Privacy Policy

Neish Ltd - Privacy Policy

Effective Date: 6th February 2026

1. Introduction

Neish Ltd (“we”, “our”, or “us”) respects your privacy and is committed to protecting your personal data. This Privacy Policy explains how we collect, use, store and share your personal information when you use our services or visit our website.

For the purposes of the UK General Data Protection Regulation (UK GDPR) and the Data Protection Act 2018, we act as a data controller for personal information we collect and use when providing services to individual clients and for our own business purposes. When processing personal data on behalf of corporate clients, we act as a data processor and process such data in accordance with each client’s instructions.

We may update this Privacy Policy from time to time. If you are a registered user, we will notify you of any material changes by email. You can always find the latest version on our website.

You can contact us about this policy or your data rights at office@neish.co

2. The Data We Collect

We collect and process personal information that you provide directly to us when registering for or using our services. This includes:

  • Full name

  • Email address

  • Country

  • Billing and payment details (such as credit card, PayPal, or Google Pay information)

We also collect certain technical information automatically through cookies and analytics tools (see Section 5, Analytics and Cookies).

We do not intentionally collect special category data (such as health, ethnicity, or political opinions), nor do we knowingly collect data from children under 16.

When using our services, you may voluntarily share information that could reveal sensitive personal data. Where this occurs, we will only process such information with your explicit consent and will delete it once it is no longer required.

3. How We Use Your Data

Under the UK GDPR, we must have a lawful basis for processing your personal data. We use your information for the following purposes:


Purpose

To create and manage your Neish Ltd account

Lawful Basis

Contract (necessary to perform our services)


Purpose

To process payments and fulfil orders

Lawful Basis

Contract and Legal obligation


Purpose

To provide customer support and respond to enquiries

Lawful Basis

Legitimate interests


Purpose

To send service updates, product notices, and security alerts

Lawful Basis

Legitimate interests and Legal obligation


Purpose

To send marketing and promotional communications

Lawful Basis

Consent (you can withdraw consent at any time)


Purpose

To maintain and improve our services

Lawful Basis

Legitimate interests


Purpose

To comply with legal or regulatory obligations

Lawful Basis

Legal obligation


B2B Contacts: When processing personal data of individuals at client organisations we rely on legitimate interests to manage our business relationship, unless you opt out. Processing is limited to professional contact details and relevant communications.

You are not required to provide personal data, but if you choose not to, some services or features may not be available.

4. Data Retention

We will only retain your personal data for as long as necessary to fulfil the purposes for which it was collected, including legal, accounting, or reporting requirements:
Account data: up to 30 days after deletion request for recovery or reinstatement purposes.

Payment and financial records: 6 years to comply with UK tax and accounting obligations.

Analytics and marketing data: 2 years from last engagement.

After these periods, personal data will be permanently deleted or anonymised.

5. Analytics and Cookies

We use cookies and similar technologies to understand how visitors use our website and to improve performance and security. These may collect data such as your:

  • IP address and approximate location

  • Browser type and version

  • Device type and operating system

  • Pages visited, timestamps, and referring URLs

  • Internet service provider details

You can manage or disable cookies in your browser settings. Some features of our platform may not function properly without them. For more details, please refer to our Cookie Policy.

6. Data Transfers

Your personal data may be stored or processed in the United States or other countries outside the United Kingdom. Whenever we transfer your data internationally, we ensure appropriate safeguards are in place, such as the use of UK-approved International Data Transfer Agreements (IDTAs) or Standard Contractual Clauses (SCCs), and that a risk assessment confirms your data receives equivalent protection to that in the UK.

7. Data Security

We use SSL encryption and other technical and organisational measures designed to protect your personal data from loss, misuse, or unauthorised access.

While we take appropriate measures to protect your data, no online service can guarantee complete security, so we encourage you to use a strong password and keep your login information confidential.

In the event of a data breach that may affect your rights or freedoms, we will notify you without undue delay. We will also notify the UK Information Commissioner’s Office (ICO) within 72 hours.

8. Your Rights Under UK GDPR

You have the following legal rights regarding your personal data:

  • Right of access – to request a copy of the data we hold about you.

  • Right to rectification – to correct inaccurate or incomplete data.

  • Right to erasure – to request deletion of your data (“right to be forgotten”).

  • Right to restriction – to limit how we use your data in certain situations.

  • Right to data portability – to transfer your data to another provider.

  • Right to object – to object to processing carried out on legitimate interest or direct marketing grounds.

  • Right to withdraw consent – where processing is based on your consent.

To exercise these rights, please contact us at office@neish.co


You also have the right to lodge a complaint with the Information Commissioner’s Office (ICO) at 

www.ico.org.uk

9. Marketing Communications

If you have opted in, we may send you occasional updates about new products, features, or services. You can withdraw consent or unsubscribe at any time by following the link in our emails or contacting us directly. We record when and how consent is obtained and ensure that any withdrawal of consent is processed promptly, so you no longer receive marketing communications.

Please note that transactional or service-related emails (such as account notifications, password resets and legal updates) are not considered marketing communications and will continue to be sent as necessary. 

10. Business Transfers

If Neish Ltd undergoes a merger, acquisition, or business restructuring, your data may be transferred to the new owner as part of that transaction. We will ensure that such parties continue to process your data in accordance with this Privacy Policy.

11. Contact Us

If you have any questions, concerns, or requests regarding this Privacy Policy or your personal information, please get in touch:


Neish Ltd
Email:
office@neish.co