Effective Date: 1 April 2025
Aster Advisory (“we”, “us”, or “our”) is committed to protecting and respecting your privacy. This policy sets out how we collect, use, store, and protect your personal data, in line with the UK General Data Protection Regulation (UK GDPR) and the Data Protection Act 2018.
1. Who We Are
Aster Advisory is a consultancy specialising in behavioural economics, strategy, and digital experience.
If you have any questions about this policy or your personal data, please contact us at:
Email: info@asteradvisory.co.uk
2. What Information We Collect
We may collect and process the following personal data:
- Contact details: name, job title, email address, phone number, company name, and postal address.
- Professional information: your role, business area, and interests related to our services.
- Communications: emails, meeting notes, or other correspondence between us.
- Usage data: information about how you use our website or digital materials.
- Payment data: where necessary for invoicing or contractual purposes.
We do not collect sensitive personal data unless required for a specific project, in which case we will obtain explicit consent.
3. How We Use Your Data
We use your personal data to:
- Provide our consulting services and deliver agreed projects.
- Manage our business relationship, including communications and support.
- Send you relevant updates, insights, or marketing (if you’ve opted in).
- Comply with legal, regulatory, or contractual obligations.
4. Legal Basis for Processing
We process personal data on the following legal bases:
- Contractual necessity: to perform our services under a contract.
- Legitimate interests: to operate our business and communicate professionally.
- Consent: for sending marketing or newsletters (you can withdraw consent at any time).
- Legal obligation: to comply with applicable laws.
5. How We Share Your Data
We do not sell your data. We may share it with:
- Trusted service providers (e.g., cloud platforms, email services) under strict confidentiality terms.
- Legal or regulatory authorities, if required by law.
- Subcontractors or associates involved in delivering your project, subject to equivalent data protection obligations.
6. Data Storage and Retention
Your personal data is stored securely on UK or EU-based servers or approved cloud platforms.
We retain your data only as long as necessary to fulfil the purposes outlined or meet legal requirements (typically up to 7 years for contractual records).
7. Your Rights
Under UK GDPR, you have the right to:
- Access the personal data we hold about you.
- Request correction of inaccurate or incomplete data.
- Request deletion of your data where appropriate (“the right to be forgotten”).
- Object to processing or request restriction.
- Withdraw consent (if processing is based on consent).
- Lodge a complaint with the Information Commissioner’s Office (ICO): www.ico.org.uk.
8. Data Security
We take data protection seriously. Measures include access controls, encryption, and secure systems to protect your information from unauthorised access, alteration, or loss.
9. Cookies and Website Analytics
Our website may use cookies or analytics tools to improve user experience. You can manage cookie preferences via your browser settings. For details, refer to our Cookie Policy [insert link if applicable].
10. Changes to This Policy
We may update this policy periodically. The latest version will always be available on our website or upon request.
Contact Us
For any queries regarding this privacy policy or your data, please contact:
Email: info@asteradvisory.co.uk