Your Privacy Matters
Thank you for checking out our privacy policy. At Smart Admin 4U, we take your privacy seriously. We’re committed to protecting your privacy and handling your information in a responsible way while you use our website and services.
We encourage you to read this policy alongside any other privacy notices we might provide, so you're fully in the loop about how and why we use your information.
Last updated: 6 August 2026
Who’s in charge of your data?
The controller of your personal data is Smart Admin 4U, a sole trader business operated by Amanda Perkin, and we can be contacted at:
Email address: enquiries@smartadmin4u.com
Business address:
First Floor Swan Buildings
20 Swan Street
Manchester
M4 5JW
ICO Registration Number: ZC136185
Not happy with something?
We’re committed to treating your personal data with respect, transparency, and care. If you ever have questions or concerns about how your data is used, we want to hear from you, and we’ll do our best to resolve things quickly and fairly. Under the Data (Use and Access) Act 2025, you have the right to raise a complaint about how your personal data is handled. Here's how:
Email us at enquiries@smartadmin4u.com with the subject line “Data Protection Complaint” and a brief description of your concern. You don’t need to use legal language - just tell us what’s worrying you.
We’ll acknowledge your complaint without undue delay and no later than 30 days after receiving it. We aim to respond sooner wherever possible. We’ll investigate the matter appropriately, keep you informed where necessary and communicate the outcome without undue delay.
If you’re not satisfied with our response, you can escalate your concern to the Information Commissioner’s Office (ICO) at www.ico.org.uk.
What type of data do we collect about you?
‘Personal data' is information that identifies you. If we've removed your identity (by making the data anonymous), it won’t be classed as personal data. We might collect, use, store, and share various types of personal data about you as follows:
Identity details such as first and last name, username or similar identifier, title and business name.
Contact details such as your billing address, business address, email address and telephone number.
Technical information such as your internet protocol (IP address), browser type, version, browser plug-in types and versions, time zone setting and location, operating system and platform and other technology on the devices you use to access our website.
Financial information such as payment details, invoicing information and records of transactions between us.
Information about transactions such as details of payments to and from you, and details of services you have purchased from us.
Client data such as information relating to your clients, customers, contacts or business records that you provide or make available to us so we can deliver the agreed services. Where you provide us with access to your business systems or client information, we will only access and process that information for the agreed purposes and in accordance with your instructions.
Where we process personal data contained within a client’s business systems, inboxes, forms, spreadsheets, files or documents solely to provide an agreed service, the client will normally act as the data controller and Smart Admin 4U will act as the data processor. We will process that information only in accordance with the client’s documented instructions, the agreed service and any applicable data-processing terms.
Account details such as usernames, account identifiers, services purchased from us, and your interests, preferences, feedback and survey responses.
Usage information about how you use our website, products and services.
Marketing information such as your preferences on receiving marketing from both us and third-parties, along with your communication preferences.
Aggregated Data
We may also use the above information, without any of your identifiable details, to produce aggregated data. An example includes statistical or demographic data that can help us understand our client needs better. For example, we may aggregate website usage data to understand which pages, services or content are most frequently viewed so that we can improve our website and services. If we combine this data with your personal data at any point so you do become identifiable, we treat this as personal data and use this in accordance with this policy.
Special Category Data
We do not normally request special category data, such as health information, racial or ethnic origin, religious beliefs, political opinions, trade union membership, sexual orientation, genetic data or biometric data. However, information processed through a client’s inbox, forms, files, documents or business systems may occasionally contain special category data. Where this occurs, we will only process it where necessary to provide the agreed service, in accordance with the client’s instructions and with appropriate safeguards in place.
How do we collect your personal data?
We use different methods to collect data from and about you. The majority of the time, our information is collected directly when you contact us in the following ways:
When you fill in any new client onboarding forms.
When you complete any forms before or during a consultation.
Verbally during discussions.
Correspondence with us via post, phone, email or otherwise.
When you enquire about or purchase our services.
When you request marketing communications to be sent to you.
When you give us feedback or contact us.
Another method we may use to collect data includes the use of automated technologies or interactions, like website cookies or other similar technologies. This includes information about your equipment, browsing actions and patterns and information about your browsing activity if you visit another website that uses the same cookies as us. This means we receive information about how you use these third-party websites.
This data collection helps us improve your experience and understand how our website is used. For more information, please refer to our Cookie Policy:
We may also receive personal data from third parties such as:
Referral partners, networking contacts and previous clients who introduce you to our services.
Social media platforms, including Facebook, Instagram and LinkedIn, where you have interacted with our content or contacted us through those platforms.
Technical and analytics providers, including Google Analytics, which help us understand how visitors use our website.
Search engines and publicly available online sources, including Google and Companies House, where information has been made publicly available.
Public registers and other publicly accessible sources where information is lawfully available.
Where do we get your personal information from?
We may obtain personal information:
Directly from you.
From publicly available sources.
From suppliers and service providers.
From third parties, including clients, prospective clients, referrers and other individuals or organisations connected to an enquiry, project or service request.
What are the purposes for which we use your personal data?
The purposes for which we will be using your data include:
To register you as a new client.
To respond to your enquiry about our services.
To set up and provide Enquiry Management services.
To set up and provide Follow-up Management services.
To set up and provide Customer Onboarding services.
To set up and provide Inbox Management services.
To set up and provide Document & File Management services.
To set up and provide Data & Spreadsheet Management services.
To provide other repetitive administrative services that have been specifically agreed with you.
To monitor, maintain and support the agreed processes provided through our ongoing monthly management service.
To manage and deliver the agreed services, including ongoing monthly support and one-off projects.
To process payments, fees, invoices and amounts owed to us.
To manage our relationship with you, communicate about your services and provide support.
To notify you about changes to our terms or this Privacy Policy, and to ask you to leave a review or complete a survey.
To send you relevant marketing information about our services where permitted.
To administer and protect our business and this website (including troubleshooting, data analysis, testing, system maintenance, support, reporting and hosting of data).
To deliver relevant website content and measure or understand the effectiveness of our marketing.
To use data analytics to improve our website, services, marketing, client relationships and user experience.
To make suggestions and recommendations about services that may be relevant to your business.
We rely on one or more of the following lawful conditions to process your data as outlined above:
Where we rely on consent as our lawful basis, you may withdraw that consent at any time by contacting us. Withdrawing consent will not affect the lawfulness of processing carried out before it was withdrawn. Marketing communications can also be stopped at any time by contacting us or using the unsubscribe option included in the communication.
We may process your personal data for more than one lawful reason at a time, depending on the specific purpose for which we are using your data. If you’d like more information on the specific legal ground we are relying on, on occasions where we rely on more than one legal ground, please feel free to contact us.
Do we use Cookies?
Cookies help our website work properly, remember your preferences and improve your experience. You can control cookie settings through your browser and any cookie controls available on our website.
Our website uses cookies to distinguish you from other users. Please refer to our Cookie Policy to learn more:
Do we use third-party links?
Our website might link to third-party websites, tools and apps. Clicking on these links may allow third parties to collect or share your data.
We do not control said websites and are not responsible for said websites’ privacy policies. When you leave our website, we encourage you to read the privacy policy of every website you visit.
Do we ever share your personal data?
We take your data's security seriously and only allow certain people to access it.
We may share your personal data with the parties set out below for the purposes as stated further above.
Service providers acting as processors who provide hosting, website, email, cloud storage, workflow, data-management and system-administration services.
Professional advisers, acting as processors or joint controllers, including lawyers, bankers, auditors and insurers who provide consultancy, banking, legal, insurance and accounting services.
HM Revenue & Customs, regulators and other authorities, acting as processors or joint controllers, based in the UK who require reporting of processing activities in certain circumstances.
Hostinger.
WordPress.
Elementor and Elementor Forms.
WP Consent.
Google Workspace, including Gmail, Google Drive, Google Forms, Google Docs, Google Sheets and Google Calendar.
Microsoft 365, including Outlook, OneDrive, Microsoft Forms, Word, Excel and Microsoft Calendar.
Google Analytics.
OpenAI, where used for approved drafting, summarisation or classification support.
Make.com, where used to connect systems and manage agreed administrative processes.
All of the above third parties have a requirement to respect the security of your personal data. We do not permit them to use your personal data for their own purposes – they are only permitted to process your data for specified purposes in line with our instructions.
How do we use technology and AI?
We use workflow technology and, where appropriate, artificial intelligence tools to support the efficient delivery of agreed services. These tools may assist with activities such as routing information, classifying messages, preparing summaries, identifying agreed data fields, creating draft wording and managing repetitive administrative processes.
Technology is used to support the service, not to remove appropriate human oversight. Routine, low-risk actions may be completed automatically where clear rules have been agreed. Missing information, unusual content, failed actions, sensitive matters or items that fall outside the agreed rules may be flagged for human review.
We take reasonable steps to minimise the personal data shared with third-party tools and only use information that is relevant to the agreed purpose. Where a third-party provider processes personal data on our behalf, it acts as a data processor and its privacy information is linked for reference.
| Tool Name | Provider | Purpose | Privacy Policy |
|---|---|---|---|
| ChatGPT | OpenAI | To assist with approved drafting, summarisation, classification and administrative support, subject to appropriate review and agreed safeguards. | https://openai.com/policies/privacy-policy |
| Make.com | Make | To connect agreed systems, move information between applications, trigger routine actions, monitor processes and support exception handling. | https://www.make.com/en/privacy-notice |
Any personal data processed through AI or workflow tools will be handled in accordance with applicable data protection law. We take reasonable steps to limit the information shared, protect confidentiality and use appropriate security settings and safeguards.
Limitations of AI: AI-assisted outputs can contain errors or omissions. We take reasonable steps to review AI-assisted work before it is delivered or used within an agreed process. Clients remain responsible for reviewing final work before relying on it for legal, financial or other important decisions.
Automated Processing and Decisions
Some agreed processes may automatically classify, route, log, file or flag information according to predefined rules. We do not use solely automated decision-making that produces legal effects, or similarly significant effects, for individuals unless this has been specifically identified, lawfully agreed and appropriately explained in advance.
Your Rights
Request Information: You have the right to request further details regarding our use of AI or workflow technology in your particular case.
Access and Amend Data: You may ask us to review how your personal data is processed through these tools and request corrections where appropriate.
Please contact us at enquiries@smartadmin4u.com if you would like to exercise any of the above rights.
Do we ever transfer your data internationally?
We may transfer your data outside of the United Kingdom/EEA, but only when we can be sure it is protected.
Many of our external third parties are based outside the United Kingdom/EEA and so their processing of your personal data will involve a transfer of data outside the United Kingdom.
Examples of providers that may involve international transfers include Google Workspace, Microsoft 365, OpenAI, Canva and Make.com.
Whenever we transfer your personal data out of the United Kingdom, we make sure it is protected by at least implementing one of the following safeguards:
We may transfer personal data to a country or organisation covered by UK adequacy regulations, where the UK Government has recognised that the relevant destination provides an adequate level of protection.
Where no adequacy regulation applies, we may use an appropriate transfer mechanism recognised under UK data protection law, such as the UK International Data Transfer Agreement, the UK Addendum to the EU Standard Contractual Clauses or another legally permitted safeguard. Where required, we will also assess the risks associated with the transfer and apply supplementary protections.
Please contact us if you want further information on the specific process used by us when transferring your personal data out of the United Kingdom.
How secure is your data with us?
We use appropriate technical and organisational measures to help protect your personal information. Access is limited to authorised individuals and trusted service providers who need the information for an agreed purpose and who are required to treat it confidentially.
In the rare circumstances that there is a personal data breach, we have procedures in place and will notify you, along with any applicable regulator, when we’re legally required to.
What is our process for retaining your data?
We only keep your data as long as necessary for the reasons we collected it.
By law we have to keep basic information about our customers (including contact information, identity details, financial information and data relating to your transactions with us) for six years after they cease being customers for tax purposes.
For information that does not fall under the definition of basic, to determine the appropriate retention time, we look at what kind of data it is, how sensitive it is, the risks if it's misused, why we need it, and if there are other ways to achieve the same goals. We also consider applicable legal, regulatory, tax, accounting and other requirements.
Examples of our retention periods include:
Enquiry records that do not become client work are normally retained for up to 12 months from our last meaningful contact.
Client contact details, project records, contracts and account information are normally retained for 6 years after the end of the client relationship.
Invoices, payment records and accounting records are retained in accordance with HMRC requirements.
Marketing information is retained until you unsubscribe, withdraw consent or after a reasonable period of inactivity.
Website analytics and technical records are retained only for as long as necessary for performance, security and compliance purposes.
Access credentials or temporary account access details supplied to us are retained only for as long as necessary to provide the service and are removed when no longer required.
What are your legal rights in relation to your data?
You have the following rights regarding your personal data:
Access
You have the right to ask us what personal data we hold about you and to receive a copy of that data. This is called a Subject Access Request (SAR).
We’ll respond within one calendar month, but if we need to verify your identity first, we may pause the clock while we do so. This helps protect your data and ensures we’re sharing it with the right person. If your request is complex or repetitive, we may apply proportionality rules under the Data (Use and Access) Act 2025, which allow us to limit the scope or extend the response time. We’ll always explain why and keep you informed.
To make a request, just email us at enquiries@smartadmin4u.com with the subject line “DSAR Request”. You don’t need to use legal language - just let us know what you’d like to see or understand.
If you’re unhappy with how we handle your request, you can raise a concern with the Information Commissioner’s Office (ICO).
Correction
If the personal data we have about you is incomplete or incorrect, you can ask us to correct it.
Erasure
You can ask us to delete your personal data. It's important to note, however, that there might be legal reasons that prevent us from fulfilling this request. If such reasons exist, we will inform you when you make your request.
Objection
In certain situations, you have the right to object to the processing of your personal data.
Restriction of Processing
You can request that we restrict the processing of your personal data under specific circumstances.
Data Portability
You have the right to request the transfer of your personal data directly to you or to a third party of your choice.
Withdrawal of Consent
At any point where we rely on your consent to process your personal data, you have the right to withdraw this consent. Withdrawal of consent will not affect the legality of the processing done before the consent was withdrawn. Should you withdraw your consent, we might be unable to provide you with certain products or services. We will inform you if that is the case when you withdraw your consent.
The ICO's contact details are:
Information Commissioner's Office
Wycliffe House
Water Lane
Wilmslow
Cheshire
SK9 5AF
Telephone: 0303 123 1113
Website: www.ico.org.uk
If you wish to exercise any of the rights set out above, please contact us.
We won’t charge any fees for you to request access to your personal data. However, a reasonable fee may be charged if your request is clearly unjustified, repetitive or excessive. We also reserve the right to not comply in this scenario. We try to respond to all legitimate requests within one month. Occasionally it could take us longer than a month if your request is particularly complex or you have made a number of requests. In this case, we will notify you and keep you updated.
Changes and Contact
We regularly review our privacy policy. Please keep us updated if your personal data changes. If you have any questions or need to exercise your rights, just get in touch.
If you have any questions about this Privacy Policy or how we handle your personal information, please get in touch. We'll always be happy to help.