Privacy Policy
Privacy Policy
RedCloud Holdings plc
Effective Date: [Insert Date]
Version: 1.0
Privacy Policy
1. Introduction
RedCloud Holdings plc ("RedCloud", "we", "our" or "us") is committed to protecting the privacy and security of personal information entrusted to us by our customers, suppliers, partners, service providers, website visitors and other individuals with whom we interact.
This Privacy Policy explains how we collect, use, disclose, store and protect personal information when individuals use our websites, platforms, applications, software, APIs, business services, customer portals and other products (collectively, the "Services").
This policy applies globally across all RedCloud Holdings plc companies unless a local privacy notice or applicable law requires otherwise.
2. Scope
This Privacy Policy applies to:
RedCloud Holdings plc;
all subsidiaries controlled by RedCloud Holdings plc; all current and future business products and services; websites operated by RedCloud; customer portals; mobile applications; APIs; cloud-hosted software; partner portals; supplier relationships; marketing activities; customer support; and business communications.
This Privacy Policy does not apply to employee, contractor or recruitment data, which are governed by separate privacy notices.
3. Who We Are
RedCloud Holdings plc is the controller of personal information processed under this Privacy Policy unless otherwise stated.
Registered Office:
50 Liverpool St, London EC2M 7PY, United Kingdom
Company Registration Number: 15647424
Privacy Contact
Email: privacy@redcloudtechnology.com
4. Personal Information We Collect
Depending upon how you interact with RedCloud, we may collect:
name; job title; employer; username; business identifiers; business email address; telephone number; business address; authentication credentials; account; preferences; security settings; permissions; customer records; trade orders; subscriptions; invoices; contract information; technical Information; IP addresses; browser type; operating system; device identifiers; application usage logs; diagnostic data; cookies and similar technologies; products accessed and usage; features used; session information; agent conversations; transaction history; support interactions; communications; emails; telephone recordings (where notified); chat conversations; support tickets; feedback; relevant information from Third Parties
We may receive information from:
identity verification providers; payment providers; public sources; technology partners; business partners; analytics providers; and corporate customers.
5. How We Collect Information
We collect information:
directly from individuals; through use of our Services; through customer organisations; from authorised third parties; through cookies and analytics technologies; during contract negotiations; during customer support interactions; and from publicly available sources where lawful.
6. How We Use Personal Information
We use personal information to:
provide our products and services; administer customer accounts; authenticate users; provide technical support; improve our products; develop new services; communicate with you; comply with legal obligations; prevent fraud; detect security incidents; protect our systems; administer contracts; manage suppliers; conduct business operations; perform analytics; maintain regulatory compliance; and exercise or defend legal claims.
7. Legal Basis for Processing
Where UK GDPR or EU GDPR applies, we rely on one or more of the following lawful bases:
performance of a contract; compliance with legal obligations; legitimate interests; consent where required; and protection of vital interests where applicable.
Where we rely upon legitimate interests, we balance our interests against the rights and freedoms of individuals.
8. Artificial Intelligence and Automated Technologies
Certain RedCloud products may incorporate artificial intelligence, machine learning or automated analytical technologies.
Where such technologies process personal information, RedCloud will:
process information only for legitimate business purposes;
implement appropriate safeguards;
maintain appropriate governance;
monitor model performance;
minimise unnecessary personal information;
assess privacy risks before deployment; and
comply with applicable legal requirements concerning automated decision-making.
Where legally required, individuals may request human review of decisions made solely through automated processing.
9. Cookies and Similar Technologies
RedCloud uses cookies, local storage, pixels and similar technologies to:
maintain website functionality;
authenticate users;
remember preferences;
measure performance;
improve user experience;
analyse website traffic; and
protect our systems.
Where required by law, we obtain consent before placing non-essential cookies.
Further information is available in our Cookie Policy.
10. Sharing Personal Information
We may share information with:
companies within the RedCloud group;
cloud hosting providers;
payment providers;
professional advisers;
auditors;
insurers;
regulators;
law enforcement agencies;
technology vendors;
communications providers;
analytics providers;
customer-authorised third parties; and
suppliers supporting delivery of our Services.
We require service providers to process personal information only on documented instructions and to implement appropriate security measures.
11. International Transfers
As a global organisation, RedCloud may transfer personal information between countries.
Where transfers occur outside the United Kingdom or European Economic Area, we implement appropriate safeguards including:
UK International Data Transfer Agreement (IDTA);
International Data Transfer Addendum;
European Commission Standard Contractual Clauses;
adequacy regulations; or
other lawful transfer mechanisms.
12. Information Security
RedCloud maintains administrative, technical and organisational measures designed to protect personal information.
These measures include:
encryption;
multi-factor authentication;
access controls;
security monitoring;
vulnerability management;
penetration testing;
disaster recovery planning;
backup procedures;
supplier due diligence;
employee training; and
incident response processes.
While we take reasonable steps to protect personal information, no system can guarantee absolute security.
13. Data Retention
We retain personal information only for as long as necessary to:
provide our Services; comply with legal obligations; resolve disputes; enforce agreements; and protect our legitimate interests.
Retention periods vary according to the nature of the information and applicable legal requirements.
Where information is no longer required, it is securely deleted, anonymised or destroyed.
14. Individual Rights
Where applicable, individuals may have the right to:
access personal information;
request correction;
request deletion;
restrict processing;
object to processing;
request portability;
withdraw consent;
object to direct marketing; and
lodge complaints with an applicable supervisory authority.
We may request information to verify identity before responding to requests.
15. Marketing Communications
We may send business-related communications concerning our products and services where permitted by law.
Recipients may opt out of marketing communications at any time using the unsubscribe mechanism provided or by contacting us.
Operational communications relating to customer accounts may continue where necessary.
16. Children's Privacy
RedCloud's Services are intended for business users and are not directed towards children.
We do not knowingly collect personal information from children unless required by applicable law and with appropriate safeguards.
17. Third-Party Websites
Our Services may contain links to third-party websites or services.
We are not responsible for the privacy practices or content of external websites.
Users should review the privacy policies of third parties before providing personal information.
18. Changes to this Policy
We may amend this Privacy Policy from time to time.
Material changes will be communicated through appropriate channels, including our website or customer communications where appropriate.
The "Effective Date" above indicates when this Privacy Policy was last updated.
19. Contact Us
Questions regarding this Privacy Policy or our handling of personal information may be directed to:
Privacy Team
RedCloud Holdings plc
Email: privacy@[company-domain]
Address: [Insert Registered Office]
Where applicable, individuals in the United Kingdom may also raise concerns with the UK Information Commissioner's Office or their local supervisory authority.
20. Regional Privacy Provisions
Where required by applicable law, RedCloud may publish supplementary regional privacy notices addressing specific legal requirements, including but not limited to:
United Kingdom
European Economic Area
United States
Canada
Brazil
Australia
Singapore
South Africa
Japan
United Arab Emirates
Such notices supplement this Privacy Policy and prevail where local law requires.