Privacy Policy
Privacy Policy
Privacy Policy
Version 1.0 | March 2025
This Privacy Policy explains how RemiTech Limited ("RemiTech", "we", "our", "us") collects, uses, stores, and protects your personal data in connection with your use of our website at www.remitech.com and gemini.remitech.com (together, the "Website").
We are committed to handling your personal data responsibly and in accordance with the UK General Data Protection Regulation ("UK GDPR") and the Data Protection Act 2018.
Please read this Privacy Policy carefully. By using our Website or submitting your details via any form on the Website, you acknowledge that you have read and understood this policy.
1. Who We Are
RemiTech Limited is the data controller for personal data collected through this Website.
Company | RemiTech Limited |
Data protection contact | David Remington |
ICO registration | ZA882171 |
Website |
2. What Personal Data We Collect and Why
2.1 Website contact form
When you submit an enquiry via our contact form, we collect your name, email address, company name, and telephone number. We use this information to respond to your enquiry and, where appropriate, to follow up with you about our services.
Lawful basis: Legitimate interests (Article 6(1)(f) UK GDPR) — it is in our legitimate interests to respond to business enquiries submitted to us.
2.2 Meeting bookings via Calendly
Where you book a meeting or demonstration with us using our Calendly scheduling link, Calendly collects your name and email address on our behalf. We use this information solely to arrange and confirm the meeting.
Lawful basis: Legitimate interests — scheduling meetings is a necessary part of conducting our business.
2.3 Sales and marketing communications
Where you have submitted an enquiry or otherwise expressed an interest in our services, we may use your contact details to send you relevant information about RemiTech's services, updates, and offers. We may also source contact details from third-party platforms (such as Apollo) in connection with our B2B outreach activities.
Lawful basis: Legitimate interests — we have a legitimate interest in marketing our services to business professionals who are likely to have a relevant professional interest in Apple device management. We have assessed this interest against your rights and interests and are satisfied that our processing is proportionate. You may opt out at any time (see Section 6).
2.4 Customer service delivery
Where you become a customer of RemiTech, we process your contact and organisational details as necessary to perform our contract with you, including providing our Navigator Plus service, managing your account, issuing invoices, and communicating with you about your service.
Lawful basis: Performance of a contract (Article 6(1)(b) UK GDPR).
2.5 Meeting recordings
Where we conduct meetings with you via Zoom, Google Meet, or Microsoft Teams, we may record those meetings — either using the platform's native recording functionality or using third-party AI recording tools (currently Apollo; we are evaluating additional AI-assisted recording services). Where we intend to record a meeting, we will notify you at the start of the session and obtain your consent before recording begins.
Lawful basis: Consent (Article 6(1)(a) UK GDPR) for recordings. Where recordings are not obtained by consent, we rely on legitimate interests for internal note-taking and service improvement purposes.
2.6 Website usage data
We do not currently use analytics tools on our Website. If we introduce analytics in the future (for example, Google Analytics 4), we will update this Privacy Policy and our Cookies Policy accordingly, and obtain any necessary consents before deploying such tools.
3. How We Share Your Personal Data
We do not sell your personal data. We share your data only with third-party service providers who process it on our behalf and under our instruction, or where we are required to do so by law. Our current service providers who may process personal data originating from or in connection with this Website include:
Processor | Purpose | Location |
|---|---|---|
Salesforce | CRM — storing and managing prospect and customer contact data | US (UK-US Data Bridge) |
Apollo.io | Sales engagement platform — prospecting, email outreach, and meeting recording | US (UK-US Data Bridge) |
Google Workspace | Email, documents, and internal collaboration | US / EU (UK adequacy / SCCs) |
Microsoft 365 | Email and productivity (including Microsoft Teams meetings) | US / EU (UK adequacy / SCCs) |
Zoom | Video meetings and recordings | US (UK-US Data Bridge) |
Calendly | Meeting scheduling | US (UK-US Data Bridge) |
Box | Cloud document storage | US (UK-US Data Bridge) |
OneLogin | Identity and access management | US (UK-US Data Bridge) |
DocuSign | Electronic contract execution | US (UK-US Data Bridge) |
We also use the following tools internally which may incidentally process personal data: Notion, ToDoist, 1Password, Malwarebytes, and Claude (Anthropic) on a Teams plan. These tools operate under appropriate data processing agreements.
4. International Transfers
Some of our service providers are based in, or process data in, the United States. We ensure that any such transfers are protected by an appropriate safeguard recognised under UK GDPR, including:
The UK-US Data Bridge (adequacy regulation), where the recipient is certified;
UK International Data Transfer Agreements (IDTAs) or UK Addenda to EU Standard Contractual Clauses, where applicable.
If you would like further information about the safeguards in place for a specific transfer, please contact us at david@remitech.com.
5. How Long We Keep Your Data
Category | Retention period |
|---|---|
Website enquiries (prospects who do not become customers) | Up to 24 months from last contact, or until you request deletion, whichever is sooner. Records are reviewed annually. |
Customer contact and account data | For the duration of the contract and 7 years thereafter, in accordance with our statutory record-keeping obligations. |
Financial records (invoices, contracts) | 7 years from the end of the relevant financial year. |
Project notes and service records | 12 months following the end of the relevant engagement. |
Meeting recordings | As agreed with you at the time of recording, or 12 months if no period is agreed. |
6. Your Rights
Under UK GDPR, you have the following rights in respect of your personal data:
Right of access — you may request a copy of the personal data we hold about you.
Right to rectification — you may ask us to correct inaccurate or incomplete data.
Right to erasure — you may ask us to delete your data where there is no compelling reason for us to continue processing it.
Right to restriction — you may ask us to restrict processing of your data in certain circumstances.
Right to data portability — where processing is based on your consent or a contract, you may ask us to provide your data in a structured, machine-readable format.
Right to object — you may object to processing based on legitimate interests at any time. Where we process your data for direct marketing purposes, you have an absolute right to object.
Right to withdraw consent — where processing is based on your consent, you may withdraw that consent at any time without affecting the lawfulness of processing prior to withdrawal.
To exercise any of these rights, please contact David Remington at david@remitech.com. We will respond within one calendar month of receiving your request.
You also have the right to lodge a complaint with the Information Commissioner's Office (ICO) at www.ico.org.uk or by calling 0303 123 1113.
7. Data Security
We take the security of your personal data seriously. Our technical and organisational security measures include:
Single sign-on (SSO) and multi-factor authentication (MFA) for access to business systems;
Endpoint detection and response (EDR) and antivirus software on all company devices;
Full-disk encryption (FileVault) on company devices;
Apple device management via our proprietary Navigator Plus / Iru MDM platform;
Password management via 1Password;
Regular staff training on data protection and information security.
In the event of a personal data breach that is likely to result in a risk to your rights and freedoms, we will notify the ICO within 72 hours and, where required, will notify you without undue delay.
8. Children
Our Website and services are directed at business professionals. We do not knowingly collect personal data from individuals under the age of 18. If you believe we have inadvertently collected such data, please contact us and we will delete it promptly.
9. Links to Third-Party Websites
Our Website may contain links to third-party websites. We are not responsible for the privacy practices or content of those websites and we encourage you to review their privacy policies before providing any personal data.
10. Changes to This Policy
We may update this Privacy Policy from time to time. The current version will always be published on our Website with the version date shown at the top. Where we make material changes, we will take reasonable steps to draw your attention to them.
11. Contact Us
If you have any questions about this Privacy Policy or the way we handle your personal data, please contact:
David Remington
RemiTech Limited
Email: david@remitech.com
RemiTech Limited is registered with the Information Commissioner's Office under registration number ZA882171.
Version 1.0 | March 2025
This Privacy Policy explains how RemiTech Limited ("RemiTech", "we", "our", "us") collects, uses, stores, and protects your personal data in connection with your use of our website at www.remitech.com and gemini.remitech.com (together, the "Website").
We are committed to handling your personal data responsibly and in accordance with the UK General Data Protection Regulation ("UK GDPR") and the Data Protection Act 2018.
Please read this Privacy Policy carefully. By using our Website or submitting your details via any form on the Website, you acknowledge that you have read and understood this policy.
1. Who We Are
RemiTech Limited is the data controller for personal data collected through this Website.
Company | RemiTech Limited |
Data protection contact | David Remington |
ICO registration | ZA882171 |
Website |
2. What Personal Data We Collect and Why
2.1 Website contact form
When you submit an enquiry via our contact form, we collect your name, email address, company name, and telephone number. We use this information to respond to your enquiry and, where appropriate, to follow up with you about our services.
Lawful basis: Legitimate interests (Article 6(1)(f) UK GDPR) — it is in our legitimate interests to respond to business enquiries submitted to us.
2.2 Meeting bookings via Calendly
Where you book a meeting or demonstration with us using our Calendly scheduling link, Calendly collects your name and email address on our behalf. We use this information solely to arrange and confirm the meeting.
Lawful basis: Legitimate interests — scheduling meetings is a necessary part of conducting our business.
2.3 Sales and marketing communications
Where you have submitted an enquiry or otherwise expressed an interest in our services, we may use your contact details to send you relevant information about RemiTech's services, updates, and offers. We may also source contact details from third-party platforms (such as Apollo) in connection with our B2B outreach activities.
Lawful basis: Legitimate interests — we have a legitimate interest in marketing our services to business professionals who are likely to have a relevant professional interest in Apple device management. We have assessed this interest against your rights and interests and are satisfied that our processing is proportionate. You may opt out at any time (see Section 6).
2.4 Customer service delivery
Where you become a customer of RemiTech, we process your contact and organisational details as necessary to perform our contract with you, including providing our Navigator Plus service, managing your account, issuing invoices, and communicating with you about your service.
Lawful basis: Performance of a contract (Article 6(1)(b) UK GDPR).
2.5 Meeting recordings
Where we conduct meetings with you via Zoom, Google Meet, or Microsoft Teams, we may record those meetings — either using the platform's native recording functionality or using third-party AI recording tools (currently Apollo; we are evaluating additional AI-assisted recording services). Where we intend to record a meeting, we will notify you at the start of the session and obtain your consent before recording begins.
Lawful basis: Consent (Article 6(1)(a) UK GDPR) for recordings. Where recordings are not obtained by consent, we rely on legitimate interests for internal note-taking and service improvement purposes.
2.6 Website usage data
We do not currently use analytics tools on our Website. If we introduce analytics in the future (for example, Google Analytics 4), we will update this Privacy Policy and our Cookies Policy accordingly, and obtain any necessary consents before deploying such tools.
3. How We Share Your Personal Data
We do not sell your personal data. We share your data only with third-party service providers who process it on our behalf and under our instruction, or where we are required to do so by law. Our current service providers who may process personal data originating from or in connection with this Website include:
Processor | Purpose | Location |
|---|---|---|
Salesforce | CRM — storing and managing prospect and customer contact data | US (UK-US Data Bridge) |
Apollo.io | Sales engagement platform — prospecting, email outreach, and meeting recording | US (UK-US Data Bridge) |
Google Workspace | Email, documents, and internal collaboration | US / EU (UK adequacy / SCCs) |
Microsoft 365 | Email and productivity (including Microsoft Teams meetings) | US / EU (UK adequacy / SCCs) |
Zoom | Video meetings and recordings | US (UK-US Data Bridge) |
Calendly | Meeting scheduling | US (UK-US Data Bridge) |
Box | Cloud document storage | US (UK-US Data Bridge) |
OneLogin | Identity and access management | US (UK-US Data Bridge) |
DocuSign | Electronic contract execution | US (UK-US Data Bridge) |
We also use the following tools internally which may incidentally process personal data: Notion, ToDoist, 1Password, Malwarebytes, and Claude (Anthropic) on a Teams plan. These tools operate under appropriate data processing agreements.
4. International Transfers
Some of our service providers are based in, or process data in, the United States. We ensure that any such transfers are protected by an appropriate safeguard recognised under UK GDPR, including:
The UK-US Data Bridge (adequacy regulation), where the recipient is certified;
UK International Data Transfer Agreements (IDTAs) or UK Addenda to EU Standard Contractual Clauses, where applicable.
If you would like further information about the safeguards in place for a specific transfer, please contact us at david@remitech.com.
5. How Long We Keep Your Data
Category | Retention period |
|---|---|
Website enquiries (prospects who do not become customers) | Up to 24 months from last contact, or until you request deletion, whichever is sooner. Records are reviewed annually. |
Customer contact and account data | For the duration of the contract and 7 years thereafter, in accordance with our statutory record-keeping obligations. |
Financial records (invoices, contracts) | 7 years from the end of the relevant financial year. |
Project notes and service records | 12 months following the end of the relevant engagement. |
Meeting recordings | As agreed with you at the time of recording, or 12 months if no period is agreed. |
6. Your Rights
Under UK GDPR, you have the following rights in respect of your personal data:
Right of access — you may request a copy of the personal data we hold about you.
Right to rectification — you may ask us to correct inaccurate or incomplete data.
Right to erasure — you may ask us to delete your data where there is no compelling reason for us to continue processing it.
Right to restriction — you may ask us to restrict processing of your data in certain circumstances.
Right to data portability — where processing is based on your consent or a contract, you may ask us to provide your data in a structured, machine-readable format.
Right to object — you may object to processing based on legitimate interests at any time. Where we process your data for direct marketing purposes, you have an absolute right to object.
Right to withdraw consent — where processing is based on your consent, you may withdraw that consent at any time without affecting the lawfulness of processing prior to withdrawal.
To exercise any of these rights, please contact David Remington at david@remitech.com. We will respond within one calendar month of receiving your request.
You also have the right to lodge a complaint with the Information Commissioner's Office (ICO) at www.ico.org.uk or by calling 0303 123 1113.
7. Data Security
We take the security of your personal data seriously. Our technical and organisational security measures include:
Single sign-on (SSO) and multi-factor authentication (MFA) for access to business systems;
Endpoint detection and response (EDR) and antivirus software on all company devices;
Full-disk encryption (FileVault) on company devices;
Apple device management via our proprietary Navigator Plus / Iru MDM platform;
Password management via 1Password;
Regular staff training on data protection and information security.
In the event of a personal data breach that is likely to result in a risk to your rights and freedoms, we will notify the ICO within 72 hours and, where required, will notify you without undue delay.
8. Children
Our Website and services are directed at business professionals. We do not knowingly collect personal data from individuals under the age of 18. If you believe we have inadvertently collected such data, please contact us and we will delete it promptly.
9. Links to Third-Party Websites
Our Website may contain links to third-party websites. We are not responsible for the privacy practices or content of those websites and we encourage you to review their privacy policies before providing any personal data.
10. Changes to This Policy
We may update this Privacy Policy from time to time. The current version will always be published on our Website with the version date shown at the top. Where we make material changes, we will take reasonable steps to draw your attention to them.
11. Contact Us
If you have any questions about this Privacy Policy or the way we handle your personal data, please contact:
David Remington
RemiTech Limited
Email: david@remitech.com
RemiTech Limited is registered with the Information Commissioner's Office under registration number ZA882171.
Version 1.0 | March 2025
This Privacy Policy explains how RemiTech Limited ("RemiTech", "we", "our", "us") collects, uses, stores, and protects your personal data in connection with your use of our website at www.remitech.com and gemini.remitech.com (together, the "Website").
We are committed to handling your personal data responsibly and in accordance with the UK General Data Protection Regulation ("UK GDPR") and the Data Protection Act 2018.
Please read this Privacy Policy carefully. By using our Website or submitting your details via any form on the Website, you acknowledge that you have read and understood this policy.
1. Who We Are
RemiTech Limited is the data controller for personal data collected through this Website.
Company | RemiTech Limited |
Data protection contact | David Remington |
ICO registration | ZA882171 |
Website |
2. What Personal Data We Collect and Why
2.1 Website contact form
When you submit an enquiry via our contact form, we collect your name, email address, company name, and telephone number. We use this information to respond to your enquiry and, where appropriate, to follow up with you about our services.
Lawful basis: Legitimate interests (Article 6(1)(f) UK GDPR) — it is in our legitimate interests to respond to business enquiries submitted to us.
2.2 Meeting bookings via Calendly
Where you book a meeting or demonstration with us using our Calendly scheduling link, Calendly collects your name and email address on our behalf. We use this information solely to arrange and confirm the meeting.
Lawful basis: Legitimate interests — scheduling meetings is a necessary part of conducting our business.
2.3 Sales and marketing communications
Where you have submitted an enquiry or otherwise expressed an interest in our services, we may use your contact details to send you relevant information about RemiTech's services, updates, and offers. We may also source contact details from third-party platforms (such as Apollo) in connection with our B2B outreach activities.
Lawful basis: Legitimate interests — we have a legitimate interest in marketing our services to business professionals who are likely to have a relevant professional interest in Apple device management. We have assessed this interest against your rights and interests and are satisfied that our processing is proportionate. You may opt out at any time (see Section 6).
2.4 Customer service delivery
Where you become a customer of RemiTech, we process your contact and organisational details as necessary to perform our contract with you, including providing our Navigator Plus service, managing your account, issuing invoices, and communicating with you about your service.
Lawful basis: Performance of a contract (Article 6(1)(b) UK GDPR).
2.5 Meeting recordings
Where we conduct meetings with you via Zoom, Google Meet, or Microsoft Teams, we may record those meetings — either using the platform's native recording functionality or using third-party AI recording tools (currently Apollo; we are evaluating additional AI-assisted recording services). Where we intend to record a meeting, we will notify you at the start of the session and obtain your consent before recording begins.
Lawful basis: Consent (Article 6(1)(a) UK GDPR) for recordings. Where recordings are not obtained by consent, we rely on legitimate interests for internal note-taking and service improvement purposes.
2.6 Website usage data
We do not currently use analytics tools on our Website. If we introduce analytics in the future (for example, Google Analytics 4), we will update this Privacy Policy and our Cookies Policy accordingly, and obtain any necessary consents before deploying such tools.
3. How We Share Your Personal Data
We do not sell your personal data. We share your data only with third-party service providers who process it on our behalf and under our instruction, or where we are required to do so by law. Our current service providers who may process personal data originating from or in connection with this Website include:
Processor | Purpose | Location |
|---|---|---|
Salesforce | CRM — storing and managing prospect and customer contact data | US (UK-US Data Bridge) |
Apollo.io | Sales engagement platform — prospecting, email outreach, and meeting recording | US (UK-US Data Bridge) |
Google Workspace | Email, documents, and internal collaboration | US / EU (UK adequacy / SCCs) |
Microsoft 365 | Email and productivity (including Microsoft Teams meetings) | US / EU (UK adequacy / SCCs) |
Zoom | Video meetings and recordings | US (UK-US Data Bridge) |
Calendly | Meeting scheduling | US (UK-US Data Bridge) |
Box | Cloud document storage | US (UK-US Data Bridge) |
OneLogin | Identity and access management | US (UK-US Data Bridge) |
DocuSign | Electronic contract execution | US (UK-US Data Bridge) |
We also use the following tools internally which may incidentally process personal data: Notion, ToDoist, 1Password, Malwarebytes, and Claude (Anthropic) on a Teams plan. These tools operate under appropriate data processing agreements.
4. International Transfers
Some of our service providers are based in, or process data in, the United States. We ensure that any such transfers are protected by an appropriate safeguard recognised under UK GDPR, including:
The UK-US Data Bridge (adequacy regulation), where the recipient is certified;
UK International Data Transfer Agreements (IDTAs) or UK Addenda to EU Standard Contractual Clauses, where applicable.
If you would like further information about the safeguards in place for a specific transfer, please contact us at david@remitech.com.
5. How Long We Keep Your Data
Category | Retention period |
|---|---|
Website enquiries (prospects who do not become customers) | Up to 24 months from last contact, or until you request deletion, whichever is sooner. Records are reviewed annually. |
Customer contact and account data | For the duration of the contract and 7 years thereafter, in accordance with our statutory record-keeping obligations. |
Financial records (invoices, contracts) | 7 years from the end of the relevant financial year. |
Project notes and service records | 12 months following the end of the relevant engagement. |
Meeting recordings | As agreed with you at the time of recording, or 12 months if no period is agreed. |
6. Your Rights
Under UK GDPR, you have the following rights in respect of your personal data:
Right of access — you may request a copy of the personal data we hold about you.
Right to rectification — you may ask us to correct inaccurate or incomplete data.
Right to erasure — you may ask us to delete your data where there is no compelling reason for us to continue processing it.
Right to restriction — you may ask us to restrict processing of your data in certain circumstances.
Right to data portability — where processing is based on your consent or a contract, you may ask us to provide your data in a structured, machine-readable format.
Right to object — you may object to processing based on legitimate interests at any time. Where we process your data for direct marketing purposes, you have an absolute right to object.
Right to withdraw consent — where processing is based on your consent, you may withdraw that consent at any time without affecting the lawfulness of processing prior to withdrawal.
To exercise any of these rights, please contact David Remington at david@remitech.com. We will respond within one calendar month of receiving your request.
You also have the right to lodge a complaint with the Information Commissioner's Office (ICO) at www.ico.org.uk or by calling 0303 123 1113.
7. Data Security
We take the security of your personal data seriously. Our technical and organisational security measures include:
Single sign-on (SSO) and multi-factor authentication (MFA) for access to business systems;
Endpoint detection and response (EDR) and antivirus software on all company devices;
Full-disk encryption (FileVault) on company devices;
Apple device management via our proprietary Navigator Plus / Iru MDM platform;
Password management via 1Password;
Regular staff training on data protection and information security.
In the event of a personal data breach that is likely to result in a risk to your rights and freedoms, we will notify the ICO within 72 hours and, where required, will notify you without undue delay.
8. Children
Our Website and services are directed at business professionals. We do not knowingly collect personal data from individuals under the age of 18. If you believe we have inadvertently collected such data, please contact us and we will delete it promptly.
9. Links to Third-Party Websites
Our Website may contain links to third-party websites. We are not responsible for the privacy practices or content of those websites and we encourage you to review their privacy policies before providing any personal data.
10. Changes to This Policy
We may update this Privacy Policy from time to time. The current version will always be published on our Website with the version date shown at the top. Where we make material changes, we will take reasonable steps to draw your attention to them.
11. Contact Us
If you have any questions about this Privacy Policy or the way we handle your personal data, please contact:
David Remington
RemiTech Limited
Email: david@remitech.com
RemiTech Limited is registered with the Information Commissioner's Office under registration number ZA882171.