PRIVACY POLICY

Important: by accessing and/ or using Paylow systems Ltd.'s, and its affiliates, including but not limited to Paylow Systems UK Ltd. ("Company","Paylow", "we", "us" or "our") online platform and related support services through the Paylow website available at www.paylow.app or through an app-like quick access shortcut which you can download to your computer or mobile device (collectively,"Services") , you acknowledge and agree that we may process your Personal Information (defined below)  in accordance with this Privacy Policy. If you do not accept this Privacy Policy, please do not access the Services.

Personal Information” means any information relating to an identified or identifiable natural person; an identifiable natural person is one who can be identified, directly or indirectly, in particular by reference to an identifier such as a name, an identification number, location data, an online identifier or to one or more factors specific to the physical, physiological, genetic, mental, economic, cultural or social identity of that natural person.  

This Privacy Policy describes our data practices regarding Personal Information we collect and process in compliance with applicable data protection laws.

This Privacy Policy does not apply to any Personal Information collected by third party websites or apps not operated by Paylow.

You are not legally required to provide us with your Personal Information, however, some parts of our Services may require you to do so. In these cases, if you choose to withhold any Personal Information we request, it may not be possible for you to access or use certain features of our Services. We recognize that privacy is important. This Privacy Policy applies to all of the services, information, tools, features and functionality offered by us and covers how we treat Personal Information.

If you have any questions about this Privacy Policy, please feel free to contact us at office@paylow.app.

Please also read our Terms of Use available at www.paylow.app/terms-of-use,which describe the general terms that apply to your access and/or use of the Services.

1. Information We Collect and How We Use It

In order to provide and improve our Services, and for marketing and customer relations purposes, we may collect and process the following categories of your Personal Information, for the following purposes and on the following legal bases:  

1.1 Creating an Account

  1. Information: When creating an account on the Services (your "Paylow account"), we ask you to provide your full name and email address.
  2. Purpose: We process this information for the purpose of allowing you to create a Paylow account.
  3. Legal basis: This processing is necessary for conclusion and performance of a contract between you and us.

Once you successfully register for a Paylow account, you will be redirected to Moneyhub to enable Moneyhub to collect account information from your bank account and to transfer that information to us.

1.2 Providing the Services

  1. Information: To provide our Services, we require you to grant us a read-only access to your bank account for purposes of providing your transaction history information, specifically information relating to transactions, direct debits and standing orders. We refer to this kind of information as account information. We use a tool provided by Moneyhub Financial Technology Ltd (“Moneyhub”)to gain access to your account information, subject to your acceptance of Moneyhub’s terms and conditions. We explain our relationship with Moneyhub in more detail, as well as your relationship with Moneyhub when you sign up for the Services, in our Terms of Use. We sometimes need to use tools provided by third parties to access your Personal Information. If you do not enable these providers (including Moneyhub) to provide us with your Personal Information, we may not be able to provide you with some or all of our Services.
  2. Purpose: We process the information above to (i) collect and track financial information on all your transactions and payments for the purpose of identifying your subscriptions, (ii) conduct comparisons of subscription pricing and value which is offered by third party vendors as generally available in the market, and (iii) switch your subscription to alternative providers or offerings with your current providers (at your discretion) to get better value for your subscriptions.
  3. Legal Basis: This processing is necessary to provide our Services to, and to enter into and perform a contract with, you.

We may sometimes supplement the Personal Information you provide with information that is received from third parties.

1.3 Personalisation of Our Services

  1. Information: When you use the Services, we may ask you to provide information such as your location, age, family status, preferences or other information relating to the way in which you spend money.
  2.  Purpose: We process this information to personalise and improve our Services.
  3. Legal basis: This processing is necessary for the purposes of our legitimate interest to personalise and improve our Services.

1.4 Transactional Information

  1. Information: We may request you to provide us with supporting ancillary documentation and records regarding your transaction history (i.e., invoices, receipts, or other records of payment).
  2. Purpose: We process this information to provide you with our Services, where necessary.
  3. Legal basis: This processing is necessary for performance of a contract between you and us.

1.5 User Communications

  1. Data: When you send emails or other communications to us, we may ask you to provide information such as your full name and email address in addition to any other information you choose to provide us with as part of such communications.
  2. Purpose: We process this information to process your inquiries and respond to your requests.
  3. Legal basis: This processing is necessary for performance of a contract between you and us (based on your request).

1.6 Marketing Communications

  1. Information: When creating an account, we may ask you top rovide your contact and identification information, as well as your preferences.
  2. Purpose: We will process this information to send you newsletters and promotional communications, and offer services or products we believe you may be interested in.
  3. Legal basis: This processing is necessary for the purposes of our legitimate interest to promote our services.

If (1) you are not our customer yet, or if we (2) wish to promote services of any third parties, or (3) communicate your contact information to any third parties to enable them to send you their marketing communications, we will ask for your consent before we do this.

You may opt-out of our mailing list, at any time, by submitting a request at the following link: office@paylow.app.

Please note that even if you opt-out of receiving marketing communications, we may still send you a response to any“Contact Us” request as well as administrative e-mails necessary to facilitate your use of our services.

1.7 Navigating Our Services

  1. Information: When you use our Services, we may automatically receive and record aggregate and/or analytical information from your browser or device, including information and statistics about your online/offline status, your IP address, internet service provider, search history, pages visited, impressions, links clicked, language preferences, the website visited before visiting the Services, the date and duration of the visit per page or other item, type of browser or device, unique device identifiers, your regional and language settings and software and hardware attributes. Our systems may automatically record and store aggregate and/or analytical information regarding the method and nature of your use of our services.
  2. Purpose:  We process this information to better understand the usage trends and preferences of our users, to develop, improve, support, and operate our Services, further develop our Services' offerings and/or for statistical purposes.
  3. Legal basis: This processing is necessary for the purposes of our legitimate interest to understand your use of our services and to improve our services for you and other users.

1.8 LinkedIn Lead Generation

  1. Information: Your contact and identification information, your employer’s name, other information that may be available in your LinkedIn profile.
  2. Purpose: We will process this data to provide you with a service you requested, establish your interests profile, and offer you our services that we believe may be relevant for you.
  3. Legal basis: This processing is necessary for the purposes of our legitimate interest to promote our services.

This processing may be based on your consent where required under applicable law.

1.9 Other Purposes of Processing Your Personal Information

1. Security
We may process your Personal Information to protect the integrity of our Services; to prevent, detect, mitigate, investigate, and protect against misuse of our systems, fraud, crime, security breaches, and potentially prohibited or illegal activities such as money laundering, or otherwise to protect our or third-party rights or interests.

Such processing is based on our legitimate interests to ensure security of our Services.

2. Legal

We may process your Personal Information to comply with the law; to resolve disputes; to cooperate with government or other legal inquiries, and to respond to subpoenas, court orders, or legal process; fulfill regulatory reporting obligations; to establish or exercise our legal rights or defend against legal claims and otherwise protect our or others’ rights/assets.

Such processing is based on our legal obligations, and/or, where non-applicable, our legitimate interests to comply with applicable regulations and defend our interests in court.

3. Business Transactions

We may process your Personal Information in connection with a merger, acquisition, consolidation, bankruptcy, or other corporate transition, affecting all or part of our assets, including during due diligence.

Such processing is based on our legitimate interests to enter into business transactions.

2. Cookies and Web Beacons

In order to collect the information described here in we may use temporary cookies that remain on your browser or device for a limited period of time. We may also use persistent cookies that remain on your browser or device until the services are no longer accessed, in order to manage and maintain our services and record your use thereof.

A cookie is a small piece of information which is sent to and stored on your browser or device. Cookies do not damage your browser or device. You may not be able to use some of the Services' features if you block them.

We may also use web beacons to collect information. Web beacons, or "gifs", are electronic images that maybe used in the Services or in our emails. We use web beacons to deliver cookies, count visits and to tell if an email has been opened and acted upon.

We may use remarketing services to inform you of new programmes, blogs, and opportunities by placing ads on third party websites to you. We and our third-party vendors, use cookies to inform, optimize and serve ads based on your past visits to our Services.

To opt in or opt out of certain cookies, please modify your cookie settings through the “Learn more and customize” link. You can find more information about cookies used on our Services in our Cookies policy (available at www.iubenda.com/privacy-policy/82216642/cookie-policy).

3. Third Party Links

We may display links to other services, sites, and applications on our Services for your convenience. We are not responsible for the privacy practices or the content of other sites and applications, and you visit them at your own risk. This Privacy Policy applies only to our Services and the Personal Information collected by us.

4. Children

If you are a child under the age of 18, you must obtain parental consent prior to using our Services. We will not knowingly contact or engage with children under the age of 18 without said parental consent. If you have reason to believe that a child has provided us with their Personal Information without said parental consent, please contact us at the address given above and we will endeavour to delete that Personal Information from our databases.

5. Information Sharing

For us to be able to provide our Services, our affiliates, agents, and representatives may need to have access to your Personal Information.

We may also need to contract with partners and third-party service providers to perform certain functions on our behalf. To this end, we limit these parties’ access to the Personal Information they need to perform the functions they carry out on our behalf. We require these parties to process your Personal Information in compliance with this Privacy Policy and subject to security and other appropriate confidentiality safeguards. Examples include service providers who enable switching services for your subscriptions with various suppliers (such as gas, electricity, broadband etc.).

We may also share your Personal Information in the following circumstances:

·      With our potential business partners or advisors if we become involved in are organisation, merger, consolidation, acquisition, or any form of sale of some or all of our assets;

·      With our Service providers or consultants to ensure security and for purposes of debugging;

·      With competent authorities, public bodies, officers of the law, ministerial officers, debt collection bodies, lawyers, and consultants, to satisfy applicable law or prevention of fraud or harm or to enforce applicable agreements and/or their terms, including investigation of potential violations;

·      The ads appearing on our Services, if any, may be delivered to you by third-party network advertisers, ad agencies, analytics service providers, and other vendors to provide us with data regarding use of and traffic (including without limitation the pages viewed and the actions users take when visiting) and the effectiveness of our advertisements. These third parties may set and access their own tracking technologies on your device (including without limitation cookies and web beacons) and may otherwise collect or have access to data about you (such as device identifier). Some of these parties may collect Personal Information data over time when you visit our Services;

·      If you have an account on social network sites and access our Services, we may receive information from such social networks, and the social network services may receive information relating to your use of our Services. For example, such information sharing is in place for LinkedIn Lead Generation.

6. Information Security

We follow generally accepted industry standards to protect against the unauthorised access to or unauthorise dalteration, disclosure or destruction of your Personal Information. However, no method of transmission over the internet, or method of electronic storage, is 100% secure. Therefore, while we strive to protect your Personal Information, we cannot guarantee its absolute security.

7. Data retention periods

We only keep your Personal Information for as long as reasonably necessary for the purposes for which it was collected or to allow us to comply with any legal obligations.

Our criteria for determining the period during which we keep your personal data include considering the time period reasonably necessary to provide our Services to you, exercise the choices and rights you have requested, comply with our contractual obligations, enforce our Terms for Use of our Services, and comply with legal and regulatory requirements.

For specific details regarding our retention practices, please refer to our Data Retention Policy.

8. Your Rights

The following rights are extended to you with respect of any Personal Information collected or processed by the Company, as required of the Company under applicable law. We have summarised below your rights in relation to the Personal Information we collect and process:  

  1. Right of Access and Rectification. You have the right to know what Personal Information we collect about you and to ensure that this data is accurate and relevant for the purposes for which we collected it. We allow our users the option to access and obtain a copy of their Personal Information and to rectify such Personal Information if it is not accurate, complete, or updated. However, if we can’t confirm your identity when you request this copy, we may need to ask you for further information or documents to identify you.
  2.  Right to Delete personal data or Restrict Processing. You have the right to request us to delete your Personal Information or restrict its processing. We may postpone or deny your request if your Personal Information is in current use for the purposes for which it was collected or for other legitimate purposes such as where we are legally required to retain or process this data.
  3. Right to Withdraw Consent. You have the right to withdraw your consent to the processing of your Personal Information that is based on your consent. This will not affect any data we process before you withdraw your consent.
  4. Right to Object. You have the right to object to our processing if we are processing your Personal Information based on legitimate interests, using your Personal Information for direct marketing (including profiling), or processing your Personal Information for purposes of scientific or historical research and statistics.
  5. Right of Data Portability. Where applicable, you have the right to ask to transfer your Personal Information to a third party service provider in accordance with your right to data portability.

You may exercise the above rights by sending a request to office@paylow.app.

Right to Lodge Complaint. You also have the right to lodge a complaint with a data protection supervisory authority regarding the processing of your Personal Information.

9. Enforcement

The Company regularly reviews its compliance with this Privacy Policy. Please feel free to direct any questions or concerns regarding this Privacy Policy or our treatment of Personal Information by contacting us as provided above. When we receive formal written complaints, it is the Company's policy to contact the complaining user regarding his or her concerns. We will cooperate with the appropriate regulatory authorities, including local data protection authorities, to resolve any complaints regarding the transfer of Personal Information that cannot be resolved between the Company and an individual.

10. Changes to This Privacy Policy

We may update this Privacy Policy from time to time. We will notify you about significant changes in the way we treat your Personal Information by sending a notice to the email address linked to your Paylow account or by placing a prominent notice on our Services. We encourage you to periodically review this Privacy Policy for the latest information about our privacy practices.

Any changes will be effective immediately once the revised Privacy Policy is made available on our Services unless otherwise specified. If you continue to use our Services after the changes become effective, we will assume you agree to these changes.

11. Cross-BorderTransfer

The server on which our Services are hosted and/or through which our Services are processed may be outside the country from which you access our services.

Some of the data uses and disclosures mentioned in this Privacy Policy may involve the transfer of your Personal Information to various countries around the world that may have different levels of privacy protection than your country and may be transferred outside of the UK or the European Economic Area.

If there is a transfer of your Personal Information outside the EEA we will, in the absence of an applicable adequacy decision relevant to the destination country or to the transfer, seek to rely on appropriate safeguards such as entering into appropriate EC approved standard contractual clauses (see https://commission.europa.eu/law/law-topic/data-protection/international-dimension-data-protection/standard-contractual-clauses-scc_en). By submitting your Personal Data through theServices, you consent, acknowledge, and agree that we will collect, use, transfer, and disclose your Personal Data as described in this Privacy Policy.

Last updated: 18 February 2025