Legal & Compliance

Privacy Policy

This policy explains how UK Business Gateway collects, uses, stores and protects your personal data on www.ukbusinessgateway.com. We process personal data in accordance with UK GDPR and the Data Protection Act 2018.

Last Updated: [DATE]
1.

Introduction

UK Business Gateway (“we”, “our”, “us”) is committed to protecting and respecting your privacy. This Privacy Policy explains how we collect, use, store, share and protect personal data when you:

  • visit our website;
  • use our company formation services;
  • use our identity verification and compliance services;
  • purchase products or services from us;
  • communicate with us;
  • create an account on our platform.

We process personal data in accordance with:

  • UK General Data Protection Regulation (UK GDPR);
  • Data Protection Act 2018;
  • Privacy and Electronic Communications Regulations (PECR);
  • applicable anti-money laundering legislation.

By using our website and services, you acknowledge the practices described in this Privacy Policy.

2.

Data Controller

The Data Controller responsible for your personal data is:

Where we provide legal services through a regulated legal practice, additional professional confidentiality obligations may also apply.

3.

Personal Data We Collect

We may collect and process the following categories of personal data.

Identity Information

  • full name
  • date of birth
  • nationality
  • passport details
  • driving licence details
  • photographs
  • biometric verification data
  • signature data

Contact Information

  • residential address
  • correspondence address
  • email address
  • telephone number

Company Information

  • company name
  • company number
  • director information
  • shareholder information
  • PSC information
  • registered office information

Compliance Information

  • AML verification results
  • sanctions screening results
  • PEP screening results
  • adverse media screening results
  • source of funds information
  • source of wealth information
  • identity verification records

Technical Information

  • IP address
  • browser type
  • operating system
  • website usage information
  • cookie information

Financial Information

  • billing information
  • payment references
  • transaction history

We do not store payment card information. Payment processing is handled by authorised third-party payment providers.

4.

Special Category and Sensitive Data

Certain compliance services may require us to process enhanced due diligence information. Where applicable, this may include:

  • politically exposed person information;
  • sanctions screening information;
  • criminal offence-related information where required by law;
  • source of funds information.

Such processing is undertaken only where necessary and permitted under applicable legislation.

5.

How We Collect Information

We collect information:

  • directly from you;
  • through our website forms;
  • through customer onboarding;
  • through identity verification processes;
  • through third-party compliance providers;
  • through publicly available sources;
  • through Companies House records;
  • through cookies and analytics technologies.
6.

How We Use Your Information

We may use your information to:

Provide Services

  • incorporate companies;
  • provide registered office services;
  • perform identity verification;
  • perform AML compliance checks;
  • manage customer accounts;
  • deliver purchased services.

Meet Legal Obligations

  • comply with anti-money laundering legislation;
  • comply with Companies House requirements;
  • comply with court orders and regulatory obligations.

Business Operations

  • manage customer relationships;
  • provide support services;
  • improve our website;
  • manage billing and payments.

Marketing

Where permitted by law, we may send information regarding products and services that may be of interest to you. You may unsubscribe at any time.

8.

Identity Verification and Compliance Checks

As part of our services we may carry out:

  • identity verification;
  • anti-money laundering checks;
  • sanctions screening;
  • politically exposed person screening;
  • source of funds verification;
  • source of wealth verification.

These checks may be conducted using approved third-party compliance providers.

Failure to provide requested information may result in our inability to provide services.

9.

Sharing Your Information

We may share personal data with:

Regulatory Authorities

Including:

  • Companies House
  • HM Revenue & Customs
  • law enforcement agencies
  • regulatory bodies

where required by law.

Service Providers

Including:

  • identity verification providers
  • AML screening providers
  • cloud hosting providers
  • payment processors
  • CRM providers
  • customer support platforms

All service providers are required to implement appropriate security measures.

Professional Advisers

Including:

  • solicitors
  • accountants
  • auditors
  • insurers

where reasonably necessary.

10.

International Data Transfers

Where personal data is transferred outside the United Kingdom, we will ensure appropriate safeguards are in place including:

  • UK International Data Transfer Agreements;
  • adequacy decisions;
  • approved contractual protections.
11.

Data Retention

We retain personal data only for as long as necessary. For AML and compliance purposes, records may be retained for up to:

  • 5 years following the end of a business relationship;
  • longer where required by law or regulatory guidance.

Retention periods may vary depending upon legal obligations and the nature of the service provided.

12.

Security Measures

We implement appropriate technical and organisational security measures including:

  • encryption;
  • secure hosting;
  • access controls;
  • role-based permissions;
  • audit logs;
  • staff training.

No method of transmission or storage is completely secure and we cannot guarantee absolute security.

13.

Your Rights

Under UK GDPR you may have the right to:

  • access your personal data;
  • correct inaccurate information;
  • request erasure of personal data;
  • restrict processing;
  • object to processing;
  • request portability of your data;
  • withdraw consent where applicable.

Some rights may be restricted where legal or regulatory obligations apply.

14.

Cookies and Website Analytics

Our website uses cookies and similar technologies to:

  • improve website functionality;
  • understand website usage;
  • enhance user experience;
  • support security and fraud prevention.

Please refer to our Cookie Policy for further information.

15.

Marketing Communications

We may send service updates, newsletters and marketing communications where permitted by law. You may opt out at any time by:

  • using the unsubscribe link;
  • contacting us directly.
16.

Complaints

If you have concerns regarding our handling of personal data, please contact us first. You also have the right to complain to the Information Commissioner's Office (ICO):

Information Commissioner's Office

Telephone:
0303 123 1113
17.

Changes to this Privacy Policy

We may update this Privacy Policy from time to time. Any changes will be published on this page together with the updated revision date.

18.

Contact Us

For privacy-related enquiries please contact:

Data Protection Officer / Privacy Team

We will endeavour to respond to all privacy enquiries promptly and in accordance with applicable data protection legislation.