Privacy Policy

Last updated: August 5, 2026

1. Introduction

Compliance Enablers LLP ("we," "us," or "our") is committed to protecting your privacy. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you visit our website complianceenablers.com and use our platform.

2. Information We Collect

Information You Provide

  • Account Information: Name, email address, company name, job title, and phone number when you register or request a demo.
  • Contact Form Data: Information you submit through our contact, demo request, and newsletter forms.
  • Platform Data: Data you input into the Compliance Enablers platform, including compliance records, risk assessments, policies, and audit evidence.
  • Payment Information: Billing details processed through our secure payment provider.

Information Collected Automatically

  • Usage Data: Pages visited, features used, time spent, and interaction patterns.
  • Device Information: Browser type, operating system, device type, and screen resolution.
  • Log Data: IP address, access times, referring URLs, and error logs.
  • Cookies & Similar Technologies: We use essential cookies for core functionality and, only with your consent, analytics and marketing cookies (see "Analytics and Visitor Identification" below).

Analytics and Visitor Identification

To understand how our website is used and to identify business interest so we can follow up appropriately, we use the following third-party services, each governed by its own privacy policy:

  • HubSpot (CRM and web analytics) — sets cookies to recognise returning visitors; once you submit a form, your site activity is associated with your contact record.
  • Leadfeeder / Dealfront (B2B visitor analytics) — identifies the organisation behind a visit from its IP address. This is company-level only; we do not use it to identify individual visitors.
  • Google Analytics 4 (web analytics) — consent-gated traffic measurement with IP anonymisation, used to understand which pages and content are useful to visitors.
  • We may also use Microsoft Clarity (session analytics) and Plausible (privacy-focused, aggregate analytics).

Product Analytics in the Platform

Within the Compliance Enablers platform (app.complianceenablers.com), we use PostHog, hosted in the European Union and bound by a data processing agreement, to understand how the product is used and to detect errors. This processing is deliberately minimised: we record that an action occurred (for example, that a module was opened), identified only by pseudonymous user and organisation identifiers — never the content of your records, documents, risks, or any other customer data. Session replays, where enabled, mask all typed input and all rendered text. Enterprise customers may request an organisation-level opt-out from product analytics.

We ask for your consent before setting non-essential cookies, and you can change or withdraw your choice at any time via "Cookie settings" in the site footer. You can also block or delete cookies through your browser settings; neither will prevent you from accessing the site.

3. How We Use Your Information

  • Provide, maintain, and improve our platform and services
  • Process demo requests and contact form submissions
  • Send you product updates, security alerts, and support messages
  • Send marketing communications (with your consent, which you can withdraw at any time)
  • Analyze usage patterns to improve user experience
  • Ensure platform security and prevent fraud
  • Comply with legal obligations

4. Data Sharing and Disclosure

We do not sell your personal information. We may share information with:

  • Service Providers: Trusted third parties who assist in operating our platform and business — including hosting, email delivery, CRM and analytics (HubSpot), B2B visitor analytics (Leadfeeder/Dealfront), web analytics (Google Analytics), and product analytics (PostHog, hosted in the EU) — bound by data processing agreements.
  • Legal Requirements: When required by law, regulation, or legal process.
  • Business Transfers: In connection with a merger, acquisition, or sale of assets.

5. Data Security

We implement industry-standard security measures including:

  • AES-256 encryption for data at rest
  • TLS 1.3 for data in transit
  • Multi-factor authentication
  • Role-based access controls
  • Regular security assessments and penetration testing
  • SOC 2 aligned security practices

6. Data Retention

We retain your information for as long as your account is active or as needed to provide services. Contact form data is retained for 24 months. You may request deletion of your data at any time.

7. Your Rights

Depending on your jurisdiction, you may have the right to:

  • Access your personal data
  • Correct inaccurate data
  • Delete your data
  • Restrict or object to processing
  • Data portability
  • Withdraw consent

To exercise these rights, contact us at privacy@complianceenablers.com.

8. International Data Transfers

Your data may be transferred to and processed in countries outside your jurisdiction. We ensure appropriate safeguards are in place for international transfers.

9. Children's Privacy

Our services are not directed to individuals under 18. We do not knowingly collect information from children.

10. Changes to This Policy

We may update this policy periodically. We will notify you of material changes by posting the updated policy and updating the "Last updated" date.

11. Contact Us

For privacy-related questions or requests: