PRIVACY POLICY

 

Last updated: March 2026

 

---

 

1. INTRODUCTION

 

M&Co Creative ("we", "us", "our") operates the website www.mandcocreative.co.uk and provides web design, website audit, and SEO services.

 

This Privacy Policy explains how we collect, use, store, and protect your personal information when you use our website or services.

 

By using our website or services, you agree to the collection and use of information in accordance with this policy.

 

---

 

2. INFORMATION WE COLLECT

 

We collect the following types of information:

 

Information You Provide to Us:

• Name

• Email address

• Phone number (if provided)

• Business name and details

• Payment information (processed securely through Stripe/Squarespace Commerce)

• Any other information you provide when contacting us or booking services

 

Information Collected Automatically:

• IP address

• Browser type and version

• Device information

• Pages visited on our website

• Time and date of visits

• Referring website

• Location data (country/city level only)

 

Cookies:

Our website uses cookies to improve your experience. See Section 8 for more details.

 

---

 

3. HOW WE USE YOUR INFORMATION

 

We use your personal information to:

 

• Process and deliver the services you purchase (audits, redesigns, SEO)

• Communicate with you about your project

• Send invoices and payment confirmations

• Provide customer support

• Send service updates and project-related emails

• Improve our website and services

• Comply with legal obligations

 

Marketing Communications:

If you subscribe to our email list, we will send you:

• Website tips and insights

• Service updates

• Special offers (e.g., founder pricing)

 

You can unsubscribe from marketing emails at any time using the link at the bottom of each email.

 

---

 

4. LEGAL BASIS FOR PROCESSING (GDPR)

 

We process your personal data under the following legal bases:

 

Contract Performance: To deliver services you've purchased

Legitimate Interests: To improve our services and communicate about your project

Consent: For marketing emails (you can withdraw consent anytime)

Legal Obligation: To comply with tax and business regulations

 

---

 

5. HOW WE SHARE YOUR INFORMATION

 

We do not sell, trade, or rent your personal information to third parties.

 

We may share your information with:

 

Service Providers:

• Squarespace (website hosting and commerce platform)

• Stripe (payment processing)

• Email service provider (for newsletters and project communications)

• Google Analytics (for website analytics - anonymised data)

• Loom screen recording software for website audits

 

These providers only access information necessary to perform their services and are obligated to protect your data.

 

Legal Requirements:

We may disclose your information if required by law, court order, or government regulation.

 

---

 

6. DATA RETENTION

 

We retain your personal information for as long as necessary to:

• Fulfill the purposes outlined in this policy

• Comply with legal obligations (e.g., tax records for 7 years)

• Resolve disputes and enforce our agreements

 

Specific Retention Periods:

• Project files and communications: 3 years after project completion

• Payment records: 7 years (UK tax requirement)

• Marketing email lists: Until you unsubscribe

• Website analytics: 26 months (Google Analytics default)

 

---

 

7. YOUR RIGHTS (GDPR & UK DATA PROTECTION)

 

You have the right to:

 

Access: Request a copy of the personal data we hold about you

Rectification: Request correction of inaccurate or incomplete data

Erasure: Request deletion of your personal data (subject to legal retention requirements)

Restriction: Request we limit how we use your data

Portability: Request your data in a portable format

Object: Object to our processing of your data for marketing purposes

Withdraw Consent: Unsubscribe from marketing emails at any time

 

To exercise any of these rights, contact us at: [your email]

 

We will respond to your request within 30 days.

 

---

 

8. COOKIES

 

Our website uses cookies to:

• Remember your preferences

• Understand how you use our website

• Improve website performance

 

Types of Cookies We Use:

 

Essential Cookies:

Required for the website to function (e.g., security, shopping cart if applicable)

 

Analytics Cookies:

Google Analytics (tracks anonymous usage data to help us improve the website)

• You can opt out at: https://tools.google.com/dlpage/gaoptout

 

Performance Cookies:

Squarespace cookies for website functionality and performance

 

Managing Cookies:

You can control cookies through your browser settings. Note that blocking cookies may affect website functionality.

 

---

 

9. THIRD-PARTY LINKS

 

Our website may contain links to third-party websites (e.g., social media, portfolio examples). We are not responsible for the privacy practices of these websites. Please review their privacy policies before providing any personal information.

 

---

 

10. DATA SECURITY

 

We take reasonable measures to protect your personal information from unauthorized access, alteration, disclosure, or destruction.

 

Security Measures:

• SSL encryption (HTTPS) on our website

• Secure payment processing through Stripe/Squarespace Commerce

• Password-protected project files

• Regular security updates

 

However, no method of transmission over the internet is 100% secure. We cannot guarantee absolute security of your data.

 

---

 

11. INTERNATIONAL DATA TRANSFERS

 

Your information may be transferred to and stored on servers located outside the UK/EU (e.g., Squarespace servers in the USA).

 

We ensure appropriate safeguards are in place when transferring data internationally, in compliance with GDPR and UK data protection laws.

 

---

 

12. CHILDREN'S PRIVACY

 

Our services are not directed to individuals under 18. We do not knowingly collect personal information from children. If you believe we have collected information from a child, please contact us immediately and we will delete it.

 

---

 

13. CHANGES TO THIS PRIVACY POLICY

 

We may update this Privacy Policy from time to time. Changes will be posted on this page with an updated "Last updated" date.

 

We encourage you to review this policy periodically. Continued use of our website or services after changes constitutes acceptance of the updated policy.

 

---

 

14. CONTACT US

 

If you have questions about this Privacy Policy or how we handle your data, contact us at:

 

Email: katie@mandcocreative.co.uk

Website: www.mandcocreative.co.uk

 

---

 

15. DATA PROTECTION AUTHORITY

 

If you believe we have not handled your personal data properly, you have the right to lodge a complaint with the UK Information Commissioner's Office (ICO):

 

Website: https://ico.org.uk

Phone: 0303 123 1113

 

---

 

By using our website and services, you acknowledge that you have read and understood this Privacy Policy.