Privacy Policy
Last updated: 7 February 2025
1. Who We Are
Install It Right ("we", "us", "our") operates the Install It Right mobile application and website (installitright.co.uk). We are a UK-based company committed to protecting your privacy and personal data in accordance with the UK General Data Protection Regulation (UK GDPR) and the Data Protection Act 2018.
Data Controller: Install It Right
Contact Email: privacy@installitright.co.uk
Website: installitright.co.uk
2. What Data We Collect
We collect and process the following categories of personal data:
Account Information
- Full name, email address, phone number
- Postcode and service area
- Profile photo (optional)
- User role (homeowner or tradesperson)
Tradesperson Information
- Trade categories and qualifications
- Business name and service radius
- Stripe Connect account details (for payments)
- Credit balance and purchase history
Job and Transaction Data
- Job postings: descriptions, photos, location, pricing
- Proposals: quotes, cover letters, status
- Messages between homeowners and tradespeople
- Job completion reports with photos
- Payment amounts and transaction records
Technical and Usage Data
- Device type, operating system, app version
- IP address and approximate location
- App usage patterns and feature interactions
- Push notification preferences
Location Data
- GPS coordinates (only when you actively share your location during a job, with your explicit permission)
- Postcode for job matching purposes
3. How We Use Your Data
| Purpose | Legal Basis (UK GDPR) |
|---|---|
| Account creation and management | Contract performance (Art. 6(1)(b)) |
| Matching homeowners with tradespeople | Contract performance (Art. 6(1)(b)) |
| Processing payments via Stripe | Contract performance (Art. 6(1)(b)) |
| Sending transactional emails (job updates, receipts) | Contract performance (Art. 6(1)(b)) |
| Live location sharing during jobs | Consent (Art. 6(1)(a)) |
| In-app messaging | Contract performance (Art. 6(1)(b)) |
| Improving our app and services | Legitimate interest (Art. 6(1)(f)) |
| Preventing fraud and ensuring safety | Legitimate interest (Art. 6(1)(f)) |
| Complying with legal obligations | Legal obligation (Art. 6(1)(c)) |
4. Who We Share Your Data With
We only share your data with the following third parties, and only as necessary to provide our services:
| Third Party | Purpose | Data Shared |
|---|---|---|
| Stripe (payments) | Payment processing and Stripe Connect accounts | Name, email, bank details (via Stripe), payment amounts |
| RevenueCat (in-app purchases) | Credit pack purchases | Anonymous user ID, purchase history |
| Resend (emails) | Transactional emails | Email address, name, job details |
| Other users | When a proposal is accepted, limited contact details are shared | Name, trade, profile information |
We do not sell your personal data to any third party. We do not share your data with advertisers.
5. Data Retention
We retain your personal data for as long as necessary to provide our services and comply with legal obligations:
- Account data: Retained while your account is active, and for up to 2 years after account deletion
- Job and transaction data: Retained for 7 years for tax and legal compliance
- Messages: Retained for 1 year after job completion
- Location data: Automatically deleted 30 minutes after sharing stops; never stored permanently
- Payment records: Retained for 7 years as required by HMRC
6. Your Rights Under UK GDPR
You have the following rights regarding your personal data:
- Right of Access — Request a copy of all personal data we hold about you
- Right to Rectification — Request correction of inaccurate or incomplete data
- Right to Erasure — Request deletion of your personal data ("right to be forgotten")
- Right to Restrict Processing — Request we limit how we use your data
- Right to Data Portability — Receive your data in a machine-readable format
- Right to Object — Object to processing based on legitimate interest
- Right to Withdraw Consent — Withdraw consent at any time (e.g., location sharing)
To exercise any of these rights, contact us at privacy@installitright.co.uk. We will respond within 30 days.
7. Cookies and Tracking
Our website uses the following types of cookies:
- Strictly Necessary Cookies: Required for the website to function (e.g., session management). These cannot be disabled.
- Functional Cookies: Remember your preferences (e.g., cookie consent choice). Only set with your consent.
- Analytics Cookies: Help us understand how visitors use our website. Only set with your consent.
Our mobile app does not use cookies. It uses local storage (AsyncStorage) to save your preferences and session data on your device.
You can manage your cookie preferences at any time using the cookie settings banner on our website, or by adjusting your browser settings.
8. Data Security
We implement appropriate technical and organisational measures to protect your personal data, including:
- Encryption of data in transit (TLS/SSL)
- Secure payment processing via Stripe (PCI DSS compliant)
- Access controls and authentication
- Regular security reviews
- Secure hosting infrastructure
9. International Data Transfers
Some of our service providers (such as Stripe and RevenueCat) may process data outside the UK. Where this occurs, we ensure appropriate safeguards are in place, such as Standard Contractual Clauses (SCCs) approved by the UK Information Commissioner's Office (ICO), or the service provider is certified under an approved framework.
10. Children's Privacy
Install It Right is not intended for individuals under the age of 18. We do not knowingly collect personal data from children. If you believe a child has provided us with personal data, please contact us and we will delete it promptly.
11. Changes to This Policy
We may update this Privacy Policy from time to time. We will notify you of significant changes via email or an in-app notification. The "Last updated" date at the top of this page indicates when this policy was last revised.
12. Complaints
If you are unhappy with how we handle your personal data, you have the right to lodge a complaint with the UK Information Commissioner's Office (ICO):
13. Contact Us
For any privacy-related questions or to exercise your data rights, contact us at:
Email: privacy@installitright.co.uk
Website: installitright.co.uk