Legal
Privacy notice
Last updated [DATE]
Placeholder, not legal text. This page outlines the expected structure only. Final wording must be drafted and approved by qualified counsel before launch.
1. Who we are
[Controller name, address, contact; DPO if applicable]
2. What we collect
[Account data, member data, connection metadata, transaction data retrieved from providers, billing data]
3. Why we use it, and our lawful bases
[UK GDPR / EU GDPR lawful bases per purpose]
4. Sharing
[Sub-processors, payment processors, connected providers acting on your instruction]
5. International transfers
[Transfer mechanisms]
6. Retention
[Retention periods]
7. Your rights
[Access, rectification, erasure, objection, portability; complaint to the ICO or relevant authority]