1. Who We Are
Kaizen Cloud Consultancy Ltd ("we", "us", "our") is a company registered in Scotland (Company No. SC808697) with its registered office at Studio 106, Embroidery Mill, Seedhill, Paisley, PA1 1TJ.
We are the data controller for the personal data we process. If you have any questions about this policy or how we handle your data, contact us at martyn@kaizenconsultancy.io.
2. What Data We Collect
We collect minimal personal data in the course of operating this website and our business:
- Contact information you provide when you email us (name, email address, message content)
- Information you share when connecting via LinkedIn
- Technical data automatically collected when you visit our website (IP address, browser type, pages visited) via server access logs
- Purchase information when you buy products or services through our marketplace (name, email address, billing address) - collected by Stripe on our behalf
- Information you provide in intake forms and questionnaires when booking consultancy or training sessions
- Email address when you subscribe to our blog mailing list
3. How We Use Your Data
We use your personal data for the following purposes:
- To respond to your enquiries and provide our consultancy services
- To process purchases and deliver products and services you have bought
- To send you purchase confirmations, download links, intake forms, and session scheduling information
- To send blog update notifications if you have subscribed to our mailing list
- To manage our business relationship with you
- To monitor and improve our website performance and security
- To comply with legal and regulatory obligations
We do not use your data for marketing purposes unless you have explicitly opted in. Purchasing a product does not subscribe you to any mailing list.
4. Legal Basis for Processing
We process your data under the following legal bases (UK GDPR):
- Consent: blog mailing list subscriptions (double opt-in). You can withdraw consent at any time by clicking the unsubscribe link in any email.
- Legitimate interest: responding to enquiries, website security and performance monitoring
- Contract: where processing is necessary to deliver our services to you
- Legal obligation: where we are required to retain data for tax, accounting, or regulatory purposes
5. Data Sharing
We do not sell your personal data. We may share data with:
- Stripe (payment processor) - processes your payment card details, name, email, and billing address when you make a purchase. Stripe acts as an independent data controller for payment data. See Stripe's Privacy Policy. We do not store your payment card details.
- Amazon Web Services (cloud infrastructure) - hosts this website and processes delivery emails. Data is processed in the EU (eu-west-2, London) in accordance with AWS's data processing agreement.
- Amazon SES (email delivery) - sends purchase confirmation and product delivery emails on our behalf.
- Calendly (scheduling) - if you book a session, Calendly processes your name and email to manage the booking. See Calendly's Privacy Policy.
- Professional advisors (accountants, legal) where necessary
- Regulatory authorities where required by law
6. Data Retention
We retain your personal data only for as long as necessary:
- Enquiry and contact data: 2 years from last contact
- Purchase and transaction data: 6 years after purchase (for tax and accounting purposes as required by HMRC)
- Client project data: 6 years after project completion (for legal and tax purposes)
- Intake forms and session notes: 2 years from the date of the session
- Mailing list data: until you unsubscribe. When you unsubscribe, your email address is deleted immediately and permanently from our systems.
- Server access logs: 90 days
- Product delivery logs: 1 year
7. Your Rights
Under UK GDPR, you have the right to:
- Access the personal data we hold about you
- Request correction of inaccurate data
- Request deletion of your data (where applicable)
- Object to or restrict processing of your data
- Data portability
- Lodge a complaint with the Information Commissioner's Office (ICO) at ico.org.uk
To exercise any of these rights, contact us at martyn@kaizenconsultancy.io.
8. Cookies
This website uses cookies for analytics purposes. We use Google Analytics to understand how visitors interact with our site. Analytics cookies are only set with your consent. For full details, see our Cookie Policy.
9. Changes to This Policy
We may update this privacy policy from time to time. Any changes will be posted on this page with an updated revision date.