Privacy Policy
Last updated: August 2026
Compliance Signal UK is committed to protecting your privacy and handling your personal data in accordance with the UK General Data Protection Regulation (UK GDPR) and the Data Protection Act 2018.
1. Who we are
Compliance Signal UK is a business intelligence and commercial introduction service based in Manchester, United Kingdom. We identify UK small and medium-sized businesses facing regulatory compliance requirements and connect them with verified compliance specialists.
For data protection purposes, Compliance Signal UK is the data controller for personal data collected through this website and our outreach activities.
Contact us at: szymon@compliance-signal.co.uk
2. What personal data we collect
We may collect and process the following personal data:
- Contact information — name, business email address, company name, job title
- Business information — company size, industry sector, regulatory requirements
- Communication data — emails, messages and correspondence with us
- Website usage data — IP address, browser type, pages visited, time spent on site (via cookies)
- Form submissions — information you provide when completing our contact or enquiry forms
3. How we collect your data
We collect personal data through:
- Our website contact and enquiry forms
- Direct email correspondence
- Publicly available business sources including Companies House, LinkedIn and company websites
- Business-to-business outreach where we have a legitimate interest in contacting you about relevant regulatory requirements
4. Legal basis for processing
We process personal data on the following legal bases under UK GDPR:
- Legitimate interests — for B2B outreach to UK limited companies and LLPs regarding regulatory compliance requirements that are relevant to their business operations. We conduct a Legitimate Interests Assessment (LIA) before any outreach campaign.
- Contract performance — where we have an agreement with you or your organisation to provide our introduction services.
- Consent — where you have opted in to receive our compliance newsletter or other communications.
- Legal obligation — where we are required to process data to comply with UK law.
5. How we use your data
We use your personal data to:
- Respond to enquiries submitted through our website
- Identify businesses that may have relevant regulatory compliance requirements
- Arrange qualified introductions between businesses and compliance specialists
- Send our compliance newsletter (only where you have opted in)
- Manage our business relationships with compliance specialists and partner organisations
- Improve our website and services
- Comply with legal and regulatory obligations
6. B2B outreach and PECR
We conduct business-to-business email outreach to UK limited companies (Ltd) and limited liability partnerships (LLP) regarding regulatory compliance matters relevant to their sector and size.
Under the Privacy and Electronic Communications Regulations (PECR) and UK GDPR, we may contact corporate bodies by email without prior consent where we have a legitimate interest, the communication is relevant to the recipient's business role, and we provide a clear opt-out mechanism in every message.
We do not contact sole traders or individual consumers without prior consent.
Every outreach email includes an unsubscribe option. If you ask to be removed from our outreach list, we will add you to our suppression list immediately and you will not be contacted again.
7. Who we share your data with
We do not sell your personal data. We may share data with:
- Compliance specialists — where you have agreed to a meeting introduction, the relevant specialist will receive your contact details and business information necessary to conduct the meeting
- Technology providers — including our email, CRM and website hosting providers who process data on our behalf under data processing agreements
- Legal or regulatory authorities — where required by law
All third parties who process data on our behalf are required to handle it in accordance with UK GDPR.
8. Data retention
We retain personal data for no longer than necessary:
- Website enquiries — 24 months from last contact
- Business contacts (outreach) — 12 months, or until you request removal
- Partner and supplier data — duration of the business relationship plus 3 years
- Suppression list — indefinitely, to ensure we do not contact you again
- Financial records — 7 years as required by HMRC
9. Your rights
Under UK GDPR you have the right to:
- Access — request a copy of the personal data we hold about you
- Rectification — ask us to correct inaccurate data
- Erasure — ask us to delete your data where there is no legitimate reason to continue processing it
- Restriction — ask us to restrict processing of your data
- Portability — receive your data in a structured, machine-readable format
- Object — object to processing based on legitimate interests
- Withdraw consent — where processing is based on consent, withdraw it at any time
To exercise any of these rights, contact us at szymon@compliance-signal.co.uk. We will respond within 30 days.
10. Cookies
Our website uses cookies to improve your experience and analyse site usage. We use:
- Essential cookies — required for the website to function correctly
- Analytics cookies — to understand how visitors use our site (only with your consent)
You can manage cookie preferences through our cookie consent banner when you first visit the site.
11. Data security
We take appropriate technical and organisational measures to protect your personal data against unauthorised access, loss or destruction. Our website uses HTTPS encryption and access to personal data is restricted to authorised personnel only.
12. ICO registration
Compliance Signal UK is registered with the Information Commissioner's Office (ICO) as required under UK data protection law.
13. Complaints
If you are unhappy with how we handle your personal data, you have the right to lodge a complaint with the Information Commissioner's Office (ICO):
- Website: ico.org.uk
- Telephone: 0303 123 1113
We would appreciate the opportunity to address your concerns before you contact the ICO — please email us first at szymon@compliance-signal.co.uk.
14. Changes to this policy
We may update this Privacy Policy from time to time. The date at the top of this page shows when it was last revised. Significant changes will be communicated where appropriate.
15. Contact us
For any questions about this Privacy Policy or how we handle your data:
Compliance Signal UK
Manchester, United Kingdom
Email: szymon@compliance-signal.co.uk