Privacy Policy & Data Protection

BespokeWorks.ai is committed to protecting your privacy and ensuring full compliance with UK data protection laws, including GDPR and the Data Protection Act 2018.

UK GDPR
Compliant
DPA 2018
Certified
ISO 27001
Audited
Last updated: 1st December 2024

Quick Overview

What We Collect

  • Contact information (name, email, phone)
  • Business information for AI analysis
  • Website usage analytics
  • Communication preferences

How We Protect It

  • AES-256 encryption for all data
  • UK-based secure data centres
  • Regular security audits
  • Minimal data retention periods

1. Introduction

BespokeWorks.ai ("we", "our", "us") respects your privacy and is committed to protecting your personal data. This privacy policy explains how we collect, use, and safeguard your information when you use our AI automation services.

As a UK-based company, we comply with:

  • UK General Data Protection Regulation (UK GDPR)
  • Data Protection Act 2018 (DPA 2018)
  • Privacy and Electronic Communications Regulations (PECR)
  • Relevant industry-specific data protection requirements

Data Controller: BespokeWorks.ai, United Kingdom
Contact: privacy@bespokeworks.ai

2. Information We Collect

2.1 Personal Information You Provide

  • Contact Details: Name, email address, phone number, company name, job title
  • Business Information: Company size, industry, current processes, automation requirements
  • Communication: Messages, feedback, support requests, consultation notes
  • Financial Information: Billing details, payment information (processed by secure third parties)

2.2 Information We Collect Automatically

  • Website Analytics: Pages visited, time spent, browser type, device information
  • Technical Data: IP address, location data (city/region level), referral sources
  • Cookies: Preference settings, session information, analytics data
  • Usage Patterns: How you interact with our AI analysis tools

2.3 Information from Third Parties

  • Business Databases: Publicly available company information
  • Social Media: Professional profiles (LinkedIn) when you connect with us
  • Referrals: Information from business partners or referral sources

3. How We Use Your Information

3.1 Service Delivery

  • Providing AI automation analysis and consultation services
  • Developing custom AI solutions for your business
  • Technical support and customer service
  • Project management and implementation

3.2 Communication

  • Responding to your enquiries and requests
  • Sending service updates and important notifications
  • Providing relevant AI automation insights (with your consent)
  • Follow-up on consultations and implementations

3.3 Legal Basis for Processing

Contract Performance: Processing necessary to deliver our AI automation services

Legitimate Interest: Business development, service improvement, fraud prevention

Consent: Marketing communications, cookies, optional data sharing

Legal Obligation: Compliance with UK tax, accounting, and regulatory requirements

4. Your Rights Under UK GDPR

As a UK resident, you have the following rights regarding your personal data:

Right of Access

Request a copy of your personal data we hold

Right to Rectification

Correct inaccurate or incomplete information

Right to Erasure

Request deletion of your personal data ("right to be forgotten")

Right to Data Portability

Receive your data in a structured, machine-readable format

Right to Object

Object to processing based on legitimate interests

Right to Complain

Lodge a complaint with the ICO (Information Commissioner's Office)

How to Exercise Your Rights

Email us at privacy@bespokeworks.ai or use our contact form. We'll respond within one month of receiving your request.

5. Data Security

We implement comprehensive security measures to protect your personal data:

Technical Safeguards

  • AES-256 encryption in transit and at rest
  • Multi-factor authentication
  • Regular security audits and penetration testing
  • Automated backup systems

Organisational Measures

  • Staff training on data protection
  • Access controls and role-based permissions
  • Data breach response procedures
  • Regular compliance reviews

UK Data Centres: All personal data is processed and stored within UK-based secure facilities, ensuring compliance with UK data residency requirements.

6. Data Retention

We retain personal data only as long as necessary for the purposes outlined in this policy:

  • Customer Data: 7 years from end of business relationship (for tax and legal compliance)
  • Marketing Data: Until you unsubscribe or 2 years of inactivity
  • Website Analytics: 26 months (Google Analytics default)
  • Support Communications: 3 years from last interaction
  • Financial Records: 7 years (UK legal requirement)

We regularly review and securely delete data that's no longer needed. You can request earlier deletion by contacting us.

7. Cookies and Tracking

We use cookies and similar technologies to enhance your experience on our website:

Essential Cookies

Required for basic website functionality, security, and user authentication. These cannot be disabled.

Analytics Cookies

Help us understand how visitors use our site (Google Analytics with IP anonymisation). You can opt out.

Marketing Cookies

Used to deliver relevant advertisements and track campaign effectiveness. Requires your consent.

You can manage cookie preferences through our cookie banner or browser settings. For more information, visit our Cookie Policy.

8. Contact Us

If you have questions about this privacy policy or our data practices, please contact us:

Data Protection Officer

Email: privacy@bespokeworks.ai

Phone: +44 (0)20 XXXX XXXX

Available: 9AM - 5PM GMT

ICO Registration

Registration pending

File a complaint with ICO →

9. Changes to This Policy

We may update this privacy policy from time to time to reflect changes in our practices, technology, legal requirements, or other factors.

We will notify you of significant changes by:

  • Email notification to registered users
  • Prominent notice on our website
  • Updated "last modified" date at the top of this policy

We encourage you to review this policy periodically to stay informed about how we protect your data.