Privacy Policy

Last updated: 16 January 2026

Introduction

Website Buddy ("we," "us," or "our") is committed to protecting your privacy and personal data. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you visit our website or use our services.

This policy complies with the UK General Data Protection Regulation (UK GDPR) and the Data Protection Act 2018. We are the data controller responsible for your personal data.

Please read this privacy policy carefully. If you do not agree with the terms of this privacy policy, please do not access our website or use our services.

1. Information We Collect

We collect information that you provide directly to us, including:

Personal Information

  • Name and contact details (email address, phone number)
  • Business name and business information
  • Payment and billing information
  • Communication preferences
  • Any other information you choose to provide through our contact forms or consultations

Automatically Collected Information

  • IP address and device information
  • Browser type and version
  • Pages visited and time spent on pages
  • Referring website addresses
  • Cookie data (see our Cookie Policy below)

Project-Related Information

  • Website content and materials you provide
  • Feedback and communication during project development
  • Project requirements and specifications

2. How We Use Your Information

We use the information we collect for the following purposes:

  • Service Delivery: To provide, maintain, and improve our website design services
  • Communication: To respond to your inquiries, schedule consultations, and provide customer support
  • Billing: To process payments and send invoices
  • Project Management: To manage and deliver your website project
  • Legal Compliance: To comply with legal obligations and resolve disputes
  • Marketing: To send promotional communications (with your consent)
  • Website Improvement: To analyze website usage and improve our services

Legal Basis for Processing: We process your personal data based on:

  • Contract performance (to deliver services you've requested)
  • Legitimate interests (to improve our services and business operations)
  • Legal obligations (to comply with tax and accounting requirements)
  • Consent (for marketing communications, which you can withdraw at any time)

3. Data Sharing and Disclosure

We do not sell, rent, or trade your personal information. We may share your information with:

  • Service Providers: Third-party vendors who perform services on our behalf (e.g., payment processors, hosting providers, email service providers)
  • Legal Authorities: When required by law or to protect our rights
  • Business Transfers: In connection with any merger, sale, or acquisition of our business

All third-party service providers are required to maintain appropriate security measures and process your data only as instructed by us.

4. International Data Transfers

Your personal data may be transferred to and processed in countries outside the UK and European Economic Area (EEA). When we transfer data internationally, we ensure appropriate safeguards are in place, such as:

  • Standard contractual clauses approved by the UK Information Commissioner's Office
  • Transfers to countries with adequacy decisions
  • Other approved transfer mechanisms under UK GDPR

5. Data Retention

We retain your personal data only for as long as necessary to fulfil the purposes outlined in this privacy policy, unless a longer retention period is required by law.

  • Client Data: Retained for the duration of our business relationship and for 7 years thereafter for tax and accounting purposes
  • Marketing Data: Retained until you withdraw consent or request deletion
  • Website Analytics: Typically retained for 26 months

After the retention period expires, we will securely delete or anonymize your personal data.

6. Data Security

We implement appropriate technical and organizational measures to protect your personal data against unauthorized access, alteration, disclosure, or destruction, including:

  • Encryption of data in transit and at rest
  • Regular security assessments and updates
  • Access controls and authentication measures
  • Employee training on data protection
  • Secure backup procedures

However, no method of transmission over the internet is 100% secure. While we strive to protect your data, we cannot guarantee absolute security.

7. Your Rights Under UK GDPR

Under UK GDPR and the Data Protection Act 2018, you have the following rights:

  • Right to Access: Request a copy of your personal data we hold
  • Right to Rectification: Request correction of inaccurate or incomplete data
  • Right to Erasure: Request deletion of your personal data (subject to legal exceptions)
  • Right to Restrict Processing: Request limitation of how we use your data
  • Right to Data Portability: Receive your data in a structured, machine-readable format
  • Right to Object: Object to processing based on legitimate interests or for direct marketing
  • Right to Withdraw Consent: Withdraw consent where processing is based on consent
  • Right to Lodge a Complaint: File a complaint with the Information Commissioner's Office (ICO)

To exercise any of these rights, please contact us using the details provided at the end of this policy. We will respond to your request within one month.

8. Cookies and Tracking Technologies

We use cookies and similar tracking technologies to improve your experience on our website. Cookies are small text files stored on your device.

Types of Cookies We Use

  • Essential Cookies: Necessary for website functionality (e.g., security, network management)
  • Analytics Cookies: Help us understand how visitors use our website (e.g., Google Analytics)
  • Preference Cookies: Remember your settings and preferences
  • Marketing Cookies: Track your activity for advertising purposes (with your consent)

Managing Cookies

You can control and manage cookies through your browser settings. However, disabling cookies may affect website functionality. Most browsers allow you to:

  • View and delete cookies
  • Block third-party cookies
  • Block cookies from specific sites
  • Accept or reject all cookies

9. Third-Party Links

Our website may contain links to third-party websites. We are not responsible for the privacy practices or content of these external sites. We encourage you to review the privacy policies of any third-party sites you visit.

10. Children's Privacy

Our services are not directed to individuals under the age of 18. We do not knowingly collect personal information from children. If you believe we have inadvertently collected data from a child, please contact us immediately, and we will delete the information.

11. Changes to This Privacy Policy

We may update this Privacy Policy from time to time to reflect changes in our practices or legal requirements. We will notify you of any material changes by:

  • Posting the updated policy on our website with a new "Last Updated" date
  • Sending email notification to registered clients where appropriate

Your continued use of our services after changes are posted constitutes acceptance of the updated policy.

12. Data Controller Information

Website Buddy is the data controller responsible for your personal data. Our contact details are:

Company Name: Website Buddy

Email: [email protected]

Website: www.websitebuddy.com