PRIVACY POLICY (GDPR COMPLIANT)
Privacy Policy
Last updated: 11/11/25
BrandFix (“we”, “us”, “our”) is committed to protecting your privacy. This Privacy Policy explains how we collect, use, store and protect your personal information when you access our website, purchase a service or interact with us.
If you have any questions, you may contact us at:
​
1. Information We Collect
We collect the following types of data:
A. Information you provide
-
Name
-
Email address
-
Business name (optional)
-
Diagnostic form information
-
Content or assets you submit as part of a project
B. Payment information
Payments are processed securely via third-party providers such as Wix Payments or Stripe.
We do not store or have access to your full card details.
C. Automatically collected data
Through Wix analytics and similar tools, we collect:
-
IP address
-
Device information
-
Browser type
-
Site usage and interaction data
This helps improve website performance and user experience.
2. How We Use Your Data
We use your information to:
-
Process and deliver purchased services
-
Communicate with you about your order or project
-
Provide Diagnostic, Blueprint and Implementation services
-
Improve our website and offering
-
Meet legal and regulatory requirements
We never sell your data.
3. Legal Basis for Processing (UK GDPR)
We process your data under the following lawful bases:
-
Contract: to deliver the service you purchased
-
Legitimate interest: service improvement and fraud prevention
-
Consent: when you opt into marketing
-
Legal obligation: compliance with HMRC and regulatory requirements
4. Sharing Your Data
We only share data with trusted service providers:
-
Wix (website hosting + analytics)
-
Wix Payments / Stripe (payment processing)
-
Google Workspace (email communication)
These providers operate under GDPR-compliant agreements.
We do not sell or share data with any third parties for advertising.
5. Data Storage & Security
Your data is stored securely within the Wix cloud environment.
We take appropriate technical and organisational measures to safeguard all personal information.
6. Data Retention
We keep client project files and related information for up to 3 years after delivery, unless you request deletion sooner.
Financial transaction records must be retained for 6 years to comply with UK law.
7. Your Rights
Under UK GDPR, you have the right to:
-
Access your data
-
Correct inaccurate data
-
Request deletion
-
Object to processing
-
Request a copy of your data
-
Withdraw marketing consent
To exercise any of these rights, email:
8. Children’s Privacy
We do not knowingly collect data from anyone under 16.
9. Updates to This Policy
This policy may be updated periodically. The date at the top reflects the latest revision.
10. Contact
For any privacy concerns, contact:
