Why you should read this policy
Who we are
www.finhub.co.uk (Website) is operated by Fin Hub Limited. We are a business providing services for businesses incorporated and registered in England and Wales under company number 11512218, whose registered office address is at Ea, 869 High Road, London, United Kingdom, N12 8QA.
Fin Hub Limited (‘we’ or ‘us’) collect, use and are responsible for certain personal information about you when you utilise this Website. When we do so we are regulated under the General Data Protection Regulation which applies across the European Union (including in the United Kingdom) and the Data Protection Act 2018. We are responsible as ‘controller’ of that personal information for the purposes of those laws.
Our collection and use of your personal information
Information that you provide
Most of the data that we process will be data that we collect from you directly when you request a quote. We also collect personal data from you via social media, when you contact us for any reason and by any medium, including via the Website’s chat functionality, and also via the Website’s Companies House Integration.
We collect personal information from you either directly, such as when you contact us via our Website or indirectly, such as your browsing activity while on our Website (see ‘Cookies’ below).
We may retain a record of any contact you make with us.
You may also provide special category personal data, often referred to as sensitive personal data, when providing information to receive a quote. We do not use or disclose sensitive personal data, such as race, religion, or political affiliations, without your explicit consent.
The personal information we collect about you depends on the particular activities carried out through our Website. Such information includes:
- your name and contact details (email, address and telephone numbers); and
- details of any feedback you give us by phone, email, post or via social media.
Personal information about other individuals
If you give us information on behalf of someone else, you confirm that the other person has appointed you to act on his/her behalf and has agreed that you can:
- give consent on his/her behalf to the processing of his/her data;
- receive on his/her behalf any data protection notices;
- give consent to any transfer of his/her data.
Information from third parties
Occasionally we may receive information about you from other sources, which will be added to the information already held about you in order for us to help supply our services and products to you.
Information that will be collected automatically
There is also information about your computer hardware and software that is automatically collected by us. This information can include: your IP address, browser type, domain names, access times and referring website addresses. This information is used by us for the operation of the service, to maintain quality of the service, and to provide general statistics regarding use of the Website.
How your personal data will be used
We use this personal information to:
- create and manage your account with us and any quotes you may have requested;
- verify your identity;
- provide our services to you;
- fraud prevention and detection;
- customise our Website and its content to your particular preferences;
- inform you of other services we, and our affiliates, provided;
- notify you of any changes to our Website or to our services that may affect you;
- improve our services by conducting surveys.
Our legal basis for processing your personal information
When we use your personal information, we are required to have a legal basis for doing so. There are various different legal bases upon which we may rely, depending on what personal information we process and why.
The legal bases we may rely on include:
- consent: where you have given us clear consent for us to process your personal information for a specific purpose;
- contract: where our processing of your personal information is necessary for the services we provide to you, or because you have asked us to take specific steps before entering into a contract;
- legal obligation: where our use of your personal information is necessary for us to comply with the law (not including contractual obligations);
- legitimate interests: where our use of your personal information is necessary for our legitimate interests or the legitimate interests of our affiliates (unless there is a good reason to protect your personal information which overrides our legitimate interests).
Disclosure of your personal data
We may disclose your personal data to:
- the service providers who provide you with a quote based on your requirements;
- other companies that become partners or part of a group with Fin Hub Limited;
- a third party who acquires Fin Hub Limited or acquires substantially all of its assets, in which case the personal data shall be one of the acquired assets;
- our agents and service providers;
- law enforcement and regulatory agencies in connection with any investigation to help prevent unlawful activity or as otherwise required by applicable law;
Our Website does not collect or compile personally identifying information for dissemination or sale to outside parties for consumer marketing purposes, or host mailings on behalf of third parties.
Transfer of your information out of the EEA
Your personal information may be transferred to third party service providers who process information on our behalf, including providers of information technology, identity management, Website hosting and management, data analysis, data back-up, security and storage purposes. As a result, your personal data may be transferred outside of the country where you are located, including outside of the European Economic Area (EEA). Where we use data processors that may transfer data out of the EEA we will take steps to ensure adequate protections are in place to ensure the security of your information and give you remedies in the unlikely event of a security breach.
Please note that we review all processors we utilise and ensure that there are adequate safeguards in place to protect your personal data, such as adherence to binding corporate rules or compliance with the EU-US Privacy Shield Framework, which is a mechanism that ensures compliance with EU data protection requirements when transferring personal data from the European Union to the United States. You can learn more about Privacy Shield here: https://www.privacyshield.gov/welcome
If you would like further information regarding the transfer of your information out of the EEA please contact us using the details provided in the ‘How to contact us’ section below.
If you have provided your consent to receive news, special offers or promotions from us, or it is within our legitimate interest to do so, we may contact you by mail, telephone and email, about our products, services, promotions, special offers and charitable causes that may be of interest to you.
We may monitor and record communications with you (such as telephone conversations and emails and chat messages) for the purpose of quality assurance, training, fraud prevention and compliance.
We will collect and store information about you, as detailed above. You will be provided with opportunities to consent to this Policy and provide your preferences in relation to how we may contact you.
You can change your mind or remove or add your consent at any time.
- You have the right of access to your personal records or other information that we hold about you. There is no administrative charge for this service.
- You have the right to rectify any errors in the data we hold about you. If any data or information we hold about you is inaccurate, or out of date, please contact us and we will correct this immediately.
- You may have the right to have the data we hold about you erased.
- If you wish us to continue to store your information but wish us to keep your data separate and not process it in any way, please let us know.
- You have the right to ask us to stop processing your personal data for direct marketing purposes. You may also specify that you object to direct marketing by particular channels such as by email of telephone. If this is the case, please specify the channels you are objecting to in your communications with us.
- You have the right to data portability. If you wish to obtain your data for your own purposes across different services, we will provide this information to you in a CSV file. There is no administrative charge for this service.
To revise your consent, access, amend or remove your records or assert any of your rights set out above, you should send your request in writing to us at firstname.lastname@example.org.
You may need to provide proof of identity and address (e.g. a copy of your driving licence or passport, and a recent utility or credit card bill); and specify the personal data you want access to, have amended or removed.
How long we will store your data
We will store your data for as long as necessary for the purpose of processing. We store information for two years for closed accounts and indefinitely for open accounts. The data may be deleted in the following circumstances:
- you have withdrawn your consent to data processing;
- the original purpose for processing the data is no longer relevant or cannot be performed anymore;
- the data is no longer up to date or accurate; or
- where we no longer have a reason to store your data as determined by our data retention policies.
We do not contract directly with children and therefore, we do not actively process the personal data of children. In using our services, you confirm that you have read and consented to this Policy and verify that you are over the age of 18.
Keeping your personal information secure
We have appropriate security measures in place to prevent personal information from being accidentally lost or used or accessed in an unauthorised way. We limit access to your personal information to those who have a genuine business need to know it. Those processing your information will do so only in an authorised manner and are subject to a duty of confidentiality. We also confirm that your data will be stored on secure servers.
We also have procedures in place to deal with any suspected data security breach. We will notify you and any applicable regulator of a suspected data security breach where we are legally required to do so.
If you want detailed information from Get Safe Online on how to protect your information and your computers and devices against fraud, identity theft, viruses and many other online problems, please visit www.getsafeonline.org. Get Safe Online is supported by HM Government and leading businesses.
We may change this Policy from time to time. You should check this policy frequently to ensure you are aware of the most recent version that will apply each time you use the Website.
How to contact us
Please contact us if you have any questions about this privacy notice or the information we hold about you.
If you wish to contact us, please send an email to email@example.com, write to Fin Hub Limited, Ea, 869 High Road, London, United Kingdom, N12 8QA or call us on 0207 867 3749.
Concerns and Questions
We hope that we can resolve any query or concern you raise about our use of your information.
The General Data Protection Regulation also gives you right to lodge a complaint with a supervisory authority, in particular in the European Union (or European Economic Area) state where you work, normally live or where any alleged infringement of data protection laws occurred. The supervisory authority in the UK is the Information Commissioner who may be contacted at https://ico.org.uk/concerns/ or telephone: 0303 123 1113.