Legal

Privacy Policy

Last updated: 15 September 2026. This policy explains how Rateivate collects, uses, and protects personal data. We are committed to handling your information responsibly and in line with UK data protection law (UK GDPR and the Data Protection Act 2018).

01Who we are

Rateivate (“we”, “us”) builds websites and AI growth systems for local service businesses. We are the data controller for personal data we collect directly from clients and prospective clients.

02Data we collect

We may collect:

  • Contact details you give us (name, email, phone, business name).
  • Information you provide on a discovery call or booking form.
  • Communications and correspondence with us.
  • Technical data such as IP address and browser type when you visit our site.
  • On client websites we build: enquiry, booking, and contact details submitted by your visitors through forms, booking, and AI phone systems.

03How we use your data

We use personal data to:

  • Respond to enquiries and provide quotes and services.
  • Build, host, and maintain your website and connected systems.
  • Process bookings, enquiries, and follow-up automation on your behalf.
  • Send service updates and, with consent, marketing communications.
  • Meet legal, accounting, and tax obligations.

04Legal basis

We process data on the basis of your consent, the performance of a contract with you, our legitimate interests in running our business, and to comply with legal obligations.

05Data on client websites

Where we build forms, booking, or AI phone systems for your site, you are the data controller for the personal data your visitors submit, and we act as a processor on your instructions. You are responsible for having a clear privacy notice on your site and for handling subject-access and deletion requests from your visitors. We will support you in configuring these systems responsibly.

06Sharing & processors

We do not sell your data. We share it only with trusted processors needed to deliver services — for example hosting, calendar, SMS, email, CRM, and AI providers — each under appropriate data-processing agreements. We may disclose data where required by law.

07International transfers

Some processors may store data outside the UK. Where this happens, we rely on suitable safeguards such as UK International Data Transfer Agreements to protect your data.

08Retention

We keep personal data only as long as needed for the purposes set out here or as required by law. Client data is retained for the duration of our engagement and a reasonable period afterwards for backups and record-keeping.

09Your rights

You have rights to access, correct, delete, restrict, or object to the processing of your data, and to data portability. To exercise any right, contact us using the details below. If you have a concern about how we handle data, you can complain to the Information Commissioner's Office (ICO).

10Security

We use reasonable technical and organisational measures to protect personal data, including access controls and secure processors. No system is perfectly secure, but we take this responsibility seriously.

11Cookies

Our website may use essential cookies to function and analytics cookies to understand usage. You can control cookies through your browser settings. Client sites we build may use their own cookies as configured with you.

12Contact & changes

To ask about your data or this policy, book a discovery call via our site. We may update this policy from time to time; the latest version is always published here.