Legal

Privacy Policy

Last updated 9 October 2026

This policy explains what personal data Dani Digital Limited, a company registered in England and Wales (number 13812823), run by Danielle Theobald ("Dani Digital", "I", "me", "my") collects through danielletheobald.co.uk and in client work, why, and your rights under UK GDPR and the Data Protection Act 2018. I am the data controller.

1. What I collect

  • Enquiry form: your name, email, role, website, revenue range, budget and anything you tell me about your goals.
  • Free social media audit: the public social handle you enter, the public profile data I fetch for it, and your email if you ask for the report.
  • Security and abuse checks: your IP address, used to stop spam and limit how often the free audit can be run.
  • Website use: pages visited, device and browser type and rough location, through Google Analytics cookies.
  • Clients: contact details, invoices, payment records and the account access you give me to do the work.

2. Why I use it, and the legal basis

  • To reply to your enquiry and send a proposal (legitimate interests, or steps before a contract).
  • To deliver the services you pay for and invoice you (contract).
  • To send you my newsletter and marketing tips, if you sign up or submit a form (consent or legitimate interests; every email has an unsubscribe link).
  • To keep the site secure and stop abuse (legitimate interests).
  • To understand how the site is used and improve it (consent, through the cookie choices in your browser).
  • To keep financial records (legal obligation).

3. Who I share it with

I never sell your data. I use these trusted providers to run the site and my business. Some are based outside the UK; where they are, data is protected by UK adequacy rules or standard contractual clauses.

  • Vercel: website hosting.
  • Neon: database that stores form and audit submissions.
  • Google Analytics: website statistics.
  • Cloudflare Turnstile: spam protection on forms.
  • Apify: fetches public social profile data for the free audit.
  • Anthropic: writes the free audit report from that public data.
  • beehiiv: newsletter and email list.
  • Slack: internal notifications and client communication.
  • Rella: client management.
  • Meta Business Suite: managing client Instagram and Facebook accounts.
  • Wise: card payments and bank transfers.
  • Google Workspace or my email provider: email.

4. Cookies

The site uses Google Analytics cookies to count visits and see which pages are useful. You can block or delete cookies in your browser settings at any time; the site still works without them.

5. How long I keep it

  • Enquiries that do not become clients: up to 2 years.
  • Client records and invoices: 6 years after our work ends, as UK tax law requires.
  • Newsletter: until you unsubscribe.
  • IP addresses for abuse checks: up to 30 days.

6. Your rights

You can ask to see, correct, delete or move your data, object to how I use it, or withdraw consent at any time. Email dani@danidigital.co.uk and I will reply within 1 month.

If you are unhappy with how I handle your data, you can complain to the Information Commissioner's Office (ico.org.uk).

7. Security

Data is sent over encrypted connections (HTTPS) and stored with providers that use industry standard security. Client logins are stored securely and only used for the agreed work.

8. Changes

I may update this policy. The date at the top shows the latest version.

Designed & built byDesigned & built byDesigned & built byDesigned & built byDesigned & built byDesigned & built byDesigned & built byDesigned & built by