Privacy Policy
Nord Sloane Ltd. Website Privacy Policy
1. Introduction and Controller Identity This Privacy Policy governs the collection, processing, and protection of personal data by Nord Sloane Ltd. (acting as the Data Controller) across our website, event registrations, and communications. We are committed to protecting your personal data and fully complying with the UK General Data Protection Regulation (UK GDPR) and the Data Protection Act 2018.
We have appointed a Data Privacy Manager (DPM) responsible for overseeing questions regarding this policy and managing data subject requests. You may contact the DPM directly via email at info@nordsloane.com.
Our website and services are intended for a professional, business-to-business audience and are not intended for children. You maintain the statutory right to lodge a complaint at any time with the Information Commissioner's Office (ICO), the UK's supervisory authority for data protection (www.ico.org.uk), though we welcome the opportunity to resolve your concerns in the first instance.
This website may include links to third-party websites, plug-ins, and applications. Clicking on those links or enabling those connections may allow third parties to collect or share data about you. We do not control these third-party websites and are not responsible for their privacy statements. When you leave our website, we encourage you to read the privacy policy of every website you visit.
2. The Data We Collect We limit the collection of personal data to what is strictly necessary for our commercial operations. This includes:
-
Identity Data: First name, last name, professional title, and organizational affiliation.
-
Contact Data: Business email address, telephone/mobile number, billing address, and professional social media profiles (e.g., LinkedIn).
-
Financial and Transaction Data: Payment details and records of services, tickets, or products purchased from us.
-
Technical and Profile Data: Internet protocol (IP) address, browser type and version, time zone setting, operating system, and data regarding your interaction with our website and communications.
-
Registration and Application Data: Information submitted during event registration, forum attendance, or client onboarding.
Nord Sloane Ltd. strictly does not sell your personal data to any third parties under any circumstances. We do not collect any special categories of personal data (such as health or biometric data) or information about criminal convictions.
Where we need to collect personal data by law, or under the terms of a contract we have with you, and you fail to provide that data when requested, we may not be able to perform the contract we have or are trying to enter into with you (for example, to provide you with event tickets or services). In this case, we may have to cancel a product or service you have with us, but we will notify you if this is the case at the time.
3. Methods of Data Collection We collect data through the following primary channels:
-
Direct Interactions: When you complete our online forms, register for events, submit applications, or correspond with us via email, telephone, or LinkedIn.
-
Platform Integrations: We use Wix.com as our primary digital infrastructure to securely host our website, collect event registrations, and process client applications.
-
Automated Technologies: As you interact with our website, we automatically collect technical data regarding your browsing actions and patterns via cookies and server logs.
-
Third Parties and Public Sources: We may receive professional data from analytics providers (e.g., Google), networking platforms (e.g., LinkedIn), and publicly available corporate registries (e.g., Companies House).
4. Lawful Basis and Purposes for Processing We process your personal data under the following lawful bases established by the UK GDPR:
-
Performance of a Contract: To register you as a client or attendee, process transactions, and deliver our events and services.
-
Legitimate Interests: To conduct B2B outreach (including via LinkedIn), analyze website traffic, ensure network security, prevent fraud, and inform our business strategy.
-
Legal Obligation: To comply with necessary accounting, tax, and regulatory reporting requirements.
-
Consent: Where required by law, we rely on your explicit opt-in consent to send specific direct marketing communications.
You maintain the right to opt-out of marketing communications at any time by contacting our DPM or utilizing the unsubscribe mechanisms provided in our correspondence.
5. Data Disclosures and Third-Party Processors We require all third-party partners to strictly respect the security of your personal data and treat it in accordance with the law. We do not allow our third-party service providers to use your personal data for their own independent purposes. We may share your data with:
-
Service Providers: Infrastructure providers such as Wix.com (acting as our Data Processor for website and registration hosting), payment gateways, and IT administration services.
-
Professional Advisors: Lawyers, bankers, auditors, and insurers based in the UK.
-
Regulatory Authorities: HM Revenue & Customs and other authorities requiring mandatory reporting.
6. International Data Transfers Our digital infrastructure utilizes global service providers (such as Wix.com), which means your personal data may be processed outside of the United Kingdom. Whenever we transfer your personal data out of the UK, we ensure it is protected by implementing robust legal safeguards, strictly relying on UK Government-approved standard contractual clauses, the UK International Data Transfer Agreement (IDTA), or an applicable adequacy decision.
7. Data Security and Retention We have implemented comprehensive organizational and technical security measures to prevent your personal data from being accidentally lost, unauthorizedly accessed, altered, or disclosed. Access to your data is strictly limited to authorized personnel and contractors subject to stringent confidentiality obligations.
We retain personal data only for as long as reasonably necessary to fulfill the purposes for which it was collected. Under UK tax and accounting laws, we are required to retain basic customer information (including contact, identity, and transaction data) for a period of six years after they cease being customers.
8. Your Statutory Rights Under data protection law, you possess explicit rights regarding your personal data. You may request:
-
Access to a copy of the personal data we hold about you.
-
Correction of incomplete or inaccurate data.
-
Erasure of your personal data where there is no lawful reason for us to continue processing it.
-
Restriction of processing, or Objection to our processing of your data based on legitimate interests.
-
Transfer of your automated personal data to yourself or a third party in a standard machine-readable format.
-
Withdrawal of Consent at any time where we rely on consent for processing.
To exercise any of these rights, please contact info@nordsloane.com. We will respond to all legitimate requests within one calendar month.
9. Cookie Policy Our website utilizes cookies and similar tracking technologies to facilitate site functionality, maintain security, and conduct analytics.
-
Strictly Necessary Cookies: We deploy essential cookies for core security, session management, and rendering processes. These are required for the website to function and cannot be switched off in our systems.
-
Analytics and Performance Cookies: We utilize third-party cookies (such as those from Wix and Google Analytics) to distinguish unique visitors, track user behavior, and generate aggregate site performance reports. You may block or manage these non-essential cookies via your browser's privacy settings.