PRIVACY POLICY
Last updated: March 2026
---
1. INTRODUCTION
M&Co Creative ("we", "us", "our") operates the website www.mandcocreative.co.uk and provides web design, website audit, and SEO services.
This Privacy Policy explains how we collect, use, store, and protect your personal information when you use our website or services.
By using our website or services, you agree to the collection and use of information in accordance with this policy.
---
2. INFORMATION WE COLLECT
We collect the following types of information:
Information You Provide to Us:
• Name
• Email address
• Phone number (if provided)
• Business name and details
• Payment information (processed securely through Stripe/Squarespace Commerce)
• Any other information you provide when contacting us or booking services
Information Collected Automatically:
• IP address
• Browser type and version
• Device information
• Pages visited on our website
• Time and date of visits
• Referring website
• Location data (country/city level only)
Cookies:
Our website uses cookies to improve your experience. See Section 8 for more details.
---
3. HOW WE USE YOUR INFORMATION
We use your personal information to:
• Process and deliver the services you purchase (audits, redesigns, SEO)
• Communicate with you about your project
• Send invoices and payment confirmations
• Provide customer support
• Send service updates and project-related emails
• Improve our website and services
• Comply with legal obligations
Marketing Communications:
If you subscribe to our email list, we will send you:
• Website tips and insights
• Service updates
• Special offers (e.g., founder pricing)
You can unsubscribe from marketing emails at any time using the link at the bottom of each email.
---
4. LEGAL BASIS FOR PROCESSING (GDPR)
We process your personal data under the following legal bases:
• Contract Performance: To deliver services you've purchased
• Legitimate Interests: To improve our services and communicate about your project
• Consent: For marketing emails (you can withdraw consent anytime)
• Legal Obligation: To comply with tax and business regulations
---
5. HOW WE SHARE YOUR INFORMATION
We do not sell, trade, or rent your personal information to third parties.
We may share your information with:
Service Providers:
• Squarespace (website hosting and commerce platform)
• Stripe (payment processing)
• Email service provider (for newsletters and project communications)
• Google Analytics (for website analytics - anonymised data)
• Loom screen recording software for website audits
These providers only access information necessary to perform their services and are obligated to protect your data.
Legal Requirements:
We may disclose your information if required by law, court order, or government regulation.
---
6. DATA RETENTION
We retain your personal information for as long as necessary to:
• Fulfill the purposes outlined in this policy
• Comply with legal obligations (e.g., tax records for 7 years)
• Resolve disputes and enforce our agreements
Specific Retention Periods:
• Project files and communications: 3 years after project completion
• Payment records: 7 years (UK tax requirement)
• Marketing email lists: Until you unsubscribe
• Website analytics: 26 months (Google Analytics default)
---
7. YOUR RIGHTS (GDPR & UK DATA PROTECTION)
You have the right to:
• Access: Request a copy of the personal data we hold about you
• Rectification: Request correction of inaccurate or incomplete data
• Erasure: Request deletion of your personal data (subject to legal retention requirements)
• Restriction: Request we limit how we use your data
• Portability: Request your data in a portable format
• Object: Object to our processing of your data for marketing purposes
• Withdraw Consent: Unsubscribe from marketing emails at any time
To exercise any of these rights, contact us at: [your email]
We will respond to your request within 30 days.
---
8. COOKIES
Our website uses cookies to:
• Remember your preferences
• Understand how you use our website
• Improve website performance
Types of Cookies We Use:
Essential Cookies:
Required for the website to function (e.g., security, shopping cart if applicable)
Analytics Cookies:
Google Analytics (tracks anonymous usage data to help us improve the website)
• You can opt out at: https://tools.google.com/dlpage/gaoptout
Performance Cookies:
Squarespace cookies for website functionality and performance
Managing Cookies:
You can control cookies through your browser settings. Note that blocking cookies may affect website functionality.
---
9. THIRD-PARTY LINKS
Our website may contain links to third-party websites (e.g., social media, portfolio examples). We are not responsible for the privacy practices of these websites. Please review their privacy policies before providing any personal information.
---
10. DATA SECURITY
We take reasonable measures to protect your personal information from unauthorized access, alteration, disclosure, or destruction.
Security Measures:
• SSL encryption (HTTPS) on our website
• Secure payment processing through Stripe/Squarespace Commerce
• Password-protected project files
• Regular security updates
However, no method of transmission over the internet is 100% secure. We cannot guarantee absolute security of your data.
---
11. INTERNATIONAL DATA TRANSFERS
Your information may be transferred to and stored on servers located outside the UK/EU (e.g., Squarespace servers in the USA).
We ensure appropriate safeguards are in place when transferring data internationally, in compliance with GDPR and UK data protection laws.
---
12. CHILDREN'S PRIVACY
Our services are not directed to individuals under 18. We do not knowingly collect personal information from children. If you believe we have collected information from a child, please contact us immediately and we will delete it.
---
13. CHANGES TO THIS PRIVACY POLICY
We may update this Privacy Policy from time to time. Changes will be posted on this page with an updated "Last updated" date.
We encourage you to review this policy periodically. Continued use of our website or services after changes constitutes acceptance of the updated policy.
---
14. CONTACT US
If you have questions about this Privacy Policy or how we handle your data, contact us at:
Email: katie@mandcocreative.co.uk
Website: www.mandcocreative.co.uk
---
15. DATA PROTECTION AUTHORITY
If you believe we have not handled your personal data properly, you have the right to lodge a complaint with the UK Information Commissioner's Office (ICO):
Website: https://ico.org.uk
Phone: 0303 123 1113
---
By using our website and services, you acknowledge that you have read and understood this Privacy Policy.