The Website Pal The Website Pal ← Back to site

Privacy Policy

Last updated: August 2026

This policy explains what personal data The Website Pal collects, why, how we use and protect it, and your rights. We are the "data controller" for the personal data described here.

1. Who we are

The Website Pal, 58 Main Street, Ballynahinch, County Down, BT24 8DN, Northern Ireland. For any privacy matter, contact [email protected].

2. The data we collect

WhoWhat we collect
Customers & enquirersName, email, phone, business name and details, the content and files you submit (services, areas, logos, photos, links), and your order and correspondence history.
PaymentsCard payments are processed by Stripe. We do not see or store your full card details — Stripe does, as a separate controller/processor. We receive confirmation, the last four digits, and billing status only.
Website visitorsAnalytics data via Google Analytics (pages viewed, approximate location, device, how you reached us) using cookies, plus standard server logs.
Business prospectsPublicly available business contact information (business name, trade, area, phone, and — for limited companies — published email) which we use for business-to-business outreach.

3. How we use it, and our lawful basis

4. Cookies & analytics

Our website uses essential cookies needed for it to function, and Google Analytics cookies which help us understand how visitors use the site. Analytics cookies are only used where permitted. You can control or block cookies through your browser settings; blocking essential cookies may affect how the site works. IP addresses used for analytics are anonymised where possible.

5. Who we share it with

We use trusted third-party providers who process data on our behalf under appropriate safeguards, including: Stripe (payments), Netlify and Cloudflare (website hosting and delivery), Resend (email delivery), and Google (analytics and business services). We only share what is necessary, and we never sell your personal data. We may disclose data where required by law.

6. International transfers

Some providers may process data outside the UK. Where they do, we rely on appropriate safeguards (such as UK/EU adequacy or standard contractual clauses) to protect your data.

7. How long we keep it

We keep personal data only as long as needed for the purposes above: for the duration of our relationship with you, and afterwards as long as necessary to meet legal, accounting or dispute-resolution requirements. Prospect and marketing data is kept only as long as it remains relevant, and opt-outs are retained permanently so we can honour them.

8. Your rights

Under UK data protection law you have the right to access your data; to have it corrected or erased; to restrict or object to its processing; to data portability; and, where processing is based on consent, to withdraw that consent at any time. To exercise any right, email [email protected]. You also have the right to complain to the Information Commissioner's Office (ICO) at ico.org.uk, though we'd appreciate the chance to help first.

9. Marketing & opt-out

Where we contact businesses about our services, you can opt out at any time by replying to ask us to stop, or using any unsubscribe link provided. We will stop promptly and add you to our suppression list so you are not contacted again.

10. Security

We take reasonable technical and organisational measures to protect personal data. No method of transmission or storage is completely secure, so we cannot guarantee absolute security, but we act promptly on any issue we become aware of.

11. Changes

We may update this policy from time to time. The current version is always the one published here.

Contact: [email protected] · 07393 880 517.