Last updated 1 August 2024
This privacy notice sets out how we, Equati Technologies Limited (“Equati”) use, protect and share your personal information when you:
-
Visit our website at https://equati.ai, use the equati.ai mobile app or any website or app of ours that links to this privacy notice;
-
Use, and register to use, the Equati platform;
-
Use and register to access our services;
-
Sign up to receive updates and stay informed about our platform and services; and
-
Engage and/or communicate with us in any other ways, including communicating with us about your feedback, sales, marketing, or events.
It also sets out how we use, disclose, transfer and otherwise process your personal information.
1. WHO WE ARE
Where we act as a Data Controller in relation to the information collected from you (for example, where you interact with us directly via our website or where we provide our services directly to you), we are ultimately responsible under Data Protection laws for ensuring that your personal information is protected.
Where our services are provided to an organisation, and you are provided with access to use the services as an end user, we act as a Data Processor. This means that we process the personal data provided to us when you use the services or you interact with us, on behalf of (and on the instructions of) that organisation. In this situation the organisation is the Data Controller ultimately responsible for this processing and should be contacted directly if you have any queries relating to their use of your information and/or your use of our services.
Legal entity name: Equati Technologies Limited
Email address: compliance@equati.ai
Postal address: Regina House, 124 Finchley Rd, London NW3 5JS
2. WHAT INFORMATION DO WE COLLECT?
We may collect, use, store and transfer different kinds of personal information about you such as:
-
Identity and Contact Information which includes your first name, last name, any previous names, username or similar identifier, company name, marital status, title, date of birth and gender, your business or your home address, email addresses and telephone numbers and your social media handles.
-
Financial and Transaction Information including your bank account and payment card details, details about payments to and from you.
-
Technical and Usage Information including IP address, browser and device characteristics, operating system, language preferences, referring URLs, device name, country, location, browser type and settings, information about your activity in the Services (such as the date/time stamps associated with your usage, pages and files viewed, searches, and other actions you take such as which features you use), device event information (such as system activity, error reports (sometimes called ‘crash dumps’), and hardware settings), time zone setting, browser plug-in types and versions, operating system and platform, device ID, information about how and when you use our services, and other technical information.
-
Profile Information including your username and password, your interests, values, priorities, family structure, funding stage, investment preferences, feedback and survey responses.
-
Marketing and Communications Information including your preferences in receiving marketing from us and our third parties and your communication preferences.
We may also anonymise and aggregate information (so that it does not directly (or indirectly reveal your identity) which we may then use to calculate the percentage of users accessing a specific website feature in order to analyse general trends in how users are interacting with our website to help improve and develop the website and the products and services that we offer.
3. HOW DO WE PROCESS YOUR INFORMATION?
How your information is collected:
-
When you interact with us: you may share your personal information with us when you provide information using an online form or when you correspond with us by email, post, telephone, app or any other means.
-
Automated Technologies and Cookies: as you interact with our website, we will automatically collect Technical and Usage Data about your equipment, browsing actions and patterns. We collect this personal information by using cookies and other similar technologies. Please see our cookie policy https://equati.ai/cookies/. for further details.
4. WHAT LEGAL BASES DO WE RELY ON TO PROCESS YOUR INFORMATION?
The law requires us to have a legal basis for everything that we do with your personal information falling under one of the following categories:
-
Performance of a contract with you: Where we need to perform a contract or we are about to enter into or have entered into with you, for example where you have purchased our goods and/or services.
-
Legitimate interests: We may use your personal information where it is necessary to conduct our business and pursue our legitimate interests, for example to prevent fraud and/or enable us to give you the best and most secure customer experience. We make sure we consider and balance any potential impact on you and your rights (both positive and negative) before we process your personal information for our legitimate interests. We do not use your personal information for activities where our interests are overridden by the impact on you (unless we have your consent or are otherwise required or permitted to by law).
-
Legal obligation: We may use your personal information where it is necessary for compliance with a legal obligation that we are subject to.
-
Consent: We rely on consent only where we have obtained your active agreement to use your personal information for a specified purpose, for example if you “opt-in” to receive marketing emails from us.
-
Vital Interests. We may process your information where we believe it is necessary to protect your vital interests or the vital interests of a third party, such as situations involving potential threats to the safety of any person.
We use your personal information in a number of different ways and for different reasons – the tables below set out what we do and why, relating to the groups of personal information defined in the ‘What types of information do we collect from you’ section:
Financial and Transactional Information
Identity and Contact Information
What do we do?
Identify you when you visit our website, or you contact us for any reason and administer any accounts you set up (family entity or business opportunity profile).
What is the Legal Basis?
Why do we do it?
So that we know who we are talking to, and to enable us to set up your account
Legitimate interests to review and respond to any correspondence or queries you send to us, and to send information regarding our platform and/or any services that you have bought or requested.
Performance of a contract with you
To process any payment related to your subscription to our Platform or services.
So we can provide you with access to the Platform and our services.
Performance of a contract with you
Legitimate interests to process and administer your access to the Platform and our services.
To send you service updates, confirmations and updates to this Privacy Notice and/or our terms and conditions.
So we can keep you informed of any changes to our services and to let you know about any issues with your subscription purchase.
Performance of a contract with you.
Legitimate interests to send service information regarding our Platform and/or services that you have bought or requested.
Legal obligation.
To send you information about our products and services, including the business opportunities for you to consider as part of receiving the services.
So we can let you know about services that we offer that you might be interested in.
Consent.
Legitimate interests (where you have purchased access to the Platform and/or services from us already, and the marketing relates to connected services.)
To send you surveys.
So we can collect further data from you related to the provision of the services and access to the Platform.
Consent.
Legitimate interests (where you have purchased access to the Platform and/or services from us already, and the marketing relates to connected services.)
What do we do?
What is the Legal Basis?
Why do we do it?
Take payments for subscription to the Platform and our services.
To facilitate payment for subscription to the Platform and our services and to issue any refunds where necessary.
Performance of a contract with you.
Legitimate interests to manage and administer your payments for subscription to the Platform and our services.
To keep a record of our transactions with you.
For accounting purposes.
Legal obligation.
Technical and Useage Information
What do we do?
Identify you when you visit our website.
Monitor visitors to our websites and analyse their use of the website and perform tests on our IT systems.
What is the Legal Basis?
Why do we do it?
To provide you with the best possible user experience and to keep the website available.
Legitimate interests to provide and maintain our website through utilising cookies that are strictly necessary and to measure the use website to inform and improve it.
To protect our website and our IT systems from fraud or cyberattacks and to improve our websites and our services and our IT security
Legitimate interests to provide and maintain our website through utilising cookies that are strictly necessary and to measure the use website to inform and improve it.
Legal obligation.
Marketing and Communications Information
What do we do?
What is the Legal Basis?
Why do we do it?
We keep a record of your communication preferences (your “opt ins” and “opt outs”)
So we can make sure that you only receive the communications from us that you would like to receive and so we can update our records if you change your mind.
Legitimate interests to send you communications related to similar services to which you have previously purchased (e.g. subscription to the Platform) or entered into negotiations to purchase, where permitted by privacy laws.
Legal obligation.
All Your Personal Information
What do we do?
We may transfer your personal data in part or whole in connection with any merger, sale, transfer of our assets, investment, acquisition, bankruptcy, or similar event or corporate transaction.
What is the Legal Basis?
Why do we do it?
So we can ensure the continued service and function and to ensure we can protect and grow our business.
Legitimate interests to ensure we can protect and grow our business.
We perform financial accounting functions including tax reporting.
So we can comply with applicable laws and accounting standards that we adhere to.
Legal obligation.
We process the entirety of your personal information.
So we can protect our rights and those of data subjects
Legal obligation.
Legitimate interests to act in, and protect, the interests of our business
In limited circumstances we may process any of your personal information we hold to the extent necessary to defend, establish and exercise legal claims or to comply with legal or regulatory obligations.
Where we need to collect personal data due to a legal or regulatory obligation, or for performance of a contract, and you do not provide that data when requested, we may not be able to perform the contract we have or are trying to enter into with you (for example, to provide you with our products/services). We will notify you of this at the time.
5. WHEN AND WITH WHOM DO WE SHARE YOUR PERSONAL INFORMATION?
We may share your personal information with third parties who provide services to us, for example, our IT, communications, CRM, email and marketing automation and hosting providers. We require all third parties to respect the security of your personal information and to treat it in accordance with the law. We do not allow our third-party service providers to use your personal information for their own purposes and only permit them to process your personal information for specified purposes and in accordance with our instructions.
The categories of data recipients we may disclose your personal information to are as follows:
-
Service Providers and Processors. We engage third party service providers, from time to time, including:
-
IT & website service providers
-
Professional advisors such as tax or legal advisors (for example, as necessary for the establishment, exercise or defence of legal claims or to protect the rights or safety of the website or us
-
Consultants, insurance companies/claim managers and accountants
-
Agents, suppliers or sub-contractors and other associated organisations where they are engaged by us to help deliver a service that we have instructed them on.
-
-
Third parties in case of a legal requirement. We also disclose your personal information if disclosure is required by law or in the context of an investigation, regulatory requirement, judicial proceeding, court order or legal process (including to law enforcement or competent authorities like the police/tax authorities, such as HMRC in the UK).
-
Third parties in case of a corporate transaction. In addition, information about our customers, including personal information, may be disclosed as part of any merger, sale, transfer of our assets, investment, acquisition, bankruptcy, or similar event, including while engaging with our actual or potential investors.
We may provide anonymous information to analytics and search engine providers to help us improve and optimise our services. We will only share this information in a form that does not directly identify you.
6. DO WE USE COOKIES AND OTHER TRACKING TECHNOLOGIES?
We may use cookies and similar tracking technologies (like web beacons and pixels) to access or store information. Specific information about how we use such technologies and how you can refuse certain cookies is set out in our Cookie Notice: https://equati.ai/cookies/
7. WHAT HAPPENS IF WE SHARE YOUR INFORMATION WITH ORGANISATIONS OUTSIDE OF THE UK?
Whenever we transfer your personal information out of the UK or the EEA, we ensure a similar degree of protection is afforded to it by ensuring that the necessary safeguards are in place, for example:
-
We will only transfer your personal information to countries that have been deemed by regulators in the UK or the EU to provide an adequate level of protection for personal information; or
-
We may use specific standard contractual terms approved for use in the UK and EU which give the transferred personal information the same protection as it has in the UK and EU.
For more information about these safeguards, please contact us at compliance@equati.ai
8. HOW LONG DO WE KEEP YOUR INFORMATION?
We will only keep your personal information for as long as it is necessary for the purposes set out in this privacy notice, unless a longer retention period is required or permitted by law (such as tax, accounting, or other legal requirements).
When we have no ongoing legitimate business need to process your personal information, we will either delete or anonymise such information, or, if this is not possible (for example, because your personal information has been stored in backup archives), then we will securely store your personal information and isolate it from any further processing until deletion is possible.
9. HOW DO WE KEEP YOUR INFORMATION SAFE?
We have implemented appropriate and reasonable technical and organisational security measures designed to protect the security of any personal information we process. However, despite our safeguards and efforts to secure your information, no electronic transmission over the Internet or information storage technology can be guaranteed to be 100% secure, so we cannot promise or guarantee that hackers, cybercriminals, or other unauthorised third parties will not be able to defeat our security and improperly collect, access, steal, or modify your information. Although we will do our best to protect your personal information, transmission of personal information to and from our Services is at your own risk. You should only access the Services within a secure environment.
10. DO WE COLLECT INFORMATION FROM MINORS?
We do not knowingly solicit data from or market to children under 18 years of age. If we learn that personal information from users less than 18 years of age has been collected, we will deactivate the account and take reasonable measures to promptly delete such data from our records. If you become aware of any data we may have collected from children under age 18, please contact us at compliance@equati.ai
11. WHAT ARE YOUR PRIVACY RIGHTS?
You have a number of rights under data protection laws in relation to your personal information.
You have the right to:
-
Request access to your personal information (commonly known as a "subject access request"). This enables you to receive a copy of the personal information we hold about you and to check that we are lawfully processing it.
-
Request correction of the personal information that we hold about you. This enables you to have any incomplete or inaccurate data we hold about you corrected, though we may need to verify the accuracy of the new data you provide to us.
-
Request erasure of your personal information in certain circumstances. This enables you to ask us to delete or remove personal information where there is no good reason for us continuing to process it. You also have the right to ask us to delete or remove your personal information where you have successfully exercised your right to object to processing (see below), where we may have processed your information unlawfully or where we are required to erase your personal information to comply with local law. Note, however, that we may not always be able to comply with your request of erasure for specific legal reasons which will be notified to you, if applicable, at the time of your request.
-
Object to processing of your personal information where we are relying on a legitimate interest (or those of a third party) as the legal basis for that particular use of your data (including carrying out profiling based on our legitimate interests). In some cases, we may demonstrate that we have compelling legitimate grounds to process your information which override your right to object.
You also have the absolute right to object any time to the processing of your personal information for direct marketing purposes.
-
Request the transfer of your personal information to you or to a third party. We will provide to you, or a third party you have chosen, your personal information in a structured, commonly used, machine-readable format. Note that this right only applies to automated information which you initially provided consent for us to use or where we used the information to perform a contract with you.
-
Withdraw consent at any time where we are relying on consent to process your personal information. However, this will not affect the lawfulness of any processing carried out before you withdraw your consent. If you withdraw your consent, we may not be able to provide certain products or services to you. We will advise you if this is the case at the time you withdraw your consent.
-
Request restriction of processing of your personal information. This enables you to ask us to suspend the processing of your personal information in one of the following scenarios:
-
If you want us to establish the data's accuracy;
-
Where our use of the data is unlawful, but you do not want us to erase it;
-
Where you need us to hold the data even if we no longer require it as you need it to establish, exercise or defend legal claims; or
-
You have objected to our use of your data, but we need to verify whether we have overriding legitimate grounds to use it.
If you wish to exercise any of these rights, please contact us at compliance@equati.ai
No fee usually required
You will not have to pay a fee to access your personal information (or to exercise any of the other rights). However, we may charge a reasonable fee if your request is clearly unfounded, repetitive or excessive. Alternatively, we could refuse to comply with your request in these circumstances.
What we may need from you
We may need to request specific information from you to help us confirm your identity and ensure your right to access your personal information (or to exercise any of your other rights). This is a security measure to ensure that personal information is not disclosed to any person who has no right to receive it. We may also contact you to ask you for further information in relation to your request to speed up our response.
Time limit to respond
We try to respond to all legitimate requests within one month. Occasionally it could take us longer than a month if your request is particularly complex or you have made a number of requests. In this case, we will notify you and keep you updated.
11. HOW DO I MANAGE MY MARKETING PREFERENCES?
When you fill in an online form on our website, or during the registration process when you set up your account, you will be asked to indicate your preferences for receiving direct marketing communications from us. This will be via the ticking of a box which will be clearly marked as confirming your consent.
If you change your mind you can opt-out at any time by using the “unsubscribe” link at the bottom of any marketing communication that we send to you. You can also contact us at compliance@equati.ai.
We will always get your express consent before we share your personal information with any third party for their own direct marketing purposes.
Please note that if you opt out of receiving marketing communications, you will still receive service-related communications that are essential for administrative or customer service purposes for example relating to order confirmations, updates to our Terms and Conditions, checking that your contact details are correct.
12. DO WE MAKE UPDATES TO THIS NOTICE?
We may update this privacy notice from time to time. The updated version will be indicated by an updated ‘Revised’ date and the updated version will be effective as soon as it is accessible. If we make material changes to this privacy notice, we may notify you either by prominently posting a notice of such changes or by directly sending you a notification. We encourage you to review this privacy notice frequently to be informed of how we are protecting your information.
13. HOW CAN YOU CONTACT US ABOUT THIS NOTICE OR MAKE A COMPLAINT?
If you have questions or comments about this notice, you may contact our Data Protection Officer (DPO) by email at compliance@equati.ai
You have the right to make a complaint at any time to the Information Commissioner’s Office (ICO), the UK regulator for data protection issues (www.ico.org.uk). We would, however, appreciate the chance to deal with your concerns before you approach the ICO so please contact us in the first instance.