Privacy Policy

Last Updated: January 2025

About This Policy

arelilumexa takes your privacy seriously. This policy explains how we collect, use, and protect your personal information when you use our financial forecasting and budgeting services. We've written this in plain English because privacy shouldn't be complicated.

Our commitment goes beyond legal requirements. We believe transparent data practices build trust, which is essential for any financial service provider operating in the United Kingdom.

Information We Collect

Personal Information
Name and contact details when you register for our services
Financial information necessary for budgeting and forecasting tools
Payment information for subscription services
Communication preferences and correspondence with our support team
Technical Information

We automatically collect certain technical data to improve our platform. This includes your IP address, browser type, device information, and how you interact with our forecasting tools. We use this to spot technical issues and understand which features matter most to our users.

How We Use Your Information

Your data serves specific purposes that directly benefit your experience with arelilumexa's financial tools:

Providing accurate financial forecasting based on your input data
Creating personalised budgeting recommendations
Processing payments and managing your subscription
Sending important updates about your account or service changes
Improving our platform based on how users interact with features
Complying with financial regulations and preventing fraud

We don't sell your information to third parties. Period. Your financial data stays within our secure systems and is only shared when legally required or with your explicit consent.

Data Security and Protection

Financial data requires the highest security standards. We use bank-level encryption for all data transmission and storage. Your information is protected by multiple security layers including firewalls, access controls, and regular security audits.

Our Security Measures
256-bit SSL encryption for all data transfers
Secure cloud storage with automated backups
Two-factor authentication for account access
Regular penetration testing and security assessments
Staff training on data protection best practices

While we maintain robust security measures, no system is completely immune to threats. We continuously monitor for vulnerabilities and will notify you immediately if any breach affects your personal data.

Your Rights Under UK Data Protection Law

Under the UK GDPR and Data Protection Act 2018, you have significant control over your personal information. These aren't just legal requirements – they're fundamental rights we actively support.

Access and Portability

You can request a complete copy of all personal data we hold about you. We'll provide this in a commonly used format within 30 days. If you want to transfer your data to another service provider, we'll help make that process smooth.

Correction and Deletion

Found incorrect information in your profile? You can update most details directly through your account dashboard, or contact us for assistance. You also have the right to request deletion of your personal data, though we may need to retain some information for legal or regulatory purposes.

Processing Restrictions

You can ask us to restrict how we process your data in specific circumstances, such as when you're disputing the accuracy of information or questioning whether we need it for our services.

Data Retention and Deletion

We keep your information only as long as necessary for providing our services or meeting legal requirements. For active accounts, we retain financial data for the duration of your subscription plus seven years, as required by UK financial regulations.

When you close your account, we begin a deletion process that removes personal identifiers while preserving anonymised usage patterns for service improvement. Marketing data is deleted immediately upon unsubscription or account closure.

Automated Deletion
Inactive accounts are flagged after 24 months of no login activity
Personal data is deleted 36 months after account closure
Communication logs are purged after 5 years
Technical logs are automatically deleted after 12 months

Third-Party Services and Integrations

arelilumexa integrates with carefully selected third-party services to enhance our platform. These partnerships are governed by strict data protection agreements that mirror our own privacy standards.

Payment Processing

We use established payment processors that comply with PCI DSS standards. Your payment card details are never stored on our servers – they're handled directly by certified payment services that specialise in secure financial transactions.

Analytics and Performance

We use privacy-focused analytics tools to understand how users interact with our budgeting features. This data is anonymised and helps us identify which tools provide the most value to our community.

International Data Transfers

Your personal data is primarily stored and processed within the UK and European Union. When we do transfer data internationally, we use appropriate safeguards including adequacy decisions, standard contractual clauses, and certification schemes.

Any data processed outside the UK meets equivalent protection standards through contractual obligations and technical measures. We regularly review these arrangements to maintain the highest privacy standards regardless of processing location.

Changes to This Policy

Privacy regulations evolve, and so do our services. We'll update this policy when necessary and notify you of significant changes through email or prominent notices in your account dashboard.

Minor clarifications or updates to contact details won't trigger notifications, but substantial changes to how we collect, use, or share data will always be communicated clearly with at least 30 days' notice.

Privacy Enquiries and Contact

Questions about your privacy rights or how we handle your data? We're here to help with clear, straightforward answers.

Data Protection Officer
arelilumexa
D, Bradford Business Park, Canal Rd
Bradford BD1 4SJ, United Kingdom

If you're not satisfied with our response to privacy concerns, you have the right to lodge a complaint with the Information Commissioner's Office (ICO), the UK's data protection regulator.