Privacy Policy

Last updated: 27 July 2026

1. About This Privacy Policy

This Privacy Policy explains how Synv Ltd collects, uses, stores and protects personal information.

It applies when you:

  • visit synv.dev;
  • contact us by email, telephone or through our website;
  • make an enquiry about our services;
  • discuss or commission a project;
  • become a customer, supplier, contractor or professional contact; or
  • otherwise communicate or work with us.

We process personal information in accordance with applicable UK data protection law, including the UK General Data Protection Regulation and the Data Protection Act 2018.

1. Who We Are

Synv Ltd is the data controller responsible for deciding how and why personal information is used for the purposes described in this policy.

Our company details are:

Synv Ltd

Company number: 17360388

Registered in England and Wales

Registered office: 9 Welton Low Road Elloughton Brough HU15 1HR

Website: synv.dev

1. Personal Information We May Collect

The information we collect depends on how you interact with us.

Contact and identity information

This may include:

  • your name;
  • job title;
  • company or organisation;
  • business address;
  • email address;
  • telephone number; and
  • professional contact information.

Enquiry information

When you contact us about a potential project, we may collect:

  • the information entered into our website enquiry form;
  • details of the service or assistance you require;
  • information about your organisation;
  • information about a proposed application, website, platform or system;
  • information about existing processes or technology;
  • preferred timescales;
  • indicative project investment information;
  • correspondence and meeting notes; and
  • documents or materials that you choose to provide.

Customer and project information

If you become a customer, we may collect and process:

  • contractual information;
  • project requirements and specifications;
  • project communications;
  • stakeholder and user information;
  • account and payment records;
  • purchase orders and invoices;
  • support requests;
  • technical information;
  • testing information;
  • user acceptance information; and
  • records required to deliver and manage the project.

Supplier and contractor information

We may collect information needed to:

  • assess and appoint suppliers or contractors;
  • communicate about work;
  • manage agreements;
  • process invoices and payments;
  • manage access to project information; and
  • maintain appropriate commercial records.

Website and technical information

When you visit our website, our website platform, hosting providers and supporting infrastructure may process limited technical information such as:

  • your IP address;
  • browser type;
  • device type;
  • operating system;
  • the pages you visit;
  • the date and time of your visit;
  • referral information;
  • security logs;
  • diagnostic information; and
  • information needed to display and protect the website.

Further information is provided in our Cookie Policy.

Marketing information

Where relevant, we may record:

  • whether you have agreed to receive marketing communications;
  • whether you have asked us to stop contacting you;
  • your communication preferences; and
  • records of relevant business communications.

1. Information We Do Not Intentionally Collect

We do not intentionally request special category personal information through our website.

This includes information about:

  • health;
  • racial or ethnic origin;
  • religious or philosophical beliefs;
  • political opinions;
  • trade union membership;
  • genetics or biometrics;
  • sex life; or
  • sexual orientation.

Please do not send sensitive personal information, passwords, security credentials, confidential data sets or regulated information through the general website enquiry form.

Where a project requires sensitive or regulated information to be processed, appropriate contractual, technical and security arrangements will be agreed separately.

1. How We Collect Personal Information

We may collect personal information:

  • directly from you;
  • through our website enquiry form;
  • through emails, telephone calls and meetings;
  • during project discovery and delivery;
  • when preparing a quotation, proposal or contract;
  • when you provide products or services to us;
  • from another person within your organisation;
  • from a customer, supplier, contractor or professional adviser;
  • from publicly available business and professional sources; and
  • automatically through our website and technical infrastructure.

Where another person provides us with your contact information, we will only use it where there is an appropriate reason to do so.

1. How We Use Personal Information

We may use personal information to:

  • respond to enquiries;
  • arrange calls and meetings;
  • understand a potential project;
  • assess whether we can provide the requested services;
  • prepare estimates, proposals and contracts;
  • carry out discovery and technical planning;
  • deliver software development, web development, integration, design, consultancy and related services;
  • manage projects and customer relationships;
  • communicate with project stakeholders;
  • provide support and maintenance;
  • manage suppliers, contractors and advisers;
  • maintain financial and commercial records;
  • administer payments and invoices;
  • manage our business;
  • protect our website, systems and information;
  • investigate suspected misuse or security incidents;
  • establish, exercise or defend legal rights;
  • comply with legal and regulatory obligations;
  • improve our services and working practices; and
  • send relevant business communications where permitted by law.

We will not use personal information for a purpose that is materially incompatible with the purpose for which it was collected unless we have a lawful reason to do so.

1. Our Lawful Bases for Processing

UK data protection law requires us to have a lawful basis for using personal information.

The lawful basis will depend on the circumstances.

Contract

We may process personal information where it is necessary to:

  • take steps at your request before entering into a contract;
  • prepare or negotiate a proposal;
  • enter into a contract;
  • deliver contracted services;
  • manage an existing contract; or
  • meet our obligations under a contract.

Legitimate interests

We may process personal information where it is necessary for our legitimate business interests, provided those interests are not overridden by your rights and interests.

Our legitimate interests may include:

  • responding to business enquiries;
  • developing and maintaining business relationships;
  • assessing potential projects;
  • managing customers, projects, suppliers and contractors;
  • improving our services;
  • protecting our systems and information;
  • maintaining appropriate business records;
  • communicating with relevant business contacts; and
  • protecting our legal and commercial interests.

Legal obligation

We may process personal information where necessary to comply with a legal, regulatory, accounting, reporting or law-enforcement obligation.

Consent

We may rely on consent where required, including for certain marketing activities or optional website technologies.

Where we rely on consent, you may withdraw it at any time.

Withdrawing consent will not affect processing that was lawful before consent was withdrawn.

Legal claims

We may process information where necessary to establish, exercise or defend legal claims.

1. Providing Personal Information

You are not generally required by law to provide personal information when making an initial enquiry.

However, we may be unable to respond properly, prepare a proposal or provide services if you do not provide the information reasonably required for those purposes.

Where information is required to enter into or perform a contract, we will explain what is needed.

1. Marketing Communications

We may send relevant business-to-business communications where permitted by law.

Where consent is required, we will obtain it before sending the relevant communication.

You may ask us to stop sending marketing communications at any time by:

  • using an unsubscribe option where one is provided; or

Stopping marketing communications will not prevent us from sending necessary project, service, contractual, financial or administrative communications.

1. Sharing Personal Information

We may share personal information where reasonably necessary with:

  • website and hosting providers;
  • Microsoft 365 and email service providers;
  • cloud and software providers;
  • development platforms;
  • developers, contractors and specialist consultants working on an agreed project;
  • payment and accounting providers;
  • insurers;
  • solicitors, accountants and other professional advisers;
  • customers, suppliers and project partners where necessary for delivery;
  • public authorities, regulators, courts or law-enforcement bodies where required; and
  • a genuine prospective purchaser, investor, funder or successor in connection with a proposed business transaction.

We require people and organisations processing information on our behalf to handle it appropriately, securely and only for the agreed purposes.

We do not sell personal information to advertisers or data brokers.

1. Contractors and Development Specialists

Synv may bring additional developers, designers, technical specialists or consultants into a project where their skills are required.

Where they need access to personal information, access will be limited to what is reasonably necessary for their role.

Appropriate confidentiality, contractual and information-security obligations will be used where required.

1. International Transfers

Some cloud, hosting, software and professional service providers may process information outside the United Kingdom.

Where personal information is transferred internationally, we will take appropriate steps to ensure that the transfer is lawful and protected.

This may include:

  • transferring information to a country recognised by the UK as providing adequate protection;
  • using approved contractual safeguards;
  • relying on another lawful transfer mechanism; and
  • applying supplementary technical or organisational protections where appropriate.

1. How Long We Keep Personal Information

We keep personal information only for as long as reasonably necessary for the purpose for which it was collected.

The appropriate period depends on the type of information, the relationship and any applicable legal or contractual requirements.

Our normal retention approach is as follows.

General enquiries

Enquiries that do not become projects will normally be retained for up to 24 months after the last meaningful communication.

Potential project information

Proposal, scoping and project-discussion information will normally be retained for up to 24 months where the project does not proceed, unless there is a legitimate reason to keep it for longer.

Customer and project information

Customer, contractual and project records will normally be retained for the duration of the relationship and for up to six years afterwards.

Financial and accounting records

Relevant financial and accounting records will normally be retained for the period required by applicable law and our legitimate record-keeping requirements.

Supplier and contractor information

Supplier and contractor records will normally be retained for the duration of the relationship and for up to six years afterwards where there is a legitimate commercial, contractual or legal reason.

Marketing information

Marketing information will be retained until:

  • you opt out;
  • you withdraw consent where consent is relied upon;
  • the information is no longer accurate or relevant; or
  • we decide that continued retention is no longer appropriate.

Suppression information may be retained so that we can respect a request not to send further marketing communications.

Website and security information

Technical and security records will be retained for periods appropriate to their purpose and the settings of the relevant platform or service provider.

Information may be retained for longer where:

  • required by law;
  • required by an insurer or professional adviser;
  • connected to an unresolved complaint or dispute;
  • necessary for fraud prevention or security;
  • reasonably needed to establish or defend a legal claim; or
  • you have agreed to a longer period.

When information is no longer needed, it will be deleted, anonymised or securely restricted from further use.

1. Information Security

We use appropriate technical and organisational measures intended to protect personal information against:

  • unauthorised access;
  • accidental loss;
  • unlawful use;
  • alteration;
  • disclosure; and
  • destruction.

These measures may include:

  • access controls;
  • password and account-management requirements;
  • secure cloud and email services;
  • encryption in transit;
  • security updates;
  • backups;
  • supplier reviews;
  • confidentiality requirements;
  • limited project access; and
  • appropriate technical monitoring.

No internet, email or electronic system can be guaranteed to be completely secure.

You should take care when deciding what information to submit through a website form or send by email.

1. Personal Data Breaches

Where we become aware of a personal data breach, we will assess it and take appropriate action.

Where legally required, we will notify the Information Commissioner's Office and affected individuals within the applicable timescales.

1. Your Data Protection Rights

Depending on the circumstances, you may have the following rights.

Right of access

You may ask for confirmation that we process your personal information and request a copy of that information.

Right to correction

You may ask us to correct personal information that is inaccurate or incomplete.

Right to erasure

You may ask us to delete personal information where there is no lawful reason for us to continue using it.

This right does not apply in every circumstance.

Right to restriction

You may ask us to restrict the way we use your information in certain circumstances.

Right to object

You may object to processing based on legitimate interests.

You have an absolute right to object to the use of personal information for direct marketing.

Right to data portability

Where the legal requirements apply, you may ask us to provide certain information in a structured, commonly used and machine-readable format or transfer it to another organisation.

Right to withdraw consent

Where we rely on consent, you may withdraw it at any time.

Rights relating to automated decisions

You may have rights relating to decisions made solely through automated processing where those decisions produce legal or similarly significant effects.

Synv does not currently use information collected through this website to make such decisions.

1. Exercising Your Rights

To exercise a data protection right, contact:

We may need to ask for information to confirm your identity before responding.

We will normally respond within one month, although the law allows additional time in certain circumstances.

There is normally no charge for exercising a data protection right.

However, the law may allow us to charge a reasonable fee or refuse to act where a request is manifestly unfounded or excessive.

1. Complaints

We would appreciate the opportunity to address any concerns about how we use personal information.

Please contact us first at:

You also have the right to complain to the Information Commissioner's Office, which is the UK supervisory authority for data protection.

Information Commissioner's Office

Website: ico.org.uk

Telephone: 0303 123 1113

1. Children

Our website and services are intended for businesses, organisations and professional users.

They are not directed at children, and we do not knowingly collect personal information from children through the website.

1. Third-Party Websites

Our website may contain links to websites operated by other organisations.

We are not responsible for their content, privacy practices or use of personal information.

You should review the relevant privacy information before providing personal data to a third party.

1. Changes to This Privacy Policy

We may update this Privacy Policy to reflect:

  • changes to our services;
  • changes to the website;
  • changes to our suppliers or technology;
  • changes to the way we use information; or
  • changes to legal or regulatory requirements.

The latest version will be published on this page with an updated revision date.

1. Contact Us

Questions about this Privacy Policy or our use of personal information should be sent to:

Synv Ltd

Company number: 17360388

Registered in England and Wales

Registered office: 9 Welton Low Road Elloughton Brough HU15 1HR

Website: synv.dev