Amasci Creative Limited Privacy Policy
Last updated: May 2026
This policy outlines the purpose and nature of the personal data Amasci Creative Limited collects and retains; what, why and how this is collected, what is done with that information and how long we hold it for. It also outlines an individuals rights in relation to their personal information.
Amasci is considered to be both a Data Controller (determining the purposes in which any personal data is to be processed) and a Data Processor (holding data collected by our clients). We comply with the principles of data protection enumerated in the EU General Data Protection Regulation. We will therefore be lawful, fair and transparent in our use of personal data.
1. What 'personal data' is collected
Amasci collects and retains a limited amount of personal data. We only collect data that is necessary for our business use and to communicate with clients. This includes names, addresses, email addresses, website addresses, telephone numbers, bank account details, IP addresses.
We hold information on third parties collected by our clients. This could also include names, addresses, email addresses, website addresses, telephone numbers, IP addresses. This information is only collected for business use such as marketing.
2. How 'personal data' is collected and what it is used for
We collect personal information when you contact us by email or do business with us.
This may include:
- your name
- your email address
- your organisation and role
- details of your enquiry or correspondence, and
- any information needed to provide products and services, raise invoices, or keep proper business records.
We do not collect personal data through forms on this website.
Google Analytics
Google Analytics uses first-party cookies to track visitor interactions. These cookies are used to store information, such as what time the current visit occurred, whether the visitor has been to the site before, and what site referred the visitor to the web page. Browsers do not share first-party cookies across domains.
For more information on why we use cookies and how to manage them – please see our cookies section.
Servers
Websites hosted on our servers hold personal data collected by that company. Amasci’s role as data processor is covered by this Privacy Policy; therefore, this data is handled with the same dedication to privacy and data protection.
We use this information to provide, operate and maintain our services, find and prevent fraud, for compliance purposes including enforcing our terms of service, or other legal rights which may be required by applicable laws and regulations or requested by any judicial process or governmental agency.
3. Where Personal Data is held
Personal information such as contact information is stored in password-protected cloud services such as DropBox and Google Drive.
Data is stored on our server for hosting account point of contact.
Data is stored in the accounts package we use. Currently, Free Agent. Our accountant also has access to this information.
Data could be used in Campaign Monitor to update existing clients via eShot campaigns.
Emails, which may contain personal information, are kept within the company’s email system.
Third party data, collected by our client’s websites, is held by Amasci on the server and within backups. Personal data may also be sent via email or cloud platforms for purposes of tarted email marketing.
4. How we use your information
We use your personal information to:
- respond to enquiries
- provide proposals and quotations
- supply products and services
- manage contracts, invoicing and payments
- communicate with you about our work
- keep appropriate business and financial records
- protect our business against risk, and
- comply with legal and regulatory obligations.
5. Who uses the data and how long is it kept for
Personal information is used solely for legitimate business purposes by Amasci employees. Personal information is not passed to third parties without consent.
HMRC requests that data is kept for up to 7 years. Therefore, personal information, such as that found on our invoices will be kept on file to fulfil our legal and financial obligations.
Personal information such as contact details is held for a long as an individual or business remains a client of Amasci Creative Limited or are in need of our services. Data cleansing is performed regularly. Inactive client’s personal information is deleted within 2 years.
Email communication is stored for 7 years. Personal data collected by third parties is deleted within 30 days.
6. Legal basis for processing
Under UK data protection law, we rely on the following legal bases to process your personal data:
- Legitimate interests – to run and manage our business, respond to enquiries, and provide services, and
- Legal obligations – where processing is required by law (for example, tax or accounting requirements).
7. Sharing your information
We do not sell your personal data.
We may share your information where necessary with:
- suppliers or subcontractors who support our business operations (for example, IT, professional advisers or payment processing), and
- legal or regulatory authorities where required by law.
All third parties are expected to handle your data lawfully and securely.
8. Individual’s Rights
An individual has the right to request information on the personal data Amasci hold for them. We have mapped out the places in which data is kept so can make prompt replies, by email or telephone to requests.
Individuals also have the right to object to or restrict the processing of their personal data. However, data processing is only ever done for legitimate business reasons and this may impact on our ability to provide services to these clients.
Individuals have the right to have their personal information erased. We will securely dispose of personal data that is no longer required after 7 years or when an individual asks us to erase it. This includes the removal of information from address book services, emailing lists and servers and the deletion of emails.
Any requests will be dealt with by the Company Director without undue delay. Subject Access Requests will be actioned within 30 days.
8. Data Breaches
Amasci takes data breaches very seriously. All data breaches will be reported to thew ICO and or the data subject within 72 hours of being identified.
9. Third-party websites
Our website may include links to third-party websites.
This privacy policy applies only to this website. We have no control over, and are not responsible for, the privacy practices or content of third-party websites. You should review the privacy policy of any website you visit via links from our site.
10. The Information Commissioner’s Office
The ICO us the UK Supervisory Authority for data protection. It is an independent body set up to uphold the rights and freedoms of individuals concerning their personal data. An individual can contact the ICO to make a complaint or query at www.ico.org.uk
11. Changes to this policy
We may update this privacy policy from time to time. The latest version will always be available on our website. We recommend checking this page occasionally.
12. Our details
This website is owned and operated by Amasci Creative Limited.
Registered in England and Wales
Company number: 6559198
Registered office:
Corner House
4 Roslyn Court
Willen
Milton Keynes
Buckinghamshire
MK15 9LA
Email: [email protected]
We are registered as a data controller with the UK Information Commissioner's Office (ICO). Registration number: ZA528536