PRIVACY POLICY
Effective Date: 01/07/2025
Website: www.contractcompass.co.uk
Company Name: Contract Compass Ltd
Contact Email: info@contractcompass.co.uk
1. Who We Are
Contract Compass is a trading name of Contract Compass Ltd, a company registered in England and Wales (Company No. 16534843).
We provide on-demand contract review and risk analysis services for construction contracts, and a range of online training products including reference guides, digital learning materials, and professional development courses. These services combine secure AI tools with expert human review and instructional content.
Contract Compass is the Data Controller for the purposes of the UK General Data Protection Regulation (UK GDPR) and related data protection legislation.
2. Scope of This Policy
This Privacy Policy applies to:
-
Visitors to our website (www.contractcompass.co.uk)
-
Clients who use our contract review or training services
-
Subscribers to our mailing list
-
Anyone who contacts us or interacts with our platform
-
All personal data collected, processed, or stored by Contract Compass
3. What Data We Collect
a. User Information
-
Full name
-
Business email address
-
Organisation and job title
-
Phone number (if provided)
b. Contract & Service Data
-
Uploaded contracts and related materials
-
Client annotations or submission notes
-
AI-assisted analysis and reviewer comments
-
Service logs and report history
c. Training Data
-
Course progress and module completion
-
Quiz or assessment results
-
Certificate history
-
Downloaded course content or reference guides
d. Technical & Usage Data
-
IP address and browser/device data
-
Session timestamps and site interaction logs
-
Analytics data (e.g. via Wix, Google Analytics)
e. Payment Data
-
Payment method metadata (e.g. Stripe token, invoice number)
-
Billing contact details
-
We do not store full payment card details
4. How We Collect Data
We collect data when you:
-
Upload a contract for review
-
Enrol in a course or download a guide
-
Fill in a form or contact us
-
Subscribe to our mailing list
-
Complete a training module or quiz
-
Use our website or accept cookies
-
Make a secure payment
5. How We Use Your Data
We use your data to:
-
Provide contract analysis and training services
-
Generate and deliver risk reports or course certificates
-
Track learning progress and performance
-
Respond to support requests
-
Send transactional or service-related communications
-
Improve the functionality and content of our site
-
Fulfil legal, operational, or regulatory obligations
-
Detect misuse or ensure platform integrity
6. Lawful Basis for Processing
We process your personal data based on:
-
Contractual necessity (e.g. to deliver your purchased service or course)
-
Legal obligations (e.g. recordkeeping or tax compliance)
-
Legitimate interest (e.g. service improvement or customer support)
-
Consent (e.g. marketing or analytics, where applicable)
7. Disclosure of Your Data
We may share your data with:
-
Internal staff or reviewers under strict confidentiality
-
Trusted third-party providers (e.g. Wix, Stripe, analytics tools)
-
Regulators or law enforcement where required
-
Prospective buyers in the event of a business sale or restructure
We do not sell or rent your personal data to third parties.
8. Data Security
We use industry-standard protection measures:
-
AES-256 encryption at rest
-
TLS/SSL encryption in transit
-
Role-based access control
-
Secure UK/EEA-based hosting
-
Regular security reviews and backups
9. Data Retention
We keep data only as long as needed:
-
Contract uploads are deleted 60 days after report delivery
-
Training data is retained to support certification and access
-
Customer and communication records are stored for up to 6 years
-
Marketing data is stored until you unsubscribe or request deletion
10. International Transfers
We store all personal data in the UK or EEA. If we transfer data outside these regions, we will use:
-
UK International Data Transfer Agreements
-
Government-recognised adequacy decisions
-
Secure processing agreements with appropriate safeguards
11. Your Rights (UK GDPR)
You have the right to:
-
Access a copy of your personal data
-
Correct inaccurate or incomplete data
-
Request deletion ("right to be forgotten")
-
Object to or restrict certain types of processing
-
Request data portability
-
Withdraw consent (for marketing or analytics)
-
Lodge a complaint with the ICO (www.ico.org.uk)
To exercise any of these rights, email: info@contractcompass.co.uk
12. Cookies and Analytics
We use cookies to:
-
Enhance website functionality
-
Monitor performance and user behaviour (anonymously)
-
Support security features
You can control cookie preferences via your browser or by visiting our [Cookie Policy].
We do not use ad tracking or behavioural advertising.
13. Children’s Data
Our services and courses are intended for business users aged 18 or over. We do not knowingly collect or process data from individuals under 16.
14. Updates to This Policy
We may update this Privacy Policy as required. Any updates will be posted on this page and take effect immediately.
Last Updated: 01/07/2025
15. Contact Us
If you have any questions, concerns, or data access requests, contact:
Data Protection Officer
Contract Compass Ltd
Email: info@contractcompass.co.uk
