LEGAL
Privacy Policy
Last updated: 8 June 2025
In plain English: We collect only what we need to respond to your enquiries and deliver our services. We do not sell your data. We do not share it with third parties except where strictly necessary to operate our business. You have full rights over your data under UK GDPR.
1. Who we are
This privacy policy explains how RingTrue AI (“we”, “us”, “our”) collects, uses and protects your personal data when you visit our website at ringtrueai.com or interact with our services.
Data Controller: Massimo Perry, RingTrue AI
Email: massimo@ringtrueai.com
Phone: 07847875070
RingTrue AI operates as a sole trader based in the United Kingdom.
2. What data we collect
Data you give us directly
When you fill in our contact or project enquiry form, we collect:
Your name and company name
Your email address and phone number (if provided)
Details about your project requirements
Any files you upload (e.g. company logo)
Budget range and project preferences
Data collected automatically
When you visit our website, basic technical data may be logged by our hosting provider, including:
Your IP address (anonymised where possible)
Browser type and version
Pages visited and time of visit
Referring URL
We do not currently use third-party analytics or advertising tracking cookies.
3. How we use your data
We use your personal data only for the following purposes:
To respond to your enquiry — we need your contact details to get back to you
To deliver our services — project briefs and related information are used to complete your project
To fulfil our contractual obligations — invoicing, project delivery and ongoing communication
Legal compliance — we may be required to retain certain records for tax or regulatory purposes
We will never use your data for unsolicited marketing without your explicit consent.
4. Legal basis for processing (UK GDPR)
We rely on the following lawful bases:
Contractual necessity — processing required to fulfil a contract with you
Legitimate interests — responding to enquiries and communicating about services you have requested
Legal obligation — retaining financial records as required by UK law
Consent — where you have given us explicit consent (e.g. to receive marketing communications)
5. Who we share your data with
We do not sell, rent or trade your personal data. We may share limited data with:
Email and communication providers — to send and receive emails (e.g. Google Workspace)
Cloud storage providers — to store project files securely
Payment processors — if you pay for services (e.g. Stripe or PayPal); they handle payment data under their own privacy policies
Legal or regulatory authorities — if required by law
All third-party providers used by RingTrue AI are required to handle data in accordance with UK GDPR.
6. How long we keep your data
We retain your data for as long as is necessary for the purpose it was collected:
Enquiry data (no contract): up to 12 months
Client project data: for the duration of the project plus 6 years (for legal/tax compliance)
Financial records: 6 years from the end of the relevant financial year (HMRC requirement)
After these periods, your data is securely deleted or anonymised.
7. Your rights under UK GDPR
You have the following rights regarding your personal data:
Right of access — request a copy of the data we hold about you
Right to rectification — ask us to correct inaccurate data
Right to erasure — ask us to delete your data (subject to legal retention requirements)
Right to restriction — ask us to restrict how we use your data
Right to data portability — receive your data in a portable format
Right to object — object to processing based on legitimate interests
Right to withdraw consent — where processing is based on consent
To exercise any of these rights, email us at massimo@ringtrueai.com. We will respond within 30 days.
If you are unhappy with how we handle your data, you have the right to lodge a complaint with the Information Commissioner’s Office (ICO) at ico.org.uk.
8. Cookies
Our website uses strictly necessary technical cookies only (e.g. session management). We do not use advertising, tracking or analytics cookies that require consent under PECR.
If this changes, we will update this policy and implement a cookie consent mechanism.
9. Security
We take appropriate technical and organisational measures to protect your personal data against unauthorised access, loss or disclosure. Our website uses HTTPS encryption for all data in transit.
10. International transfers
We primarily store and process data within the UK and European Economic Area (EEA). Where data is transferred outside the UK/EEA (e.g. via third-party service providers), we ensure adequate safeguards are in place in accordance with UK GDPR.
11. Changes to this policy
We may update this Privacy Policy from time to time. Any changes will be posted on this page with an updated date. Where changes are significant, we will notify active clients by email.
12. Contact us
For any privacy-related questions or to exercise your rights, contact:
Massimo Perry