Privacy Policy
Last updated: December 15, 2024
1. Introduction
TipEmpower ("we," "our," or "us") is committed to protecting and respecting your privacy. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you visit our website tip-empower.com, use our services, or interact with us.
This policy complies with the UK General Data Protection Regulation (UK GDPR) and the Data Protection Act 2018. By using our website or services, you consent to the data practices described in this policy.
Data Controller Details:
TipEmpower Ltd
123 Business Park
Manchester M1 1AA
United Kingdom
Email: [email protected]
Phone: 020 7123 4567
2. Information We Collect
2.1 Personal Information
We may collect personal information that you voluntarily provide to us, including:
- Name and contact information (email address, phone number, postal address)
- Company name and job title
- Communication preferences
- Information provided in forms, surveys, or correspondence
- Account credentials if you create an account
2.2 Automatically Collected Information
When you visit our website, we may automatically collect:
- IP address and location data
- Browser type and version
- Operating system
- Pages visited and time spent on pages
- Referring website
- Device information
2.3 Cookies and Tracking Technologies
We use cookies and similar tracking technologies to enhance your experience. For detailed information about our cookie practices, please see our Cookie Policy.
3. How We Use Your Information
We process your personal information for the following purposes and legal bases:
3.1 Service Provision (Contractual Basis)
- Processing and fulfilling your orders
- Providing customer support
- Managing your account
- Communicating about our services
3.2 Legitimate Business Interests
- Improving our website and services
- Analyzing usage patterns and trends
- Preventing fraud and ensuring security
- Internal business operations
3.3 Consent-Based Processing
- Marketing communications (where you have opted in)
- Newsletter subscriptions
- Non-essential cookies
3.4 Legal Compliance
- Complying with legal obligations
- Responding to lawful requests from authorities
- Protecting our legal rights
4. Information Sharing and Disclosure
We do not sell, trade, or rent your personal information to third parties. We may share your information in the following circumstances:
4.1 Service Providers
We may share information with trusted third-party service providers who assist us in:
- Website hosting and maintenance
- Payment processing
- Email marketing services
- Analytics and website optimization
- Customer support systems
4.2 Business Transfers
In the event of a merger, acquisition, or sale of assets, your information may be transferred as part of the business transaction.
4.3 Legal Requirements
We may disclose your information when required by law, regulation, or legal process, or to protect our rights, property, or safety.
4.4 Data Protection Measures
All third parties with whom we share data are required to:
- Maintain appropriate data protection measures
- Process data only for specified purposes
- Comply with UK GDPR requirements
- Delete data when no longer needed
5. Data Security
We implement appropriate technical and organizational measures to protect your personal information:
5.1 Technical Safeguards
- SSL encryption for data transmission
- Secure hosting environments
- Regular security updates and patches
- Access controls and authentication
- Data backup and recovery procedures
5.2 Organizational Measures
- Staff training on data protection
- Limited access on a need-to-know basis
- Regular security assessments
- Incident response procedures
5.3 Data Breach Notification
In the unlikely event of a data breach that poses a risk to your rights and freedoms, we will notify the relevant supervisory authority within 72 hours and inform affected individuals without undue delay.
6. Data Retention
We retain your personal information only for as long as necessary to fulfill the purposes outlined in this policy:
6.1 Retention Periods
- Customer data: For the duration of the business relationship plus 7 years for tax and legal compliance
- Marketing data: Until you withdraw consent or 3 years of inactivity
- Website analytics: 26 months (Google Analytics default)
- Contact form submissions: 2 years unless ongoing business relationship
- Newsletter subscriptions: Until unsubscribed
6.2 Deletion Procedures
When retention periods expire, we securely delete or anonymize your data using industry-standard methods.
7. Your Rights Under UK GDPR
You have the following rights regarding your personal information:
7.1 Right of Access
You can request a copy of the personal information we hold about you.
7.2 Right of Rectification
You can ask us to correct inaccurate or incomplete personal information.
7.3 Right of Erasure
You can request deletion of your personal information in certain circumstances.
7.4 Right to Restrict Processing
You can ask us to limit how we use your personal information.
7.5 Right to Data Portability
You can request your data in a structured, machine-readable format.
7.6 Right to Object
You can object to processing based on legitimate interests or for direct marketing.
7.7 Right to Withdraw Consent
Where processing is based on consent, you can withdraw it at any time.
7.8 Exercising Your Rights
To exercise any of these rights, contact us at [email protected]. We will respond within one month of receiving your request.
8. International Data Transfers
We primarily process data within the UK. When we transfer data internationally, we ensure appropriate safeguards:
- Adequacy decisions by the UK government
- Standard contractual clauses
- Binding corporate rules
- Certification schemes
9. Children's Privacy
Our services are not intended for children under 16 years of age. We do not knowingly collect personal information from children under 16. If we become aware that we have collected such information, we will take steps to delete it promptly.
10. Third-Party Links
Our website may contain links to third-party websites. We are not responsible for the privacy practices of these external sites. We encourage you to review their privacy policies before providing personal information.
11. Updates to This Policy
We may update this Privacy Policy periodically to reflect changes in our practices or applicable law. We will notify you of material changes by:
- Posting the updated policy on our website
- Updating the "Last updated" date
- Sending email notifications for significant changes
- Displaying prominent notices on our website
12. Contact Information
If you have questions about this Privacy Policy or our data practices, please contact us:
Privacy Contact:
Email: [email protected]
Phone: 020 7123 4567
Address: TipEmpower Ltd, 123 Business Park, Manchester M1 1AA, United Kingdom
Supervisory Authority
You have the right to lodge a complaint with the Information Commissioner's Office (ICO):
Website: ico.org.uk
Phone: 0303 123 1113
Address: Information Commissioner's Office, Wycliffe House, Water Lane, Wilmslow, Cheshire SK9 5AF
13. Definitions
For the purposes of this Privacy Policy:
- "Personal Information" means any information relating to an identified or identifiable natural person
- "Processing" means any operation performed on personal data
- "Controller" means the entity that determines the purposes and means of processing
- "Processor" means an entity that processes personal data on behalf of the controller
- "Data Subject" means the individual to whom personal data relates