Legal

Privacy notice

Last updated [DATE]

Placeholder, not legal text. This page outlines the expected structure only. Final wording must be drafted and approved by qualified counsel before launch.

1. Who we are

[Controller name, address, contact; DPO if applicable]

2. What we collect

[Account data, member data, connection metadata, transaction data retrieved from providers, billing data]

3. Why we use it, and our lawful bases

[UK GDPR / EU GDPR lawful bases per purpose]

4. Sharing

[Sub-processors, payment processors, connected providers acting on your instruction]

5. International transfers

[Transfer mechanisms]

6. Retention

[Retention periods]

7. Your rights

[Access, rectification, erasure, objection, portability; complaint to the ICO or relevant authority]