1. Introduction
QuoteSpark ("we", "our", "us") is committed to protecting your privacy. This Privacy Policy explains how we collect, use, store, and protect your personal data when you use our quoting platform service.
We are committed to compliance with the UK General Data Protection Regulation (UK GDPR) and the Data Protection Act 2018.
2. Data We Collect
We collect and process the following types of personal data:
2.1 Account Information
- Email address
- Password (encrypted)
- Business name, address, phone number
- VAT registration number (if provided)
2.2 Quote and Client Data
- Client names, email addresses, and phone numbers
- Quote details including materials, labour, and pricing
- Quote status and history
2.3 Payment Information
- Payment information is processed securely by Stripe
- We store your Stripe customer ID for subscription management
- We do not store credit card details on our servers
2.4 Technical Data
- IP address
- Browser type and version
- Device information
- Usage data and analytics
3. How We Use Your Data
We use your personal data for the following purposes:
- To provide and maintain the QuoteSpark service
- To create and manage your account
- To process your subscription payments
- To generate and store your quotes
- To communicate with you about service updates and support
- To improve our service and develop new features
- To comply with legal obligations
4. Legal Basis for Processing
We process your personal data under the following legal bases:
- Contract Performance: Processing necessary to provide the service you've subscribed to
- Legitimate Interests: To improve our service and prevent fraud
- Legal Obligation: To comply with tax, accounting, and legal requirements
- Consent: Where you have given explicit consent for specific processing activities
5. Data Storage and Security
Your data is stored securely using industry-standard encryption and security practices:
- Data is stored in secure, encrypted databases
- We use Supabase for database hosting with enterprise-grade security
- All data transmission is encrypted using TLS/SSL
- Access to data is restricted to authorized personnel only
- Regular security audits and updates are performed
6. Third-Party Services
We use the following third-party services that may process your data:
- Stripe: For payment processing and subscription management
- Supabase: For secure database hosting and authentication
These services have their own privacy policies and are compliant with GDPR and UK data protection laws.
7. Data Retention
We retain your personal data for as long as necessary to provide our services and comply with legal obligations:
- Account data: Retained while your account is active and for 30 days after deletion
- Quote data: Retained for the duration of your subscription and for 7 years after cancellation for accounting purposes
- Payment records: Retained for 7 years as required by UK tax law
8. Your Rights
Under UK GDPR, you have the following rights:
- Right of Access: Request a copy of your personal data
- Right to Rectification: Request correction of inaccurate data
- Right to Erasure: Request deletion of your data (subject to legal requirements)
- Right to Restriction: Request limitation of processing
- Right to Data Portability: Request transfer of your data
- Right to Object: Object to certain types of processing
- Right to Withdraw Consent: Withdraw consent for processing based on consent
To exercise any of these rights, please contact us at support@quotespark.co.uk
9. Data Transfers
Your data is primarily stored within the European Economic Area (EEA). If data is transferred outside the EEA, we ensure appropriate safeguards are in place in accordance with UK GDPR requirements.
10. Children's Privacy
Our service is not intended for individuals under the age of 18. We do not knowingly collect personal data from children.
11. Changes to This Policy
We may update this Privacy Policy from time to time. We will notify you of any significant changes by email or through the service. Your continued use of QuoteSpark after changes constitutes acceptance of the updated policy.
12. Contact Us
If you have any questions about this Privacy Policy or wish to exercise your data protection rights, please contact us:
Email: support@quotespark.co.uk
13. Complaints
If you believe we have not handled your personal data properly, you have the right to lodge a complaint with the Information Commissioner's Office (ICO):
Website: ico.org.uk
Helpline: 0303 123 1113