Privacy Policy
This Privacy Policy explains how SackCheck (operated by NZN Engineering Software and Consultancy Limited, Company No. 13384743) collects, uses and protects your personal data. We are the data controller for the purposes of UK GDPR and the Data Protection Act 2018.
1. Information we collect
- Account data — your name, email address and password.
- Claim data — the answers you give in the eligibility check and any details you enter to generate documents (e.g. employment dates, what happened, salary band). This may include sensitive information, such as details relating to a disability, health, race, religion or pregnancy, where you choose to provide it.
- Payment data — processed by Stripe. We receive confirmation of payment and limited details; we do not store full card numbers.
- Technical data — IP address, browser type and basic usage analytics.
2. How we use your data
- To provide the Service — assess eligibility, generate documents, track deadlines.
- To manage your account and process payments.
- To send service messages (e.g. deadline reminders, account emails).
- To improve and secure the Service.
- To comply with legal obligations.
3. Legal bases
We rely on: performance of a contract (to deliver the Service you bought); legitimate interests (to operate, secure and improve the Service); consent (for any optional marketing, and for processing special-category data you provide); and legal obligation (e.g. tax records).
4. Sharing your data
We share data only with: our payment processor (Stripe); our hosting and email providers; and, where you explicitly ask us to, a solicitor or partner you choose to be referred to. We do not sell your personal data. We never pass your details to third parties for their own marketing without your consent.
5. Data retention
We keep your account and claim data for as long as your account is active and for up to 6 years afterwards, to reflect employment-claim limitation periods and our legal obligations. You can ask us to delete your data sooner (see your rights below).
6. Your rights
Under UK GDPR you have the right to access, correct, delete or port your data, to object to or restrict processing, and to withdraw consent at any time. To exercise any right, email hello@sackcheck.co.uk. You also have the right to complain to the Information Commissioner’s Office (ICO) at ico.org.uk.
7. Security
We use encryption in transit, secure password hashing, and access controls. No system is perfectly secure, but we take reasonable steps to protect your data.
8. Cookies
See our Cookie Policy.
9. Contact
Data protection queries: hello@sackcheck.co.uk.