Privacy Policy

How we handle and protect your personal information

Last Updated: 7 April 2026

Introduction

CotswoltechAI is committed to protecting your privacy and handling your personal information responsibly. This Privacy Policy explains what information we collect, why we collect it, how we use it, and the choices you have regarding your data.

We understand that financial information is particularly sensitive, and we take extra precautions to ensure your data remains confidential and secure.

Who We Are

CotswoltechAI is a financial education and guidance service based at 42 High Street, Cirencester, Gloucestershire GL7 2NG, United Kingdom. For privacy-related questions or concerns, you can reach us at [email protected].

Information We Collect

Information You Provide Directly

When you engage with our services, we collect information you voluntarily provide, including:

  • Contact details such as your name, email address, and postal address
  • Financial information necessary for providing guidance, including income, expenses, debts, savings, and financial goals
  • Payment information when you purchase our services
  • Communication records, including emails and notes from consultations
  • Any other information you choose to share during our interactions

Information Collected Automatically

When you visit our website, certain information is collected automatically through standard web technologies:

  • Browser type and version
  • Operating system
  • Pages visited and time spent on each page
  • Referring website addresses
  • IP address (anonymized)
  • Cookie data (subject to your preferences)

How We Use Your Information

We use the information we collect for the following purposes:

Service Delivery

We use your financial and personal information to provide the guidance and support you've requested. This includes analyzing your financial situation, creating personalized recommendations, tracking your progress, and communicating with you about your financial journey.

Communication

We use your contact information to respond to inquiries, schedule sessions, send service-related updates, and provide ongoing support. We may also send educational content or service updates that we believe would benefit you, though you can opt out of these communications at any time.

Service Improvement

We analyze aggregated, anonymized data to understand how our services are used and where we can improve. This helps us refine our guidance frameworks and better serve our clients. Individual client data is never shared or used for research without explicit consent.

Legal and Security

We may use your information to comply with legal obligations, protect our rights and those of our clients, prevent fraud, and ensure the security of our systems.

Legal Basis for Processing

Under UK data protection law, we process your personal information based on the following legal grounds:

  • Contract: Processing is necessary to fulfill our service agreement with you
  • Consent: You have given clear consent for specific processing activities
  • Legitimate Interests: Processing is necessary for our legitimate business interests, such as improving services, provided this doesn't override your rights
  • Legal Obligation: Processing is required to comply with applicable laws and regulations

How We Protect Your Information

We implement robust security measures to protect your personal and financial information:

  • All data transmissions are encrypted using industry-standard protocols
  • Client information is stored on secure servers with restricted access
  • Our team receives regular training on data protection and confidentiality
  • We use strong authentication methods to prevent unauthorized access
  • Physical documents containing sensitive information are stored securely and disposed of properly
  • We regularly review and update our security practices to address emerging threats

While we take extensive precautions, no method of electronic storage or transmission is completely secure. We cannot guarantee absolute security but are committed to protecting your information using industry best practices.

Information Sharing and Disclosure

We do not sell, rent, or trade your personal information. We may share your information only in the following limited circumstances:

Service Providers

We may share information with trusted third-party service providers who assist with business operations, such as payment processing, email delivery, or data hosting. These providers are contractually obligated to protect your information and use it only for the purposes we specify.

Legal Requirements

We may disclose information if required by law, court order, or government regulation, or if we believe disclosure is necessary to protect rights, property, or safety.

Business Transfers

In the event of a merger, acquisition, or sale of assets, your information may be transferred to the acquiring entity, subject to the same privacy protections outlined in this policy.

With Your Consent

We may share information with third parties when you explicitly consent to such sharing.

Data Retention

We retain your personal information for as long as necessary to provide services and fulfill the purposes described in this policy. Specifically:

  • Active client information is retained for the duration of our service relationship
  • After service completion, we retain essential records for seven years to comply with UK financial record-keeping requirements
  • Marketing communications data is retained until you opt out
  • Website usage data is typically retained for 26 months

After the retention period expires, we securely delete or anonymize your information. You may request earlier deletion, though we may need to retain certain information for legal compliance.

Your Rights

Under UK data protection law, you have several rights regarding your personal information:

Right to Access

You can request a copy of the personal information we hold about you. We'll provide this free of charge, though we may charge a reasonable fee for additional copies or excessive requests.

Right to Correction

If information we hold is inaccurate or incomplete, you can request that we correct or complete it.

Right to Deletion

In certain circumstances, you can request that we delete your personal information. This right is not absolute and may be limited by legal obligations to retain certain records.

Right to Restrict Processing

You can request that we limit how we use your information in specific situations, such as while we verify data accuracy or assess your objection to processing.

Right to Data Portability

You can request a copy of your information in a structured, commonly used, machine-readable format for transfer to another service provider.

Right to Object

You can object to processing based on legitimate interests or for direct marketing purposes. We'll cease processing unless we have compelling legitimate grounds that override your interests.

Right to Withdraw Consent

Where processing is based on your consent, you can withdraw that consent at any time. This doesn't affect the lawfulness of processing before withdrawal.

To exercise any of these rights, contact us at [email protected]. We'll respond to your request within one month, though complex requests may take up to three months with appropriate notification.

Children's Privacy

Our services are not directed to individuals under 18 years of age. We do not knowingly collect personal information from children. If we become aware that we've collected information from a child without parental consent, we'll take steps to delete that information promptly.

International Data Transfers

Your information is primarily stored and processed within the United Kingdom. If we transfer data outside the UK, we ensure appropriate safeguards are in place to protect your information in accordance with UK data protection standards.

Cookies and Tracking Technologies

Our website uses cookies and similar technologies. For detailed information about our cookie practices, please see our Cookies Policy.

Third-Party Links

Our website may contain links to external sites not operated by us. We're not responsible for the privacy practices of these third-party sites. We encourage you to review the privacy policies of any external sites you visit.

Changes to This Policy

We may update this Privacy Policy periodically to reflect changes in our practices or legal requirements. We'll notify you of significant changes by posting the updated policy on our website with a new "Last Updated" date. For material changes, we may provide additional notice, such as email notification to active clients.

Your continued use of our services after changes become effective constitutes acceptance of the revised policy.

Questions and Complaints

If you have questions, concerns, or complaints about this Privacy Policy or our data practices, please contact us at:

CotswoltechAI
42 High Street
Cirencester
Gloucestershire GL7 2NG
United Kingdom
Email: [email protected]

If you're not satisfied with our response, you have the right to lodge a complaint with the Information Commissioner's Office (ICO), the UK's data protection authority. Visit cotswoltechai.uk for more information.