1. Who we are
Wirtor Technologies (“Wirtor”, “we”, “us” or “our”) is the controller of personal information described in this policy unless we state otherwise. Our website is wirtor.com.
Privacy enquiries and rights requests may be sent to [email protected].
2. Scope
This policy applies when you visit our website, contact us, subscribe to updates, request information, take part in research or assessment activity, or otherwise interact with Wirtor.
Where Wirtor processes personal information on behalf of an organisational customer, that customer will normally be the controller and its own privacy notice will apply. Wirtor will act as processor under the relevant agreement.
3. Information we may collect
- Identity and contact information: name, role, organisation, email address, telephone number and business address.
- Correspondence: messages, enquiries, feedback, meeting notes and support communications.
- Relationship information: areas of interest, proposals, agreements and records of our dealings with you or your organisation.
- Website and technical information: IP address, device and browser information, pages viewed, referral source, approximate location, diagnostic events and security logs.
- Preference information: communication choices and cookie preferences.
- Assessment or research information: responses and organisational observations that you choose to provide.
Please do not provide special category or highly sensitive personal information unless it is necessary, requested and supported by an appropriate lawful basis and safeguard.
4. How we use information and our lawful bases
| Purpose | Typical lawful basis |
|---|---|
| Responding to enquiries and providing requested information | Legitimate interests; steps at your request before a contract |
| Providing and administering services | Contract; legitimate interests |
| Managing customer, supplier and professional relationships | Contract; legitimate interests |
| Improving our website, services and user experience | Legitimate interests; consent where required for non-essential technologies |
| Protecting systems, detecting misuse and investigating incidents | Legitimate interests; legal obligation |
| Sending relevant business communications | Legitimate interests or consent, depending on the circumstances |
| Meeting legal, regulatory, tax and accounting requirements | Legal obligation; legitimate interests |
| Researching and developing Organisational Intelligence methods | Legitimate interests; consent where appropriate |
Where we rely on legitimate interests, we consider the necessity of the processing and balance our interests against your rights and reasonable expectations.
5. How we obtain information
We collect information directly from you, from your organisation, through your use of our website, and from lawful public or professional sources. We may also receive information from service providers, event partners, professional advisers or people who introduce you to us.
6. Sharing information
We may share information where necessary with:
- hosting, cloud, communications, analytics and security providers;
- professional advisers, auditors, insurers and financial providers;
- customers, suppliers and partners involved in delivering an agreed service;
- regulators, courts, law-enforcement bodies or public authorities where required;
- a purchaser, investor or successor in connection with a genuine corporate transaction.
We do not sell personal information. Suppliers are expected to handle information only for agreed purposes and with appropriate safeguards.
7. International transfers
Some suppliers may process information outside the United Kingdom. Where this occurs, we will use a lawful transfer mechanism and appropriate safeguards, such as adequacy regulations or approved contractual protections, together with supplementary measures where required.
8. Retention
We retain information only for as long as reasonably necessary for the purpose for which it was collected, including legal, accounting, security and dispute-resolution requirements. Typical periods are:
- general enquiries: up to 24 months after the last meaningful contact;
- customer and contractual records: normally up to seven years after the relationship ends;
- marketing preferences and suppression records: for as long as needed to respect the choice;
- security and diagnostic logs: according to operational need and risk, normally for a shorter period;
- unsuccessful proposals or opportunities: normally up to 24 months.
A longer or shorter period may apply where required by law, contract, an active dispute, security need or a documented business reason.
9. Security
We use proportionate technical and organisational measures designed to protect information against unauthorised access, loss, alteration or disclosure. No internet service can be guaranteed completely secure, but we review controls as our platform and risk profile develop.
10. Your rights
Depending on the circumstances, you may have rights to access, correct, erase or restrict personal information; object to certain processing; receive portable information; and withdraw consent at any time where consent is the basis relied on. You may also have rights relating to solely automated decisions with legal or similarly significant effects.
To exercise a right, email [email protected]. We may need to verify your identity. Rights are not absolute and exemptions may apply.
11. Complaints
Please contact us first so that we can investigate. You also have the right to complain to the UK Information Commissioner’s Office (ICO) through its official website at ico.org.uk.
12. Children
Wirtor’s website and services are intended for organisations and working-age professionals. They are not directed at children, and we do not knowingly seek to collect children’s personal information.
13. Changes
We may update this policy as our services, technology or legal obligations change. The effective date at the top of this page shows when the current version took effect. Material changes will be communicated where appropriate.