Ashton Knight Limited Privacy Statement
Terms of Service
Ashton Knight Ltd
Effective Date: 1st August 2024
1. Introduction
Welcome to Ashton Knight Ltd. By using our website and services, you agree to comply with and be bound by these Terms of Service. These terms outline the legal relationship between you (the client) and Ashton Knight Ltd regarding our professional services. Please review them carefully. If you have any questions, contact us at nish@ashtonknight.net.
2. Data Controller
3. Personal Data We Collect
- Identity Data: Name, date of birth, national insurance number, passport or driving licence details.
- Contact Data: Address, email address, phone number.
- Financial Data: Bank account details, tax information, financial statements.
- Transaction Data: Details about payments to and from you.
- Compliance Data: Documentation required under Anti-Money Laundering (AML) regulations, such as proof of identity and address.
- Technical Data: IP address, browser type, and other technology on the devices you use to access our website.
- Usage Data: Information about how you use our website and services.
Marketing and - Communications Data: Your preferences in receiving marketing from us and your communication preferences.
4. How We Collect Your Data
- Direct Interactions: You provide data when engaging our services or communicating with us.
Automated - Technologies: As you interact with our website, we may collect technical data automatically.
- Third Parties: We may receive personal data from third parties, such as HMRC, Companies House, or credit reference agencies.
5. Purpose and Legal Basis for Processing
- To Provide Services: Processing necessary for the performance of our contract with you.
- Legal Obligations: Complying with laws, including AML regulations.
- Legitimate Interests: Managing our business, including client communications and service improvements.
- Consent: Sending marketing communications where you have consented.
6. Data Sharing
We do not share your personal data with third-party providers for processing. All personal data processing is conducted exclusively by Ashton Knight Limited employees, some of whom may be based overseas. Our employees operate under strict confidentiality agreements and follow our internal security policies to ensure data protection.
- Regulatory Authorities: Such as HMRC or the Financial Conduct Authority (FCA).
- Professional Advisers: Including lawyers, bankers, auditors, and insurers.
- Law Enforcement Agencies: Where required by law.
7. International Data Transfers
Ashton Knight Limited may process personal data outside the UK, but all such processing is carried out by our own employees, not third-party service providers. When personal data is processed overseas, we ensure:
- Strict internal policies and security measures to protect your data.
- Compliance with UK GDPR and the Data Protection Act 2018.
- Regular audits and monitoring to uphold our data protection commitments.
If you have any questions about how we process data overseas, please contact us using the details provided in Section 2.
8. Data Security
We implement appropriate technical and organisational measures to prevent your personal data from being accidentally lost, used, or accessed in an unauthorised way. Our security practices include:
- Access controls to restrict data access.
- Encryption and secure storage of personal data.
- Regular security reviews and staff training.
9. Data Retention
We retain personal data only as long as necessary to fulfil the purposes we collected it for, including satisfying legal, accounting, or reporting requirements. Specifically:
- Accounting records: Retained for a minimum of six years in line with HMRC requirements.
- AML documentation: Retained for five years after the business relationship ends.
- Other records: Retained as required by professional and legal obligations.
10. Your Rights
Under data protection laws, you have rights including:
- Access: Request access to your personal data.
- Correction: Request correction of inaccurate data.
- Erasure: Request deletion of your data, subject to legal obligations.
- Restriction: Request restriction of processing.
- Objection: Object to processing based on legitimate interests.
- Portability: Request transfer of your data.
- Withdraw Consent: Withdraw consent where processing is based on consent.
To exercise these rights, please contact us using the details above.
11. Changes to This Privacy Statement
We may update this statement occasionally. Any changes will be posted on our website, and where appropriate, notified to you by email.
12. Contact Information
For any questions or to exercise your rights, please contact:
This Privacy Statement is effective as of 1st January 2025 and will be reviewed periodically.