Privacy
Privacy Policy
How we collect, use, and protect your personal data
Introduction
Templeton-Smith Ltd ("we", "us", or "our") is committed to protecting and respecting your privacy.
This Privacy Policy explains how we collect, use, store, and protect your personal data when you:
• Visit our website
• Engage our services
• Contact us with enquiries
• Enter into contracts with us
We are a data controller for the purposes of the UK General Data Protection Regulation (UK GDPR) and the Data Protection Act 2018.
Data We Collect
We may collect and process the following personal data:
Contact Information
• Name, email address, phone number, postal address
• Company name and job title
Technical Data
• IP address, browser type and version
• Operating system and platform
• Pages visited and time spent on our website
Service Data
• Details of services you request or receive
• Records of correspondence and communications
• Information necessary for billing and payment
We do not collect special category data (such as health information, racial or ethnic origin, religious beliefs) unless specifically required and with your explicit consent.
How We Use Your Data
We use your personal data for the following purposes:
Service Delivery
• To provide IT consulting, support, and development services
• To communicate with you about your projects and support requests
• To maintain and improve our services
Business Operations
• To process payments and maintain financial records
• To manage our relationship with you
• To comply with legal and regulatory obligations
Marketing (with consent)
• To send you information about our services that may interest you
• You can opt out of marketing communications at any time
Legal Basis for Processing
• Contract: Processing necessary for the performance of a contract
• Legal Obligation: Compliance with our legal obligations
• Legitimate Interests: Running our business and improving services
• Consent: Where you have given explicit permission
Data Sharing and Third Parties
We do not sell your personal data to third parties.
We may share your data with:
Service Providers
• Cloud hosting providers (for systems we manage on your behalf)
• Payment processors (for billing purposes)
• Professional advisers (accountants, lawyers) when necessary
Legal Requirements
• We may disclose data when required by law or court order
• To protect our rights, property, or safety
• To investigate fraud or security issues
Third-Party Services
When we administer third-party services on your behalf (domain names, hosting, software subscriptions), your data is subject to those providers' privacy policies. We only share the minimum data necessary for service provision.
Data Security
We implement appropriate technical and organisational measures to protect your personal data:
Technical Measures
• Encryption of data in transit (TLS/SSL)
• Secure password policies and access controls
• Regular security updates and patches
• Firewall and intrusion detection systems
Organisational Measures
• Staff training on data protection
• Confidentiality agreements with employees and contractors
• Regular security assessments
• Incident response procedures
While we take all reasonable precautions, no internet transmission is completely secure. We cannot guarantee the security of data transmitted to us, and you do so at your own risk.
Data Retention
We retain your personal data only for as long as necessary:
Active Clients
• For the duration of our working relationship
• Plus any period required for warranty or support obligations
Former Clients
• Financial records: 7 years (for tax and accounting purposes)
• Service records: 3-6 years (depending on service type and legal requirements)
• Marketing data: Until you unsubscribe or request deletion
Your Rights
Under data protection law, you have the following rights:
Right to Access
• Request a copy of the personal data we hold about you
Right to Rectification
• Request correction of inaccurate or incomplete data
Right to Erasure ("Right to be Forgotten")
• Request deletion of your personal data in certain circumstances
Right to Restrict Processing
• Request limitation on how we use your data
Right to Data Portability
• Receive your data in a structured, commonly used format
• Transfer your data to another controller
Right to Object
• Object to processing based on legitimate interests
• Object to direct marketing at any time
Right to Withdraw Consent
• Where we rely on consent, you may withdraw it at any time
Exercising Your Rights
To exercise any of these rights, please contact us using the details below. We will respond within one month of receiving your request.
Contact Us
If you have any questions about this Privacy Policy or how we handle your data, please contact us:
Templeton-Smith Ltd
Use the contact form or the phone number on our Contact page: templeton-smith.com/#contact
Address: London, United Kingdom
Changes to This Policy
We may update this Privacy Policy from time to time to reflect:
• Changes in our business practices
• Changes in legal or regulatory requirements
• Improvements to our privacy protections
Any changes will be posted on this page with an updated revision date. We encourage you to review this policy periodically.
Last Updated: March 2025
