire SK9 5AF