Privacy Policy

Last Updated: 24/02/2025


1. Introduction


StreamlineXpert Ltd (“we”, “us”, “our”) is committed to protecting your privacy and ensuring the security of your personal data. This Privacy Policy explains how we collect, use, store, and share your personal data when you interact with our website, products, and services (collectively, the “Services”). We comply with the General Data Protection Regulation (GDPR), the UK Data Protection Act 2018, and other applicable privacy laws. By using our Services, you agree to the collection and use of your information in accordance with this policy.


2. Information We Collect

We may collect and process various types of data from you, including but not limited to the following:


2.1. Personal Data
Personal data is any information relating to an identified or identifiable natural person. We may collect, process, and store, either directly or from third parties, the following categories of personal data:


    • Contact Information:
        ◦ Name
        ◦ Email address
        ◦ Postal address
        ◦ Telephone number
        ◦ Social media profiles or handles


    • Account and Identification Information:
        ◦ Username and password
        ◦ Unique user IDs
        ◦ Government-issued identification numbers (if applicable)
        ◦ Demographic information (e.g., age, gender, occupation)


    • Financial and Payment Information:
        ◦ Billing address
        ◦ Payment card details and transaction information (processed securely by our payment providers)
        ◦ Bank account information, if applicable


    • Communication Data:
        ◦ Records of your communications with us (emails, support inquiries, chat transcripts)
        ◦ Feedback, surveys, or any content you provide voluntarily


    • Transactional Data:
        ◦ Purchase history and subscription details
        ◦ Order information and receipts


    • Location Data:
        ◦ Geographic location data, including IP address
        ◦ GPS data or other location-based information, where applicable


    • Sensitive Personal Data:
        ◦ Any other categories of personal data that you may provide, which could include health information or biometric data (if relevant and with your explicit consent)


2.2. Technical Data
We automatically collect technical data through your interaction with our Services using cookies, web beacons, and similar technologies. This technical data may include:


    • Device and Connection Information:
        ◦ Device identifiers (e.g., IMEI, MAC address)
        ◦ IP addresses
        ◦ Operating system and version
        ◦ Browser type and version
        ◦ Device model and manufacturer


    • Usage Data:
        ◦ Log files recording your visits and activities on the Site
        ◦ Clicks, page views, and navigation paths
        ◦ Referring and exit pages
        ◦ Timestamps and duration of your visits


    • Technical Performance Data:
        ◦ Error logs and crash reports
        ◦ Data related to the performance of our website and applications
        ◦ Other diagnostic information collected during your use of the Services


    • Cookies and Tracking Data:
        ◦ Cookies, local storage, and similar technologies to track your usage and preferences
        ◦ Data from third-party tracking tools integrated into our Services


3. Lawful Bases for Processing Your Data
We process your personal data based on one or more of the following lawful bases:
    • Consent: Where you have given clear consent for us to process your personal data for a specific purpose.
    • Performance of a Contract: Where processing is necessary for the performance of a contract with you.
    • Legal Obligation: Where processing is necessary for compliance with a legal obligation.
    • Legitimate Interests: Where processing is necessary for our legitimate interests, provided that your fundamental rights and freedoms are not overridden.


4. How We Use Your Data
We use the collected data for various purposes, including:


    • Providing and Managing Services:
        ◦ To create and maintain your account
        ◦ Deliver our services
        ◦ Process transactions
        ◦ Offer customer support


    • Improving Our Services:
        ◦ To analyse usage trends
        ◦ Administer the website
        ◦ Gather demographic information for improving our content and offerings


    • Communication:
        ◦ To send service-related announcements
        ◦ Newsletters and marketing communications (with your consent where required by law)


    • Compliance and Security:
        ◦ To comply with legal obligations
        ◦ Enforce our policies
        ◦ Protect our rights and prevent fraud or security breaches


    • Customization and Personalization:
        ◦ To tailor our content and Services to better suit your preferences and needs


    • Automated Decision-Making:
        ◦ To make automated decisions that affect you, where applicable, in accordance with GDPR requirements


    • Other Purposes:
        ◦ Any other purposes for which the data was collected, in accordance with applicable laws and as further described in this Policy


5. How Your Data Is Stored and Secured


    • Storage:
        ◦ Your personal data is stored on secure servers located within the EU/UK.
        ◦ We implement appropriate technical and organizational measures to safeguard your data against unauthorized access, disclosure, alteration, or destruction.


    • Security:
        ◦ We employ encryption, access controls, and regular security assessments to ensure data protection.
        ◦ While we strive to protect your personal data, no method of transmission over the Internet or electronic storage is 100% secure; we cannot guarantee its absolute security.


6. Data Sharing and Transfers


6.1. Third-Party Sharing
We may share your personal data with:
    • Service Providers:
        ◦ Trusted third-party vendors and partners who assist us in delivering our Services (e.g., payment processors, hosting providers, customer support platforms).
        ◦ These providers are required to adhere to strict data protection standards and only use your data as instructed by us.
    • Legal Obligations:
        ◦ Regulatory authorities or other entities if required by law or to protect our rights and the safety of our users.
    • Business Transfers:
        ◦ In connection with any merger, sale, or acquisition of all or part of our business.
        ◦ Any transferred personal data will continue to be protected by this Privacy Policy.


6.2. International Transfers
Your personal data may be transferred to and stored in countries outside the EU/UK. When such transfers occur, we ensure that appropriate safeguards are in place, such as:
    • Standard Contractual Clauses (SCCs):
        ◦ Approved by the European Commission to ensure adequate protection of your data.
    • Adequate Levels of Protection:
        ◦ As determined by relevant regulatory authorities.
    • Additional Measures:
        ◦ As required by law to protect your data.


7. Our Roles: Data Controller vs. Data Processor
In the course of our business, we may operate in two distinct capacities:


    • As a Data Controller:
        ◦ When providing services directly to our customers, we determine the purposes and means of processing your personal data.
        ◦ In this role, we are responsible for ensuring that your personal data is processed in accordance with applicable laws and for safeguarding your rights as a data subject.


    • As a Data Processor:
        ◦ In certain cases, we process personal data on behalf of another organization (the data controller) under a separate Data Processing Agreement (DPA).
        ◦ When acting as a data processor, our processing of personal data is strictly governed by the terms outlined in the DPA, which sets out the specific obligations, security measures, and rights of the data controller.
        ◦ This Privacy Policy reflects our practices as a data controller. When we are engaged as a data processor, the additional terms and conditions of the relevant DPA will apply.


8. Your Rights and Data Protection
Under GDPR, the UK Data Protection Act 2018, and other applicable laws, you have certain rights regarding your personal data, including:
    • Right of Access: You can request copies of your personal data.
    • Right to Rectification: You can request correction of any inaccurate or incomplete data.
    • Right to Erasure: Also known as the “right to be forgotten,” you may request deletion of your personal data under certain conditions.
    • Right to Restrict Processing: You can request the restriction of processing your personal data.
    • Right to Data Portability: You have the right to request that your personal data be transferred to another organization or provided to you in a structured, commonly used, and machine-readable format.
    • Right to Object: You can object to the processing of your personal data under certain circumstances, including for direct marketing purposes.
    • Right to Withdraw Consent: Where processing is based on consent, you may withdraw your consent at any time without affecting the lawfulness of processing prior to withdrawal.
    • Right to Lodge a Complaint: You have the right to lodge a complaint with a supervisory authority if you believe that our processing of your personal data infringes applicable data protection laws.


To exercise any of these rights, please contact us using the details provided below. We will respond to your request within the timeframes required by law.


9. Retention of Personal Data
We retain your personal data only for as long as necessary to fulfill the purposes for which it was collected, to comply with our legal obligations, resolve disputes, and enforce our agreements. The criteria used to determine the retention period include the nature of the data, the purpose of processing, and applicable legal requirements.


10. Cookies and Similar Technologies
Our website uses cookies and similar tracking technologies to enhance your experience, analyze usage, and deliver tailored content. Cookies help us understand how you interact with our Services, allowing us to improve functionality and user experience. For more detailed information about our use of cookies, please refer to our Cookie Policy.


11. Children's Privacy
Our Services are not intended for individuals under the age of 16. We do not knowingly collect personal data from children under 16. If we become aware that we have inadvertently received personal data from a child under 16, we will take steps to delete such information as soon as possible.


12. Automated Decision-Making and Profiling
We do not engage in automated decision-making or profiling that significantly affects you. In cases where automated processing is used, we ensure that appropriate safeguards are in place to protect your rights and freedoms.


13. Changes to This Privacy Policy
We may update this Privacy Policy from time to time to reflect changes in our practices, technologies, or legal requirements. Any changes will be communicated by updating the “Last Updated” date at the top of the policy and, where appropriate, notifying you directly. We encourage you to review this policy periodically to stay informed about how we are protecting your information.


14. Contact Us
If you have any questions about this Privacy Policy, your personal data, or wish to exercise your rights, please contact us at:
StreamlineXpert Ltd
Suite A - 82 James Carter Road
Mildenhall IP28 7DE
Email: info@streamlinexpert.co.uk