GDPR Privacy Notice
Last updated: February 2026
Who We Are
PremoWeb LLC is the data controller responsible for your personal data. This notice explains how we collect, use, share, and protect information about you in accordance with Regulation (EU) 2016/679 (the "General Data Protection Regulation" or "GDPR") and applicable UK GDPR provisions.
Personal Data We Collect
We collect personal data that you provide directly or that is generated automatically when you use our services:
- Contact data — name, email address, phone number, and postal address when you contact us or submit forms.
- Account data — username, password (hashed), and preferences if you create an account.
- Usage data — IP address, browser type, pages visited, time on site, and referring URLs, collected automatically via server logs and analytics.
- Communication data — the content of emails or messages you send us.
- Payment data — billing details processed by our payment provider; we do not store full card numbers.
Lawful Basis for Processing
We process your personal data on the following legal bases under Article 6 GDPR:
- Contract — processing necessary to perform a contract with you or take steps at your request before entering one.
- Legitimate interests — analytics, fraud prevention, and improving our services, where these interests are not overridden by your rights.
- Legal obligation — where we must comply with a legal requirement.
- Consent — for marketing communications and optional cookies, where we rely on your freely given, specific, informed, and unambiguous consent.
How We Use Your Data
- Delivering and managing our services.
- Responding to enquiries and providing customer support.
- Sending transactional communications (receipts, confirmations, service updates).
- Sending marketing communications where you have provided consent or we have a legitimate interest.
- Security monitoring and fraud detection.
- Compliance with legal and regulatory obligations.
- Analytics and product improvement.
Data Sharing and Transfers
We do not sell your personal data. We share it only with trusted processors acting on our instructions (e.g., hosting providers, analytics platforms, payment processors) under data processing agreements that satisfy GDPR requirements. Where data is transferred outside the UK or European Economic Area, we ensure appropriate safeguards are in place — such as Standard Contractual Clauses approved by the European Commission.
Cookies
We use essential cookies required for the site to function and, where you have consented, optional analytics cookies to understand how visitors use our site. You can manage cookie preferences at any time through your browser settings. Withdrawing consent does not affect the lawfulness of processing based on prior consent.
Data Retention
We retain personal data only for as long as necessary to fulfil the purposes described in this notice, or as required by law. Contact and enquiry records are typically retained for up to 3 years. Financial records are retained for 7 years in line with statutory requirements. Analytics data is anonymised after 14 months.
Your Rights Under the GDPR
You have the following rights, which you may exercise free of charge:
- Access — obtain a copy of the personal data we hold about you.
- Rectification — have inaccurate or incomplete data corrected.
- Erasure — request deletion of your data ("right to be forgotten") where there is no compelling reason for continued processing.
- Restriction — request that we limit how we use your data while a dispute is resolved.
- Data portability — receive your data in a structured, machine-readable format to transfer to another controller.
- Objection — object to processing based on legitimate interests or for direct marketing purposes.
- Withdraw consent — where processing is based on consent, you may withdraw it at any time without affecting prior lawful processing.
To exercise any right, contact us at legal@premoweb.com. We will respond within 30 days. You also have the right to lodge a complaint with your national supervisory authority (e.g., the ICO in the UK, or your local EU data protection authority).
Changes to This Notice
We may update this notice to reflect changes in our practices or legal requirements. The "Last updated" date at the top of this page will be revised accordingly. Material changes will be communicated via email or a prominent notice on our site.
