Flowly Logo

Privacy Policy

Flowly Legal Documentation

Last updated: June 2026

1. Introduction

Flowly (“we”, “our”, “us”) is committed to protecting your privacy and ensuring that your personal data is handled responsibly. This Privacy Policy explains what information we collect, how we use it, how we store it, and the rights you have under UK GDPR and applicable data protection laws.

2. Definitions

  • Personal Data: Any information relating to an identifiable individual.
  • Processing: Any operation performed on personal data.
  • Controller: The entity determining how and why data is processed.
  • Processor: The entity processing data on behalf of the controller.

3. Information We Collect

3.1 Information You Provide

  • Account details (name, email, password)
  • Organisation and site information
  • Staff details, roles, permissions
  • Operational data entered into Flowly modules
  • Support requests and communication history

3.2 Information Collected Automatically

  • IP address and approximate location
  • Browser type, device type, operating system
  • Usage logs (pages visited, actions taken)
  • Authentication and security events

3.3 Information From Third Parties

  • Authentication providers (if used)
  • Integrated services you connect to Flowly

4. How We Use Your Information

  • Provide and maintain the Flowly platform
  • Authenticate users and secure accounts
  • Improve performance and user experience
  • Send important updates and support messages
  • Monitor platform security and prevent misuse
  • Comply with legal and regulatory obligations

6. Data Sharing & Sub‑Processors

We may share data with trusted service providers, including:

  • Hosting and infrastructure providers
  • Email and communication platforms
  • Analytics and monitoring tools
  • Payment processors (if applicable)
  • Third‑party integrations you explicitly connect

All sub‑processors are bound by strict data protection agreements.

7. International Data Transfers

If data is transferred outside the UK or EU, we ensure appropriate safeguards such as Standard Contractual Clauses (SCCs) or equivalent protections.

8. Data Security

  • Encrypted data storage (in transit and at rest)
  • Strict access controls and audit logging
  • Regular security reviews and vulnerability monitoring
  • Hashed passwords using industry‑standard algorithms

9. Data Retention

We retain personal data only for as long as necessary to provide the service. When an account is deleted, data is removed or anonymised. Encrypted backups may retain data for a limited period before automatic deletion.

10. Your Rights

Under UK GDPR, you have the right to:

  • Access your personal data
  • Correct inaccurate information
  • Request deletion (“right to be forgotten”)
  • Restrict or object to processing
  • Export your data

11. Automated Decision‑Making

Flowly does not use automated decision‑making or profiling that produces legal or significant effects on users.

12. Cookies

Flowly uses cookies for authentication, session management, security, and analytics. You may disable cookies in your browser settings, but some features may not function correctly.

13. Complaints

You have the right to lodge a complaint with the UK Information Commissioner’s Office (ICO) if you believe your data has been mishandled.

14. Contact Us

For questions about this Privacy Policy or how Flowly handles data, contact us at: https://flowly.company/