Privacy Policy
Last updated: 20 July 2026
SMART Insight Ltd (“we”, “us”, “our”) is committed to protecting and respecting your privacy. This policy explains what personal data we collect, how we use it, the lawful bases we rely on, and the rights you have under the UK General Data Protection Regulation (UK GDPR) and the Data Protection Act 2018.
1. Who we are
SMART Insight Ltd provides database marketing, loyalty card and customer relationship systems (including SMART-Loyalty, SMART-Client, SMART-Clinic and SMART-Coach) and related modules. For the purposes of data protection law, SMART Insight Ltd is the “data controller” in respect of personal data collected through this website.
SMART Insight Ltd
The Edge, Bucklands End, Nailsea, Bristol, BS48 4PN, United Kingdom
Email: info@smartinsight.co.uk
Telephone: 01275 856683
2. The personal data we collect
Depending on how you interact with us, we may collect and process the following categories of data:
- Contact and enquiry data — such as your name, company, email address, telephone number and the content of any message you send us via our contact or enquiry forms.
- Account and login data — where you use our client portal or systems, the credentials and identifiers needed to authenticate and manage your access.
- Technical data — your IP address, browser type and version, device information, operating system and similar data collected automatically when you visit the site.
- Usage data — information about how you use our website, including pages visited and referring pages.
3. How we use your data and our lawful bases
We only process your personal data where the law allows us to. The lawful bases we rely on are:
- Consent — where you have given clear consent, for example to receive marketing communications or to set non-essential cookies. You can withdraw consent at any time.
- Legitimate interests — to respond to your enquiries, operate and secure our website, understand how our services are used, and to promote our products where this does not override your rights and freedoms.
- Contract — to provide the systems and services you or your organisation have engaged us to deliver, and to manage that relationship.
- Legal obligation — where processing is necessary to comply with a legal or regulatory requirement.
4. Cookies and similar technologies
Our website uses cookies and similar technologies to make the site work, to keep it secure, and to help us understand how it is used. Essential cookies are required for core functionality such as maintaining a logged-in session. Non-essential cookies are only set where you have given consent.
You can control or delete cookies through your browser settings. Please note that disabling essential cookies may affect the functionality of parts of the site, including secure login areas.
5. Third-party services
We use certain trusted third-party services to operate our website. Where these services process personal data, they do so under their own privacy policies:
- Google reCAPTCHA — we use reCAPTCHA to protect our forms from spam and abuse. Its use is subject to the Google Privacy Policy and Terms of Service.
We do not sell your personal data. We only share it with third parties where necessary to provide our services, where we are required to do so by law, or with your consent.
6. International transfers
Some of our third-party providers may process data outside the United Kingdom. Where personal data is transferred outside the UK, we take steps to ensure it is protected by appropriate safeguards, such as UK adequacy regulations or the International Data Transfer Agreement (IDTA).
7. How long we keep your data
We keep personal data only for as long as necessary for the purposes set out in this policy, including to satisfy any legal, accounting or reporting requirements. Enquiry data is typically retained for as long as needed to deal with your request and for a reasonable period afterwards. When data is no longer required, it is securely deleted or anonymised.
8. How we protect your data
We have put in place appropriate technical and organisational measures to protect your personal data against unauthorised access, alteration, disclosure or destruction. Access to personal data is limited to those who have a genuine business need to access it.
9. Your rights
Under the UK GDPR you have the right to:
- request access to the personal data we hold about you;
- request correction of inaccurate or incomplete data;
- request erasure of your data (the “right to be forgotten”);
- object to, or request restriction of, our processing of your data;
- request the transfer of your data (data portability);
- withdraw consent at any time where we rely on consent to process your data.
To exercise any of these rights, please contact us at info@smartinsight.co.uk. We will respond within one month.
10. Complaints
If you have concerns about how we handle your personal data, we would ask you to contact us first so we can try to resolve them. You also have the right to lodge a complaint with the UK supervisory authority, the Information Commissioner’s Office (ICO):
Information Commissioner’s Office — ico.org.uk — Helpline: 0303 123 1113
11. Changes to this policy
We may update this privacy policy from time to time. Any changes will be posted on this page with an updated revision date. Please check back periodically to stay informed.
12. Contact us
If you have any questions about this privacy policy or how we handle your personal data, please contact us at info@smartinsight.co.uk or by post at the address given above.