Privacy Policy
How we collect, use, and protect your personal information. Written in plain English.
Who We Are
Nene IT is a trading name of Jason Burns, providing web design, development, hosting, and custom software services in the Nene Valley and surrounding areas.
Contact Details
- Business: Nene IT
- Owner: Jason Burns
- Email: support@neneit.co.uk
- Location: Nene Valley, Northamptonshire
For the purposes of data protection law, I am the "data controller" - meaning I decide how and why your personal data is processed.
What Information We Collect
Information You Give Us
When you contact us, become a client, or use our services, you may provide:
- Contact details - Name, email address, phone number, business address
- Business information - Company name, website details, what you do
- Payment information - Bank details for Direct Debit (processed securely via GoCardless)
- Content - Text, images, and materials you provide for your website
- Communication - Emails, messages, and notes from our conversations
Information We Collect Automatically
When you visit our website, we automatically collect:
- Technical data - IP address, browser type, device information
- Usage data - Pages visited, time spent, how you found us
- Cookie data - See the Cookies section below
We don't ask for or store things like health information, religious beliefs, or political opinions. We only collect what's needed to provide our services.
How We Use Your Information
We use your personal information to:
Legal Basis
Under UK GDPR, we process your data based on:
- Contract - Processing necessary to provide services you've requested
- Legitimate interests - Running our business, improving our services, responding to enquiries
- Legal obligation - Keeping financial records, complying with law
- Consent - Where you've specifically agreed (e.g., marketing emails)
What We Don't Do
Your Rights
Under UK data protection law, you have the right to:
Request a copy of the personal data we hold about you.
Ask us to fix any inaccurate or incomplete information.
Request that we erase your personal data (with some exceptions).
Ask us to limit how we use your data in certain circumstances.
Receive your data in a format you can transfer to another provider.
Object to us processing your data for certain purposes.
To exercise any of these rights, just contact us at support@neneit.co.uk. We'll respond within 30 days.
Complaints
If you're unhappy with how we've handled your data, please let us know first - we'll do our best to resolve it. If you're still not satisfied, you can complain to the Information Commissioner's Office (ICO):
- Website: ico.org.uk
- Phone: 0303 123 1113
How Long We Keep Data
We don't keep your data forever. Here's how long we retain different types:
- Client records - For the duration of our relationship, plus 6 years after (legal/tax requirements)
- Enquiries - 2 years if you don't become a client
- Financial records - 6 years (HMRC requirements)
- Website analytics - 26 months (Google Analytics default)
- Email correspondence - Duration of relationship plus 3 years
When data is no longer needed, we securely delete or anonymise it.
How We Keep Your Data Safe
We take data security seriously and use appropriate measures to protect your information:
- Encryption - Our website uses HTTPS/SSL encryption
- Secure hosting - UK/EU-based servers with strong security
- Payment security - Card and bank details handled by PCI-compliant processors (Stripe, GoCardless)
- Access controls - Only I have access to client data
- Regular backups - Data is backed up regularly
- Strong passwords - All systems protected with strong, unique passwords
While we take all reasonable precautions, no data transmission over the internet is completely secure. We can't guarantee absolute security, but we do our best.
International Data Transfers
Your data is primarily stored and processed in the UK and European Economic Area (EEA).
Some of our service providers (like Google) may transfer data to the United States. Where this happens, we ensure appropriate safeguards are in place, such as:
- Standard Contractual Clauses approved by the UK/EU
- Providers certified under recognised frameworks
Changes to This Policy
We may update this privacy policy from time to time. If we make significant changes, we'll let you know by:
- Updating the "last updated" date at the top
- Emailing you directly (for significant changes affecting clients)
- Posting a notice on our website
Questions About Your Privacy?
If you have any questions about this policy or how we handle your data, please get in touch. I'm happy to explain anything that isn't clear.