Privacy Policy​

At Tickbox, we are committed to protecting your privacy. This Privacy Policy explains how we collect, use, and share your personal information.

Effective Date: 07.07.2025
Company: Tickbox Solutions Limited

At Tickbox, we are committed to protecting your privacy and ensuring your personal data is handled lawfully and transparently. This Privacy Policy explains how we collect, use, and protect your information when you use our website or services.

1. Who we are

Tickbox Solutions Limited is a UK limited company, providing internal audit, business assurance, and advisory services. For data protection purposes, we act as the Data Controller when processing your personal data.

Contact details:
Tickbox Solutions Limited
Suite A, 82 James Carter Road, Mildenhall, IP28 7DE
Email: audit@tickboxsolutions.co.uk
Phone: 07989 865452

We are not required to appoint a Data Protection Officer, but if you have questions about this notice or how your data is handled, please contact us at the above details.

2. What information we collect

We may collect and process the following personal data:

  • Information you provide directly: name, email address, organisation, phone number, enquiry details (including through our website contact form).
  • Business correspondence: if you engage us for services, we may collect further information necessary to deliver audits, assurance, or consultancy.
  • Technical and usage data: IP address, browser type, device information, and how you use our website. This may be collected through cookies and analytics tools (see Section 9).

We do not knowingly collect personal data relating to children under the age of 16.

3. How we use your information & lawful basis

We only process your personal data where we have a lawful basis under UK GDPR.

Purpose of processing

Lawful basis

Responding to enquiries and providing information (including through contact forms)

Legitimate interests (to respond to potential clients)

Delivering and managing contracts for our services

Performance of a contract

Meeting legal, regulatory, or professional obligations

Legal obligation

Improving our website, communications, and services (including analytics)

Consent (for non-essential cookies)

Maintaining business records and managing relationships

Legitimate interests

Sending updates, newsletters, or marketing (where applicable)

Consent

If you have given consent, you may withdraw it at any time by contacting us at audit@tickboxsolutions.co.uk

4. Sharing your information

We do not sell your personal data. We may share it with:

  • Website and hosting provider (10Web) – we use 10Web to host our website and provide the contact form. When you submit an enquiry, your details are processed through 10Web’s systems. 10Web acts as our Data Processor and processes your data only on our instructions, subject to strict contractual and security obligations.
  • Trusted service providers (e.g. IT, email, and security providers)
  • Professional advisers, insurers, and auditors where necessary
  • Analytics providers such as Google Analytics, which help us understand how people use our website (only with your consent).
  • Regulators, government bodies, or law enforcement when required by law

Where third parties process your data on our behalf, they must handle it securely and lawfully.

5. International transfers

We currently store and process your data within the UK. Some of our service providers (including 10Web and Google) may transfer data outside the UK (e.g. to the EEA or the United States). Where this occurs, we ensure that appropriate safeguards are in place, such as adequacy regulations or UK International Data Transfer Agreements (IDTAs), to protect your data.

6. Data retention

We keep personal data only for as long as necessary for the purposes collected, including legal, accounting, or reporting requirements.

  • Enquiry data: retained for up to 12 months
  • Client records: retained in line with professional and legal obligations (usually 6–7 years)

After this, data will be securely deleted or anonymised.

7. Your rights

Under UK GDPR, you have the right to:

  • Access your personal data
  • Request correction or deletion
  • Restrict or object to processing
  • Request data portability
  • Withdraw consent (where applicable)
  • Lodge a complaint with the Information Commissioner’s Office (ICO): https://ico.org.uk

8. Security

We use appropriate technical and organisational measures to protect your personal data from loss, misuse, unauthorised access, disclosure, or alteration. Our providers, including 10Web, are required to maintain similar safeguards.

9. Cookies and tracking technologies

Our website uses cookies and similar technologies. Cookies are small text files placed on your device that help us run the site, remember your preferences, and understand how visitors use our pages.

We use the following types of cookies:

  • Strictly necessary cookies – required for the website to work (do not require consent).
  • Analytics cookies – help us understand visitor behaviour and improve our site. These require your consent and will only run if you accept them.
  • Functional cookies – remember your preferences and settings (require consent).
  • Advertising cookies – may be used to deliver relevant advertising (not currently in use on our site, but would require consent).

Your choices

  • On your first visit, you will see a cookie banner that allows you to accept, reject, or customise your cookie preferences.
  • Analytics and other non-essential cookies will only be set if you provide consent.
  • You can change your settings at any time using the cookie banner or your browser settings.
  • Rejecting non-essential cookies will not affect your ability to use our website.

10. Current Use of Cookies

At present, our website only uses one necessary cookie:

Cookie Name

Provider

Purpose

Expiry

Type

cookieyes-consent

CookieYes

Stores your cookie preferences (consent choices)

1 year

Necessary

We do not currently use analytics, advertising, or marketing cookies. If we introduce additional cookies in the future (for example, Google Analytics), this Privacy Policy and our cookie banner will be updated to reflect the changes.

11. Automated decision-making

We do not use your personal data for automated decision-making or profiling.

12. Updates to this policy

We may update this Privacy Policy from time to time. The updated version will always be posted on this page with the new “Effective Date.” For significant changes, we may notify you by email or a notice on our website.