Last Updated: 23/11/25
Cliff Grainger Consultancy (“we”, “us”, “our”) is committed to protecting your privacy and handling your data responsibly in accordance with the UK General Data Protection Regulation (UK GDPR) and the Data Protection Act 2018.
This policy explains:
- What data we collect
- How we use it
- How we store and protect it
- Your rights under UK law
1. Data Controller
The data controller is:
Cliff Grainger Consultancy
Email: hello@cliffgrainger.com
Registered with ICO Reference Number ZA834228 Since 21/12/2020
2. Information We Collect
We may collect:
2.1 Information You Provide
- Name
- Email address
- Phone number
- Company name
- Billing details
- Messages sent via contact forms
2.2 Website Usage Data
Collected automatically:
- IP address
- Browser information
- Device information
- Pages visited
- Time on site
- Cookies and tracking data
2.3 Plugin or Product Use
If you use our digital products, we may log:
- Installations
- Licence activation
- Versioning
- Error logs (anonymous)
We do not collect personal website user data via plugins unless specifically stated.
3. How We Use Your Data
We process your data for:
- Providing consultancy services
- Responding to enquiries
- Administering billing and communication
- Providing access to digital products
- Sending updates you have opted into
- Website analytics and performance improvements
- Legal or contractual obligations
4. Legal Basis for Processing
Under UK GDPR, we process data using:
- Consent (e.g., newsletter sign-ups)
- Contractual obligation (providing services)
- Legitimate interest (business operations, improving website, fraud prevention)
- Legal obligation (recordkeeping, HMRC requirements)
5. Cookies & Tracking
We use cookies for:
- Website functionality
- Analytics (e.g., Google Analytics)
- Performance improvements
- Optional marketing tracking
You may manage or disable cookies via your browser.
6. Sharing Your Information
We may share your data with:
- Service providers (hosting, email providers, analytics tools)
- Payment processors
- Legal authorities where required
We never sell your data.
All third-party processors are compliant with UK GDPR equivalent standards.
7. Data Storage & Security
We store data securely using:
- Encrypted communication (HTTPS)
- Secured hosting environments
- Access controls restricted to authorised individuals
We retain data only as long as necessary for:
- Service delivery
- Legal obligations
- Account history
- Product licensing
8. International Transfers
Where third-party services store data outside the UK (e.g., EEA or USA), transfers are safeguarded using:
- UK adequacy decisions
- Standard Contractual Clauses (SCCs)
- Equivalent safeguards required by UK GDPR
9. Your Rights Under UK GDPR
You have the right to:
- Access your data
- Request correction
- Request deletion (“right to be forgotten”)
- Restrict processing
- Object to processing
- Request data portability
- Withdraw consent at any time
To exercise these rights, email [Your Email].
10. Links to Other Websites
We are not responsible for the privacy practices of external websites linked from this site.
11. Changes to This Policy
We may update this policy periodically.
Updates will be posted on this page with a revised “Last Updated” date.
12. Contact Us
For any data queries, please contact:
Cliff Grainger Consultancy
Email: hello@cliffgrainger.com
Registration certificate