Data Protection Statement for NE1 Compliance & Audit Ltd

Last updated: July 2026

NE1 Compliance & Audit Ltd is committed to protecting the privacy, security, and integrity of all personal data processed through our website and during the delivery of our consultancy services. We operate in full accordance with the UK General Data Protection Regulation (UK GDPR), the Data Protection Act 2018, and all relevant ICO guidance.

1. Who We Are

NE1 Compliance & Audit Ltd Registered in England & Wales Company No: [insert] Data Controller: NE1 Compliance & Audit Ltd Contact: info@ne1compliance.co.uk

2. What Personal Data We Collect

We only collect data that is necessary for legitimate business purposes, including:

  • Contact information (name, email address, phone number) submitted via website forms

  • Business details provided when requesting consultancy services

  • Technical data such as IP address, browser type, and basic analytics

  • Communication records when you contact us by email, phone, or WhatsApp Business

We do not collect sensitive personal data unless explicitly required and agreed for a specific engagement.

3. How We Use Your Data

Your data is used strictly for:

  • Responding to enquiries and providing requested services

  • Preparing proposals, capability statements, and audit documentation

  • Maintaining secure business records

  • Improving website functionality and user experience

  • Meeting legal or regulatory obligations

We do not sell, share, or transfer your data to third parties for marketing.

4. Legal Basis for Processing

We process personal data under the following lawful bases:

  • Legitimate interests – responding to enquiries, delivering consultancy services

  • Contractual necessity – preparing or fulfilling service agreements

  • Legal obligation – maintaining financial and compliance records

  • Consent – where you explicitly agree to optional communications

5. Data Storage & Security

We implement robust technical and organisational measures to protect your data, including:

  • Encrypted storage and secure cloud systems

  • Restricted access controls

  • Secure communication channels (including WhatsApp Business and encrypted email)

  • Regular review of data protection practices

Data is stored within the UK or EEA unless otherwise agreed.

6. Data Retention

We retain personal data only for as long as necessary:

  • Enquiry data: up to 12 months

  • Client records: up to 7 years for legal and financial compliance

  • Audit documentation: retained according to contractual requirements

You may request deletion where legally permissible.

7. Your Rights

Under UK GDPR, you have the right to:

  • Access your personal data

  • Request correction or deletion

  • Object to processing

  • Request data portability

  • Withdraw consent at any time

Requests can be made by emailing info@ne1compliance.co.uk.

8. Cookies & Analytics

Our website may use essential and performance cookies to improve functionality and understand visitor behaviour. You can manage cookie preferences through your browser settings.

9. Third‑Party Services

We may use trusted third‑party providers for:

  • Website hosting

  • Secure email and communication

  • Analytics tools

All providers are vetted for GDPR compliance.

10. Updates to This Statement

We may update this Data Protection Statement periodically. The latest version will always be available on our website.

11. Contact Us

For any data protection queries, please contact: Data Protection Lead NE1 Compliance & Audit Ltd Email: info@ne1compliance.co.uk