Privacy Policy
We respect your privacy and protect your personal data with care, transparency, and in line with UK data protection standards.
1. Introduction
This Privacy Policy explains how Hart Dev (“we”, “us”, “our”) collects, uses, and protects your personal data when you interact with our website and services. By continuing to use our website, you acknowledge that you have read this Privacy Policy.
We build high-performance digital products for businesses across the UK and beyond. Privacy, security, and transparency are fundamental to how we operate—both in the websites we create and in how we handle data ourselves.
For the purposes of UK GDPR, we act as the Data Controller for personal data collected through this website.
If you have any questions about this policy or how your data is handled, you can contact us at any time.
2. Information We Collect
We only collect personal data where it is necessary, relevant, and proportionate to the service you are engaging with.
This may include:
2.1 Information you provide directly
- Name and contact details (such as email address and phone number)
- Business information (company name, role, project details)
- Information submitted through contact forms or email correspondence
- Any additional information you choose to provide when enquiring about our services
2.2 Information collected automatically
- IP address and general location data (derived, not precise)
- Browser type, device information, and operating system
- Pages visited, time spent on site, and interaction behaviour
- Cookies and similar tracking technologies (see Section 07)
We do not collect more data than is required to operate effectively and improve user experience.
3. How We Use Your Information
Your data is used strictly for legitimate business purposes, including:
- Responding to enquiries and providing quotes or proposals
- Delivering our web development and digital services
- Managing ongoing client relationships
- Improving website performance, usability, and content
- Maintaining security and preventing misuse or fraud
- Meeting legal and regulatory obligations
We do not sell, rent, or trade your personal data.
4. Lawful Basis for Processing
Under UK GDPR, we rely on the following lawful bases:
- Contract – where processing is necessary to deliver services you have requested
- Legitimate Interests – for business operations such as improving services, responding to enquiries, and ensuring website security
- Legal Obligation – where we are required to comply with applicable laws
- Consent – where you have explicitly agreed (for example, certain cookie usage or marketing communications)
5. Data Sharing and Third Parties
We only share personal data when it is necessary to operate our services effectively.
This may include trusted third-party providers such as:
- Hosting and infrastructure providers
- Email and communication platforms
- Analytics tools (used in anonymised or aggregated form where possible)
- Professional advisors (e.g. legal or accounting services)
All third parties are required to handle your data securely and in accordance with applicable data protection laws.
6. Data Retention
We retain personal data only for as long as it is needed for the purpose it was collected.
Retention periods are determined by:
- The nature of the enquiry or service
- Legal, tax, or accounting requirements
- Ongoing client relationships or project work
When data is no longer required, it is securely deleted or anonymised.
8. Data Security
We take data security seriously and implement appropriate technical and organisational measures to protect personal data.
This includes:
- Secure hosting environments
- Encrypted data transmission (HTTPS)
- Access controls and restricted permissions
- Regular monitoring and maintenance of systems
While no system can be guaranteed 100% secure, we take all reasonable steps to safeguard your information.
9. Your Rights Under UK GDPR
You have rights over your personal data, including:
- The right to access your data
- The right to correct inaccurate or incomplete data
- The right to request deletion of your data
- The right to restrict or object to processing
- The right to data portability (where applicable)
- The right to withdraw consent at any time (where consent is used)
To exercise any of these rights, you can contact us at any time.
10. International Data Transfers
Where data is transferred outside the UK, we ensure appropriate safeguards are in place to protect your information in line with UK GDPR requirements.
11. Third-Party Links
Our website may contain links to third-party websites. We are not responsible for the privacy practices, content, or policies of external sites. We encourage you to review their privacy policies before providing any personal data.
12. Revisions
We may revise this document from time to time to reflect changes in technology, legal requirements, or how we operate our website.
Any revisions will be posted on this page with a “Last Updated” date.
13. Updates
Last Updated: 17th April 2026