Privacy Policy

Privacy policy for our dealership CRM website and platform

This privacy policy explains how the CRM website and platform collect, use, store, and protect personal data for UK and EU users. It is designed to reflect core UK GDPR and EU GDPR transparency expectations, including lawful use, security, retention, and user rights.

Who we are

We operate a dealership CRM platform used by vehicle dealers to manage stock, leads, communication, invoicing, social publishing, and related operational workflows.

For the public website, onboarding forms, and platform access, we act as a controller for the personal data we collect directly from users who contact us about the CRM.

What information we collect

We may collect business and contact information such as dealership name, contact name, work email, phone number, website address, package choice, and any message submitted through our onboarding form.

When dealers use the CRM, additional operational data may be processed inside the service, including account details, stock records, customer communication data, and other dealership workflow information that users add to the platform.

How we use personal data

We use personal data to respond to onboarding requests, provide CRM access, administer accounts, support dealership operations, improve platform security, and communicate about requested services.

Where required, we rely on appropriate legal bases such as contract, legitimate interests, legal obligations, and consent where a user has specifically agreed to be contacted.

Data sharing and processors

We may use service providers that help us host, secure, maintain, and operate the CRM. These providers process data on our behalf under appropriate contractual and security controls.

We do not sell personal data. We may disclose data where required by law, regulation, court order, or to protect the security, integrity, or legal rights of the platform.

International transfers and retention

Where data is transferred outside the UK or EEA, we aim to use appropriate safeguards such as contractual protections or other lawful transfer mechanisms.

We retain personal data only for as long as needed for the purposes described in this policy, including service delivery, compliance, dispute handling, and reasonable backup or audit periods.

Your rights

Subject to applicable law, users may have rights to access, correct, delete, restrict, object to certain processing, or request portability of personal data.

Users in the UK can complain to the Information Commissioner's Office, and users in the EU can contact their local data protection authority if they believe their rights have been affected.

Security and contact

We use technical and organisational measures intended to protect personal data, including access controls, authentication, operational monitoring, and secure platform design practices.

If you need to ask about this privacy policy, your data, or a data rights request, please contact the business operating this CRM through the contact details provided in the service or onboarding communication.