Legal

Privacy Policy

Last updated: 1 May 2025

Astute App ("Astute", "we", "us", or "our") is committed to protecting your personal information and your right to privacy. This Privacy Policy explains what information we collect, how we use it, and what rights you have in relation to it.

If you have any questions or concerns about this policy, or our practices regarding your personal information, please contact us at [email protected].

1 Who We Are

Astute App is a financial information and consultation platform registered in England and Wales. We operate the website at astuteapp.io and associated landing pages, through which we offer credit consultation bookings and related financial information services.

For the purposes of UK data protection law, Astute App is the data controller of your personal data collected through our website and booking forms.

2 What Information We Collect

We collect information you provide directly to us when you:

  • Complete a booking or enquiry form on our website
  • Purchase a consultation session
  • Contact us by email, phone, or social media
  • Subscribe to any communications from us

The personal data we may collect includes:

CategoryExamples
IdentityFirst name, last name
ContactEmail address, phone number
BusinessCompany name, industry sector
Financial contextCredit goals, general credit situation as you describe it
TechnicalIP address, browser type, pages visited, referring URL
TransactionPayment confirmation details (we do not store card numbers)

We do not collect special category data (such as health, ethnicity, or biometric data) unless you voluntarily provide it during a consultation. We do not run credit checks on you as part of the booking process.

3 How We Use Your Information

We use the information we collect for the following purposes:

  • To fulfil your booking — scheduling, confirmation emails, and pre-session preparation
  • To process payment — via our third-party payment processor (we do not store card details)
  • To deliver the consultation — providing the credit guidance session you have booked
  • To communicate with you — responding to enquiries, sending session reminders, and follow-up information
  • To improve our services — analysing how our website is used and how we can serve clients better
  • To comply with legal obligations — maintaining records as required by law
  • For marketing — only if you have given us explicit consent to do so

4 Our Legal Basis for Processing

Under UK GDPR, we rely on the following legal bases:

  • Contract performance — processing necessary to deliver your booked consultation
  • Legitimate interests — operating and improving our business, fraud prevention, and security
  • Legal obligation — where processing is required to comply with UK law
  • Consent — for marketing communications and any optional data uses (you may withdraw consent at any time)

5 How We Share Your Information

We do not sell your personal data. We may share your information with trusted third parties only where necessary:

  • GoHighLevel (GHL) — our CRM and booking platform used to manage consultations and communications
  • Payment processors — to securely process your £25 consultation fee
  • Email and communication tools — to send booking confirmations and session reminders
  • Analytics providers — to understand website usage (data is anonymised where possible)
  • Legal or regulatory authorities — where we are required to do so by law

All third-party processors are contractually required to handle your data in accordance with UK data protection law.

6 Cookies and Tracking

Our website uses cookies and similar tracking technologies to improve your experience. These include:

  • Essential cookies — required for the website to function correctly
  • Analytics cookies — to understand how visitors use the site (e.g. page views, session duration)
  • Advertising cookies — where we run paid campaigns (e.g. Meta Ads), pixels may be placed to measure ad performance

You can control cookies through your browser settings. Disabling certain cookies may affect the functionality of the site. Where required by law, we will ask for your consent before placing non-essential cookies.

7 Data Retention

We retain your personal data only for as long as necessary to fulfil the purposes it was collected for, including legal, accounting, or reporting requirements.

  • Consultation records are retained for up to 3 years following your session
  • Financial transaction records are retained for 7 years in line with HMRC requirements
  • Marketing contact data is retained until you unsubscribe or withdraw consent

After the applicable retention period, your data is securely deleted or anonymised.

8 Your Rights Under UK GDPR

You have the following rights in relation to your personal data:

👁️
Right to access — request a copy of the data we hold about you
✏️
Right to rectification — ask us to correct inaccurate or incomplete data
🗑️
Right to erasure — request deletion of your data where there is no lawful reason to retain it
⏸️
Right to restrict processing — ask us to pause processing of your data in certain circumstances
📦
Right to data portability — receive your data in a structured, machine-readable format
🚫
Right to object — object to processing based on legitimate interests or for direct marketing

To exercise any of these rights, please contact us at [email protected]. We will respond within 30 days. You also have the right to lodge a complaint with the Information Commissioner's Office (ICO) at ico.org.uk.

9 International Transfers

Some of our third-party service providers operate outside the UK or EEA. Where data is transferred internationally, we ensure appropriate safeguards are in place — such as Standard Contractual Clauses or adequacy decisions — in line with UK GDPR requirements.

10 Data Security

We implement appropriate technical and organisational security measures to protect your personal data against unauthorised access, loss, or disclosure. These include encrypted data transmission (HTTPS), access controls, and regular review of our security practices.

However, no method of transmission over the internet is completely secure. If you believe your data has been compromised, please contact us immediately at [email protected].

11 Children's Privacy

Our services are intended for individuals aged 18 and over. We do not knowingly collect personal data from anyone under the age of 18. If you believe we have inadvertently collected data from a minor, please contact us and we will delete it promptly.

12 Changes to This Policy

We may update this Privacy Policy from time to time. When we do, we will revise the "Last updated" date at the top of the page. For material changes, we will notify you by email or by placing a notice on our website. We encourage you to review this policy periodically.

13 Contact Us

If you have any questions about this Privacy Policy or your personal data, please contact us:

📍 Registered in England & Wales