Privacy Policy
SASCONNECTS LIMITED (“we”, “us”, “our”) is committed to protecting your personal data. This policy explains what information we collect, how we use it, and your rights under UK GDPR and the Data Protection Act 2018. SASCONNECTS LIMITED acts as the Data Controller for personal data collected through this website.
Information We Collect
We collect personal information when you:
- Place an order (name, billing/shipping address, email, phone, payment details)
- Create an account or register on our website
- Submit a quote request or contact form
- Contact us via email, phone, or WhatsApp
- Browse our website (cookies and usage data — see Section 7)
We collect only information necessary to fulfil the purposes described in this policy.
How We Use Your Information
| Purpose | Legal Basis (UK GDPR) |
|---|---|
| Processing and fulfilling your order | Contract performance (Art. 6(1)(b)) |
| Sending order confirmations and shipping updates | Contract performance (Art. 6(1)(b)) |
| Customer support, warranty and returns handling | Contract performance (Art. 6(1)(b)) |
| Complying with legal and tax obligations | Legal obligation (Art. 6(1)(c)) |
| Sending marketing communications (with consent) | Consent (Art. 6(1)(a)) |
| Improving our website and services | Legitimate interests (Art. 6(1)(f)) |
| Fraud prevention and security | Legitimate interests (Art. 6(1)(f)) |
How We Share Your Information
We do not sell your personal data. We share data only with trusted third parties where necessary:
- Payment processors (Stripe): To securely process payments. Stripe is PCI-DSS compliant.
- Shipping carriers (FedEx, UPS, DHL): Name, address, and phone to deliver your order.
- Platform providers (BigCommerce): To operate our website and order management.
- Accountants / legal advisors: Where required for business compliance.
All third parties are contractually required to handle your data securely and in compliance with applicable data protection law.
International Data Transfers
Some third-party providers (such as Stripe and BigCommerce) may process data outside the UK or EEA. Where this occurs, we ensure appropriate safeguards are in place, such as Standard Contractual Clauses (SCCs) or UK adequacy decisions, in line with UK GDPR requirements.
Data Retention
| Data Type | Retention Period |
|---|---|
| Order and transaction records | 7 years (UK tax and accounting obligations) |
| Customer account data | Duration of account, plus 2 years after last activity |
| Marketing consent records | Until consent is withdrawn |
| Support communications | 3 years |
Data Security
- SSL/TLS encryption for all data transmitted through our website
- Secure payment processing via Stripe (payment data never stored on our servers)
- Access controls — personal data accessible only to authorised staff
- Regular security reviews
In the event of a data breach posing risk to your rights and freedoms, we will notify the ICO within 72 hours and affected individuals without undue delay, as required by UK GDPR.
Cookies & Tracking
We use cookies and similar technologies to:
- Remember your preferences and shopping cart
- Analyse site traffic and usage (Google Analytics)
- Support targeted advertising (Google Ads)
- Improve the overall user experience
You can manage or withdraw cookie consent at any time through your browser settings or our cookie consent tool.
Your Rights Under UK GDPR
| Right | What It Means |
|---|---|
| Access | Request a copy of the data we hold about you |
| Rectification | Request correction of inaccurate or incomplete data |
| Erasure | Request deletion of your data (subject to legal retention obligations) |
| Restriction | Request we restrict processing in certain circumstances |
| Data Portability | Receive your data in a structured, machine-readable format |
| Objection | Object to processing based on legitimate interests or direct marketing |
| Withdraw Consent | Withdraw consent for marketing at any time |
Contact sales@sasconnects.com. We will respond within 30 days. You also have the right to lodge a complaint with the Information Commissioner’s Office (ICO) at ico.org.uk or call 0303 123 1113.
Children’s Privacy
Our website is not directed at children under 13. We do not knowingly collect personal data from children under 13. If you believe we have done so, contact us immediately and we will delete it.
Policy Updates
We may update this Privacy Policy periodically. The updated policy will be posted on our website with a revised effective date. Continued use of our services constitutes acceptance of the updated policy.
Corporate Contact Channels