Introduction
1. Important information and who we are
Privacy notice
2. The types of personal data we collect about you
- Identity Data includes first name, last name, title and job title.
- Contact Data includes address, work address, email address and telephone numbers.
- Technical Data includes internet protocol (IP) address, your login data, browser type and version, time zone setting and location, browser plug-in types and versions, operating system and platform, device ID and other technology on the devices you use to access our website and App.
- Profile Data includes your username and password.
- Usage Data includes information about how you interact with and use our website, App and services.
- Marketing and Communications Data includes your preferences in receiving marketing from us and our third parties and your communication preferences.
3. How is your personal data collected?
- Your interactions with us. You may give us your personal data when you communicate or interact with us. This includes personal data you provide when you:
- request further information about our services;
- register as a user on our website or App; or
- communicate with us, including via email.
- Automated technologies or interactions. As you interact with our website or App, we will automatically collect Technical Data about your equipment, browsing actions and patterns. We collect this personal data by using cookies, server logs and other similar technologies. We may also receive Technical Data about you if you visit other websites employing our cookies. Please see our cookie notice [LINK] for further details.
- Third parties or publicly available sources. We will receive personal data about you from various third parties and public sources including the following:
- Identity Data, Contact Data, and Usage Data from your employer;
- Technical Data is collected from the following parties:
- analytics providers such as Google based outside the UK; and
- search information providers and advertising networks such as Facebook, LinkedIn, Instagram, X and other social media companies which may be based inside oroutside the UK.Identity and Contact Data is collected from publicly available sources such as Companies House and the Electoral Register based inside the UK.
4. How we use your personal data
Legal basis
- Legitimate interests: We may use your personal data where it is necessary to conduct our business and pursue our legitimate interests, for example to prevent fraud and enable us to provide services. We make sure we consider and balance any potential impact on you and your rights (both positive and negative) before we process your personal data for our legitimate interests. We do not use your personal data for activities where our interests are overridden by the impact on you (unless we have your consent or are otherwise required or permitted to by law).
- Legal obligation: We may use your personal data where it is necessary for compliance with a legal obligation that we are subject to. We will identify the relevant legal obligation when we rely on this legal basis.
- Consent: We rely on consent only where we have obtained your active agreement to use your personal data for a specified purpose, for example, for marketing purposes in certain circumstances.
Purposes for which we will use your personal data
Purpose/Use | Type of data | Legal basis |
---|---|---|
To permit you to install the App and to register as a user |
|
Legitimate interests (to deliver our App and to enable us to provide services to our clients) |
To provide services to our clients |
|
Necessary for our legitimate interests (to enable us to provide services to our clients) |
To contact you and communicate with you regarding our services |
|
Necessary for our legitimate interests (to enable us to provide information about our services and to communicate with you) |
To manage our relationship with you and/or your employer |
|
Necessary to comply with a legal obligation; Necessary for our legitimate interests (to keep our records updated and manage our relationship with you and/or your employer) |
To enable you to complete a survey |
|
Necessary for our legitimate interests (to study how our services are used, to develop them and grow our business) |
To administer and protect our business, website and App (including troubleshooting, data analysis, testing, system maintenance, support, reporting and hosting of data) |
|
Necessary for our legitimate interests (for running our business, provision of administration and IT services, network security, to prevent fraud and in the context of a business reorganisation or group restructuring exercise); Necessary to comply with a legal obligation |
To deliver relevant website and App content and online advertisements to you and measure or understand the effectiveness of the advertising we serve to you |
|
Necessary for our legitimate interests (to study how our services are used, to develop them, to grow our business and to inform our marketing strategy) |
To use data analytics to improve our website, App, services, client relationships and experiences and to measure the effectiveness of our communications and marketing |
|
Necessary for our legitimate interests (to define types of clients for our services, to keep our website and App updated and relevant, to develop our business and to inform our marketing strategy) |
To send you relevant marketing communications and make personalised suggestions and recommendations to you about services that may be of interest to you based on your Profile Data |
|
(a) Consent, having obtained your prior consent to receiving direct marketing communications; (b) Necessary for our legitimate interests (to carry out direct marketing, develop our services and grow our business); Please see 'Direct marketing' below for further information about our legal basis for marketing communications. |
To carry out market research through your voluntary participation in surveys | Necessary for our legitimate interests (to study how our services, website and App are used and to help us improve and develop our services) | |
To fulfil our legal obligations, and to establish, exercise or defend legal claims |
|
(a) Necessary for our legitimate interests (to allow us to fulfil our legal obligations and to protect and defend legal claims); (b) Necessary to comply with a legal obligation |
Direct marketing
Third-party marketing
Opting out of marketing
Cookies
5. Disclosures of your personal data
- Your employer.
- Our suppliers and service providers.
- Courts, law enforcement, regulatory authorities and government officials.
- Lawyers, insurers and other advisors.
- Third parties to whom we may choose to sell, transfer or merge parts of our business or our assets. Alternatively, we may seek to acquire other businesses or merge with them. If a change happens to our business, then the new owners may use your personal data in the same way as set out in this privacy notice.
- We require all third parties to respect the security of your personal data and to treat it in accordance with the law. We do not allow our third-party service providers to use your personal data for their own purposes and only permit them to process your personal data for specified purposes and in accordance with our instructions.
6. International transfers
7. Data security
8. Data retention
How long will you use my personal data for?
9. Your legal rights
- Request access to your personal data (commonly known as a "subject access request").
- Request correction of the personal data that we hold about you.
- Request erasure of your personal data in certain circumstances.
- Object to processing of your personal data where we are relying on a legitimate interest (or those of a third party) as the legal basis for that particular use of your data (including carrying out profiling based on our legitimate interests).
- Object any time to the processing of your personal data for direct marketing purposes (see4 for details of how to object to receiving direct marketing communications).
- Request the transfer of your personal data to you or to a third party.
- Withdraw consent at any time where we are relying on consent to process your personal data (see the table in section 4 for details of when we rely on your consent as the legal basis for using your data).
- Request restriction of processing of your personal data.
- If you wish to exercise any of the rights set out above, please contact us using the details set out in section 10.
No fee usually required
What we may need from you
Time limit to respond
10. Contact details
- Email address: enquiries@carebrain.ai
- Postal address: 6th Floor 9 Appold Street, London, United Kingdom, EC2A 2AP