Privacy Policy
This Privacy Policy explains how Catchy Clouds Creative LTD. ("Catchy Clouds", "we", "us", or "our") collects, uses, stores, and protects your personal information when you visit our website, request a free audit, use our services, or when we contact you about our services. We are committed to handling your data responsibly and in line with the UK General Data Protection Regulation (UK-GDPR), the EU GDPR where applicable, the Privacy and Electronic Communications Regulations (PECR), and other relevant data protection laws.
1. Information We Collect
We collect information in the following ways:
Information you give us
- Contact details such as your name, email address, phone number, and company or website when you submit a form, request a free audit, or email us.
- Details about your business, goals, competitors, and current search performance that you choose to share with us.
- Any other information you include in your communications with us.
- When you request a free audit, the website address you submit, the audit results generated, and your contact details if you unlock the full report. Audit results may be briefly cached to avoid re-scanning the same site.
Information we collect automatically
- Technical data such as your IP address, browser type, device information, and operating system.
- Usage data about how you interact with our website, collected through cookies and similar technologies.
Information we obtain from other sources
As part of our business development activities, we may collect business contact information about companies and the people who represent them from third-party and publicly available sources. This may include:
- Your name, job title, business email address, business phone number, company name, company website, and general business information.
- Sources such as company websites, online business directories and listings (for example Google Business Profile), Companies House and other public registers, professional networking sites, and reputable B2B data providers.
We use this information only to contact businesses about services we believe may be relevant to them, as described in Sections 2 and 3. We do not use these sources to collect special category data, and we screen phone numbers against the Telephone Preference Service (TPS) and Corporate Telephone Preference Service (CTPS) before making marketing calls.
Information relating to our clients' projects
When delivering digital PR and press release services, we may process limited personal data that our clients provide for publication, such as spokesperson names, job titles, and quotes, as well as the professional contact details of journalists and editors we work with.
2. How We Use Your Information
We use personal data to:
- Respond to your enquiries and deliver the free audit or services you request.
- Provide, manage, and improve our SEO, AEO, digital PR, press release, and related services.
- Communicate with you about your project, including updates and reports.
- Contact businesses that we believe may benefit from our services, by email or phone, in accordance with PECR and UK-GDPR.
- Send you marketing communications, which you can opt out of at any time.
- Analyse and improve our website, content, and service offering.
- Comply with our legal obligations and protect against fraud or misuse.
3. Legal Bases for Processing
Under UK-GDPR and GDPR, we rely on the following legal bases:
- Consent — where you have given clear consent, for example to receive certain marketing communications or where consent is otherwise required by law.
- Contract — where processing is necessary to deliver the services you have requested.
- Legitimate interests — where processing is necessary for our legitimate business interests, provided your rights do not override those interests. This includes direct marketing to business contacts about services relevant to their organisation, operating and improving our services, and delivering digital PR work on behalf of our clients. You have the right to object to this processing at any time (see Section 9).
- Legal obligation — where we must process data to comply with the law.
4. Automated Decision Making
Our free audit uses automated and AI-based analysis to generate scores and findings, and some outreach calls may use AI-assisted technology. We do not make decisions producing legal or similarly significant effects about you based solely on automated processing. You can ask us to review any audit output manually by contacting us.
5. Business Outreach, Calls, and Call Recording
We may contact businesses by email or telephone to introduce our services. When we do:
- Every marketing email includes a clear way to opt out, and we honour opt-outs promptly.
- We screen numbers against the TPS and CTPS registers before making marketing calls.
- Some calls may be made or assisted by automated or AI-powered calling technology. Where this is the case, we aim to make it clear during the call.
- Calls may be recorded or transcribed for quality, training, and record-keeping purposes. Recordings and transcripts are kept only as long as needed for those purposes and are then deleted.
- If you tell us you do not wish to be contacted, we add you to our internal suppression list so we do not contact you again.
6. Cookies
We use cookies and similar technologies to make our website work, remember your preferences, protect our forms, and understand how the site is used. They fall into these categories:
- Strictly necessary — required for the site to function and to secure our forms (for example, Google reCAPTCHA). These do not require consent.
- Analytics / performance — help us understand how visitors use the site so we can improve it.
- Preference — remember choices you make, such as your cookie settings.
7. How We Share Your Information
We do not sell your personal data. We may share it with:
- Trusted third-party service providers who help us operate our business, such as hosting, analytics, email, CRM, scheduling, and calling platform providers, under appropriate data protection agreements.
- Publications and media outlets, where our clients have provided personal data (such as spokesperson details) for inclusion in articles.
- Professional advisers, such as accountants and legal advisers, where necessary.
- Authorities or regulators where we are required to do so by law.
- Payment processors (such as Stripe) who handle your payment securely. We do not receive or store your full card details; these are processed directly by the payment provider under their own terms.
- We use Google reCAPTCHA to protect our forms from spam and abuse, which is subject to Google's Privacy Policy and Terms of Service.
8. International Transfers
As we serve clients worldwide and use service providers that may operate outside the UK or EEA, your data may be transferred internationally. Where this happens, we take steps to ensure your data remains protected through appropriate safeguards, such as standard contractual clauses.
9. Data Retention
We keep your personal data only for as long as necessary to fulfil the purposes set out in this policy, including any legal, accounting, or reporting requirements. Business contact data used for outreach is reviewed periodically and removed when it is no longer accurate or relevant. Suppression list entries are kept indefinitely, as we need them to honour your request not to be contacted. When data is no longer needed, we securely delete or anonymise it.
By way of guidance, we typically retain: enquiry and audit contact data for up to 24 months from your last contact with us; client project records for 6 years after an engagement ends, to meet legal and accounting requirements; call recordings and transcripts for up to 6 months; and suppression-list entries indefinitely so we can honour your request not to be contacted. These periods may be extended where a longer period is required by law or to resolve a dispute.
10. Your Rights
Subject to applicable law, you have the right to:
- Access the personal data we hold about you.
- Request correction of inaccurate or incomplete data.
- Request deletion of your data in certain circumstances.
- Object to or restrict our processing of your data, including an absolute right to object to direct marketing.
- Request portability of your data.
- Withdraw consent at any time, where processing is based on consent.
- Be informed about where we obtained your data, if we did not collect it from you directly.
To exercise any of these rights, email us at . If you object to direct marketing, we will stop contacting you for that purpose without needing any justification from you. You also have the right to lodge a complaint with the UK Information Commissioner's Office (ICO) at ico.org.uk or your local data protection authority.
11. Children
Our website and services are intended for businesses and for individuals aged 18 or over. We do not knowingly collect personal data from children. If you believe a child has provided us with personal data, please contact us and we will delete it.
12. Data Security
We use appropriate technical and organisational measures to protect your personal data against unauthorised access, loss, or misuse. However, no method of transmission over the internet is completely secure, and we cannot guarantee absolute security.
13. Third-Party Links
Our website may contain links to third-party sites. We are not responsible for the privacy practices or content of those sites, and we encourage you to review their privacy policies.
14. Changes to This Policy
We may update this Privacy Policy from time to time. The latest version will always be posted on this page with a revised "Last updated" date.
15. Contact Us
If you have any questions about this Privacy Policy or how we handle your data, please contact us:
- Email:
- Address: Office 19436, 182-184 High Street, North East Ham, London E6 2JA, United Kingdom