Privacy Policy
Effective Date: 10/02/2025
Last Updated: 10/02/2025
AR Experts Ltd ("we," "us," or "our"), registered at Centenary House, 1 Centenary Way, Salford, England, M50 1RF, trading as BIZALIGN ERP, operates a CRM platform that connects with mobile devices and other digital services. This Privacy Policy outlines how we collect, use, protect, and manage personal data in compliance with UK GDPR, the Data Protection Act 2018, and other relevant UK regulations.
1. Introduction
This Privacy Policy applies to all users of the BIZALIGN ERP platform, including website visitors, mobile app users, and customers who interact with our services. It explains how we handle personal data, the rights of users, and the measures we take to ensure data security and compliance with UK laws.
BIZALIGN ERP is a Customer Relationship Management (CRM) platform designed to help businesses manage their customer interactions, sales processes, and marketing activities. The platform integrates with mobile devices, third-party services, and other digital tools to provide a seamless experience for users.
2. Information We Collect
We collect various types of information to provide and improve our services. The data we collect can be categorized as follows:
2.1 Personal Information
- Name, email address, phone number (account registration and profile updates)
- Company details (name, address, industry sector)
- Title and role (to tailor the platform experience)
2.2 Financial Information
- Payment details (bank account details and billing addresses for processing payments)
- Invoicing data (transaction history, invoices, payment receipts)
2.3 Technical Data
- Device information (device type, operating system, unique identifiers)
- IP address (security and analytics)
- Browser type and version (compatibility and optimisation)
- Usage logs (pages visited, features used, time spent)
2.4 Location Data
- Geolocation data via app settings or user input to provide location-based services.
2.5 Sensitive Information
- Tax data (VAT numbers and other tax-related information)
- Identity verification documents (passport, driver’s licence) for KYC when legally required
3. How We Collect Information
3.1 Direct Input
- Registration forms (account creation)
- Profile updates (personal or company information)
- User interactions (forms, queries, surveys, uploads of photos/documents)
3.2 Automated Technologies
- Cookies (enhance experience, track usage)
- Log files (interaction data)
3.3 Third-Party Integrations
- Payment gateways (secure payment processing)
- APIs (email marketing tools, CRM integrations, other business applications)
4. Use of Information
4.1 Providing Services
- Account setup and management
- Platform functionality and optimisation
- Customer support
4.2 Compliance & Legal Obligations
- Regulatory compliance (UK GDPR and other laws)
4.3 Security
- Data integrity and breach prevention
- Fraud detection and prevention
4.4 Communication
- Product updates and feature announcements
- Newsletters and promotional information (where permitted)
- Critical notifications (security or policy changes)
We do not sell or trade personal data to third parties for marketing purposes.
5. Sharing and Disclosure of Information
5.1 Cloud Storage Providers
- Amazon Web Services (AWS) for secure cloud data storage
5.2 Database Management
- MongoDB for structured storage and efficient retrieval
5.3 Third-Party Analytics
- Firebase for analytics and push notifications
5.4 Legal Compliance
- Government authorities when required by law (court order or regulatory request)
6. Data Security
6.1 Encryption
- Data in transit encrypted via SSL/TLS
- Data at rest encrypted (AES-256); backups stored on local hard drive
6.2 Access Control
- Role-based access controls
- Multi-Factor Authentication (MFA)
6.3 Monitoring
- Regular audits and vulnerability assessments
- Incident response process for breaches
7. Data Retention
We retain personal data for 6 years as required by legal and regulatory obligations. Data is securely deleted afterward unless extended retention is legally necessary.
8. Your Rights
Under UK law, you have rights to access, correct, erase, port, and object to processing of your personal data (subject to legal limitations). To exercise these rights, contact admin@bizalign.co.uk.
9. Cookie Policy
We use cookies to improve user experience, track usage, and personalise content. You can manage preferences via browser settings or our consent banner.
10. Legal Basis for Processing
- Contractual necessity
- Legal obligation
- Legitimate interest (service improvement & security)
- Consent (e.g., marketing)
11. Data Breach Notification
In the event of a data breach, we will notify affected users and the UK Information Commissioner's Office (ICO) within 72 hours where legally required.
12. Changes to this Privacy Policy
We may update this policy periodically. Updated versions will be posted on our website; significant changes may be communicated by email and reflected both on the site and app store listings.
13. Children's Privacy
Our platform is not intended for users under 16. We do not knowingly collect personal data from children.
14. Third-Party Links
Our platform may include links to third-party websites. We are not responsible for their privacy practices; users should review those policies separately.
15. Contact Information
For any privacy-related questions or concerns, contact us:
- Email: admin@bizalign.co.uk
- Address: Centenary House, 1 Centenary Way, Salford, England, M50 1RF
- ICO Registration Number: ZB827459
This policy ensures compliance with UK GDPR and other data protection regulations, safeguarding user rights and business obligations effectively.