top of page

Privacy Policy

Pinsight Golf Limited

 

Last Updated: January 2026

 

1. Introduction

 

Pinsight Golf Limited ("we", "our", "us") is committed to protecting your privacy and ensuring the security of your personal information. This Privacy Policy explains how we collect, use, store, and protect your personal data when you use our website (www.pinsightgolf.co.uk) or engage our services.

Data Controller: Pinsight Golf Limited

Company Number: [INSERT COMPANY NUMBER]

Registered Office: [INSERT REGISTERED ADDRESS]

Email: info@pinsightgolf.co.uk

ICO Registration Number: [INSERT ICO REGISTRATION NUMBER]

 

We are registered with the Information Commissioner's Office (ICO) as a data controller and comply with the UK General Data Protection Regulation (UK GDPR) and the Data Protection Act 2018.

2. Information We Collect

2.1 Information You Provide to Us

  • Contact Forms and Enquiries: When you contact us through our website or by phone, we collect your name, email address, phone number, golf club name and role, and the content of your message or enquiry.

  • Client Engagement: When you become a client, we collect full contact details including your name, address, email and phone number. We also collect your job title and role at the golf club, details about the golf club itself (such as name, address, structure and size), financial information required to deliver our services, bank details for payment processing, and identification documents for Anti-Money Laundering compliance where required.

  • Newsletter Subscriptions: If you subscribe to our newsletter, we collect your email address and optionally your name along with your subscription preferences.

2.2 Information We Collect Automatically

  • Website Usage Data: When you visit our website, we automatically collect certain information including your IP address, browser type and version, device information, pages visited and time spent on each page, the website that referred you to us, date and time of visits, and cookie data as detailed in our Cookie Policy.

  • Analytics: We use Google Analytics to understand how visitors use our website. This service collects anonymized data about your browsing behavior to help us improve the website experience.

3. Legal Basis for Processing

We process your personal data under the following legal bases:

  • Legitimate Interests (Article 6(1)(f) UK GDPR): We rely on legitimate interests when responding to enquiries and providing information about our services, marketing our services to golf clubs and industry professionals, improving our website and services, and preventing fraud and ensuring website security.

  • Contract Performance (Article 6(1)(b) UK GDPR): We process data based on contract performance when delivering services to clients, processing payments, and communicating about ongoing projects.

  • Legal Obligation (Article 6(1)(c) UK GDPR): We process data to comply with legal obligations including Anti-Money

  • Laundering compliance, tax and accounting obligations, professional body requirements from ICAEW, and responding to legal requests.

  • Consent (Article 6(1)(a) UK GDPR): We rely on your consent for marketing emails (which you can withdraw at any time), non-essential cookies, and processing special category data if applicable.

4. How We Use Your Information

  • Enquiries and Contact: We use your information to respond to your questions and requests, provide information about our services, and arrange consultations and meetings.

  • Service Delivery: We process your data to provide finance transformation, systems integration, and advisory services, communicate about projects and deliverables, create reports, analyses, and recommendations, and manage our client relationships.

  • Business Operations: We use your information for processing payments and maintaining financial records, complying with legal and regulatory obligations, managing contracts and agreements, and maintaining professional indemnity insurance.

  • Marketing (with consent): With your consent, we send newsletters and updates, share insights, articles, and resources, and invite you to webinars and events.

  • Website Improvement: We analyze website usage to improve user experience, identify and resolve technical issues, and understand which content is most valuable to our visitors.

5. Who We Share Your Information With

We may share your personal data with:

 

  • Service Providers (Data Processors): We share your data with service providers who help us operate our business. These include email service providers such as Mailchimp and Gmail, cloud storage providers like Google Drive and Dropbox, accounting software providers including Xero and QuickBooks, website hosting providers, payment processors, and analytics providers like Google Analytics. All processors are bound by Data Processing Agreements ensuring GDPR compliance.

  • Professional Advisors: We may share information with our accountants, solicitors, insurance providers, and professional indemnity insurers as necessary for professional services and insurance purposes.

  • Regulatory Bodies: We may be required to share information with regulatory bodies including ICAEW (Institute of

  • Chartered Accountants in England and Wales), the Information Commissioner's Office, HM Revenue & Customs, and the National Crime Agency for AML reporting purposes.

  • Legal Requirements: We may disclose your information if required by law, court order, or regulatory authority.

  • We will never sell your personal data to third parties, share your data for third-party marketing purposes, or transfer data outside the UK without appropriate safeguards.

6. International Data Transfers

 

We primarily store and process data within the United Kingdom. If we use service providers located outside the UK, we ensure adequate safeguards are in place under UK GDPR Article 46, implement Standard Contractual Clauses where required, and conduct Data Protection Impact Assessments for high-risk transfers.

Current international processors include Google (USA) which uses Standard Contractual Clauses, and [list any other international processors you use].

7. Data Retention

We retain your personal data only for as long as necessary to fulfill the purposes outlined in this policy or as required by law.

Retention Periods:

  • Data Type: Retention Period: Legal Basis

  • Enquiry data (non-clients): 2 years from last contact: Legitimate interest

  • Client contract data: 6 years from contract end: Legal obligation (tax law)

  • Financial records: 6 years from transaction date: Legal obligation (tax law)

  • Marketing consent recordsUntil consent withdrawn + 1 yearConsent documentation

  • Website analytics26 monthsLegitimate interest

  • AML records5 years from relationship endLegal obligation (AML regulations)

  • After retention periods expire, data is securely deleted or anonymized.

8. Your Rights

  • Under UK GDPR, you have the following rights:

  • Right to Access (Article 15): You can request a copy of the personal data we hold about you.

  • Right to Rectification (Article 16): You can request correction of inaccurate or incomplete data.

  • Right to Erasure (Article 17): You can request deletion of your data, subject to legal retention requirements.

  • Right to Restrict Processing (Article 18): You can request limitation on how we process your data.

  • Right to Data Portability (Article 20): You can receive your data in a structured, machine-readable format.

  • Right to Object (Article 21): You can object to processing based on legitimate interests or direct marketing.

  • Right to Withdraw Consent: You can withdraw consent for marketing or cookies at any time.

  • Right to Lodge a Complaint: You can complain to the Information Commissioner's Office at ico.org.uk.

  • How to Exercise Your Rights: To exercise any of these rights, please contact us by email at iain@pinsightgolf.co.uk, by phone at 07880 162862, or by post at [Registered Address]. We will respond to requests within one month.

9. Data Security

We implement appropriate technical and organizational measures to protect your personal data.

Technical Measures: We use encryption of data in transit using SSL/TLS and encryption of data at rest. We maintain secure password policies and implement two-factor authentication. Our systems receive regular security updates and patches, are protected by firewalls, and maintain secure backup systems.

Organizational Measures: We implement access controls on a need-to-know basis and provide staff training on data protection. All staff sign confidentiality agreements. We conduct regular security audits and maintain incident response procedures. We enforce clear desk and screen policies to protect physical data security.

In the Event of a Data Breach: We will notify you and the ICO within 72 hours if a breach poses a risk to your rights and freedoms.

10. Cookies and Tracking Technologies

Our website uses cookies to improve functionality and analyze usage. For detailed information, please see our Cookie Policy.

Essential Cookies: Required for website functionality (no consent needed) Analytics Cookies: Google Analytics (requires consent) Marketing Cookies: Not currently used

You can manage cookie preferences through our cookie banner or browser settings.

11. Third-Party Links

Our website may contain links to third-party websites (e.g., LinkedIn, industry associations). We are not responsible for the privacy practices of these sites. Please review their privacy policies separately.

12. Children's Privacy

Our services are not directed at children under 18. We do not knowingly collect personal data from minors. If you believe we have inadvertently collected such data, please contact us immediately.

13. Changes to This Policy

We may update this Privacy Policy periodically to reflect changes in our practices or legal requirements. The "Last Updated" date at the top indicates when changes were made.

Significant changes will be communicated via website notification banner, email to clients and newsletter subscribers, and an updated version posted on our website.

14. Contact Us

Data Protection Enquiries: Iain Chadwick (Data Controller)
Pinsight Golf Limited
Email: info@pinsightgolf.co.uk
Address: [Registered Address]

Complaints: If you are unhappy with how we handle your personal data, please contact us first. If you remain dissatisfied, you can lodge a complaint with:

Information Commissioner's Office (ICO)
Website: ico.org.uk
Phone: 0303 123 1113
Address: Information Commissioner's Office, Wycliffe House, Water Lane, Wilmslow, Cheshire, SK9 5AF

15. Professional Standards

As an ACA Chartered Accountant and ICAEW member, we also comply with the ICAEW Code of Ethics, ICAEW Practice Regulations, Anti-Money Laundering regulations, and professional indemnity insurance requirements. Our handling of client data is subject to professional confidentiality obligations and regulatory oversight by ICAEW.

Effective Date: [INSERT DATE]
Version: 1.0

Appendix: Data Processing Activities

  • For transparency, we maintain a Record of Processing Activities as required by UK GDPR Article 30:

  • Processing Activity 1: Website Enquiries - Purpose: Responding to service enquiries. Legal Basis: Legitimate interests. Data Categories: Contact details and enquiry content. Recipients: Email provider and CRM system. Retention: 2 years.

  • Processing Activity 2: Client Service Delivery - Purpose: Providing finance transformation services. Legal Basis: Contract performance. Data Categories: Contact details, financial data, and golf club data. Recipients: Accounting software, cloud storage, and email. Retention: 6 years (legal obligation).

  • Processing Activity 3: Marketing Communications - Purpose: Newsletter and updates. Legal Basis: Consent. Data Categories: Email address, name, and preferences. Recipients: Email marketing platform. Retention: Until consent withdrawn.

  • Processing Activity 4: Website Analytics - Purpose: Website improvement. Legal Basis: Legitimate interests. Data Categories: Usage data, anonymized. Recipients: Google Analytics. Retention: 26 months.

END OF PRIVACY POLICY

bottom of page