Legal
Privacy Policy
Last updated: 22 May 2026
Signalyn Ltd ("Signalyn", "we", "us", or "our") is committed to protecting your personal data. This Privacy Policy explains how we collect, use, store, and share information when you use our platform, website, and related services (collectively, the "Services").
1. Who We Are
Signalyn Ltd is a company registered in England and Wales. Our registered office is at 20–22 Wenlock Road, London, N1 7GU. We are the data controller for personal data processed under this policy.
2. Data We Collect
We may collect and process the following categories of personal data:
- Account data: name, email address, job title, and employer details provided during onboarding.
- Usage data: pages visited, features used, session duration, and interaction logs within the platform.
- Communication data: messages sent to our support team or via contact forms.
- Technical data: IP address, browser type, device identifiers, and cookies (see our Cookie Policy).
- CRM and sales data: data imported from or synchronised with third-party CRM systems (e.g. HubSpot) as part of the service configuration. This data is processed on your behalf as a data processor.
3. How We Use Your Data
We use personal data to:
- Provide, operate, and improve the Services;
- Authenticate users and manage access;
- Send service-related communications (e.g. security alerts, product updates);
- Respond to support requests;
- Comply with legal obligations;
- Detect and prevent fraud or misuse.
We do not sell your personal data to third parties.
4. Legal Basis for Processing
We process personal data on the following legal bases under UK GDPR:
- Contract: processing necessary to perform our agreement with you or your organisation;
- Legitimate interests: improving the Services, security monitoring, and fraud prevention;
- Legal obligation: compliance with applicable law;
- Consent: where you have given explicit consent (e.g. marketing communications).
5. Data Sharing
We may share personal data with:
- Service providers: hosting, analytics, and infrastructure providers who process data on our behalf under data processing agreements;
- Your organisation: administrators within your company who manage your account;
- Legal authorities: where required by law, court order, or regulatory obligation.
6. Data Retention
We retain personal data for as long as necessary to provide the Services and comply with our legal obligations. Account data is deleted within 90 days of account termination unless a longer retention period is required by law.
7. International Transfers
Where we transfer personal data outside the UK or EEA, we ensure appropriate safeguards are in place, such as Standard Contractual Clauses approved by the UK ICO or equivalent mechanisms.
8. Your Rights
Under UK GDPR, you have the right to:
- Access the personal data we hold about you;
- Rectify inaccurate or incomplete data;
- Request erasure of your data (subject to legal obligations);
- Object to or restrict certain processing;
- Data portability;
- Withdraw consent at any time where processing is based on consent.
To exercise any of these rights, please contact us at security@signalyn.io. You also have the right to lodge a complaint with the Information Commissioner's Office (ICO) at ico.org.uk.
9. Security
We implement appropriate technical and organisational measures to protect personal data against unauthorised access, loss, or destruction. These include encryption in transit and at rest, access controls, and regular security reviews.
10. Cookies
We use cookies and similar technologies. For full details, please see our Cookie Policy.
11. Changes to This Policy
We may update this Privacy Policy from time to time. We will notify you of material changes by email or by posting a notice on our website. The date at the top of this page reflects the most recent revision.
12. Contact Us
If you have any questions about this Privacy Policy or how we handle your data, please contact us:
Signalyn Ltd
20–22 Wenlock Road
London, N1 7GU
United Kingdom
security@signalyn.io