Website Privacy Policy

1. Introduction

Who We Are

PriorityLine.ai is the trading name of CS Platforms Ltd (Company Number: 15214067, registered address: 488 Upper Brentwood Road, RM2 6JA).

We provide AI voice assistant services to care agencies in the United Kingdom.

This privacy policy explains how we handle personal information when you visit our website at priorityline.ai.

This policy does NOT cover our AI voice assistant service. If you are calling a care agency that uses our AI voice assistant, please see our Service Privacy Notice.

Our Contact Details

Information Commissioner's Office (ICO)

You have the right to complain to the UK data protection regulator:

  • Website: ico.org.uk
  • Phone: 0303 123 1113
  • Address: Information Commissioner's Office, Wycliffe House, Water Lane, Wilmslow, Cheshire SK9 5AF

2. What This Policy Covers

This privacy policy applies to personal information we collect when you:

  • ✅ Visit the priorityline.ai website
  • ✅ Fill in contact forms or request a demo
  • ✅ Subscribe to our newsletter or blog
  • ✅ Download resources (whitepapers, case studies)
  • ✅ Attend webinars or events
  • ✅ Communicate with us via email
  • ✅ Interact with our social media accounts
  • ❌ This policy does NOT cover our AI voice assistant service (see Service Privacy Notice)
  • ❌ This policy does NOT cover third-party websites we link to

3. Information We Collect

3.1 Information You Provide Directly

Information TypeExamplesHow We Collect It
Identity InformationName, job titleContact forms, demo requests
Contact InformationEmail address, phone number, company nameNewsletter signup, contact forms
Professional InformationCare agency name, role, number of Service UsersDemo request forms
Communication ContentMessages you send usEmail, contact forms, live chat
Marketing PreferencesNewsletter consent, communication preferencesSignup forms, preference centre

3.2 Information We Collect Automatically

Information TypeWhat We CollectPurpose
Technical InformationIP address, browser type, device type, operating systemWebsite analytics, security
Usage DataPages visited, time spent, links clicked, referral sourceImprove website, understand user behaviour
Location DataCountry and city (from IP address)Localise content, analytics
Cookie DataSee our Cookie PolicyVarious purposes (analytics, marketing, functionality)

3.3 Information From Third Parties

We may receive information about you from:

  • LinkedIn: If you sign up using LinkedIn authentication
  • Google Analytics: Aggregated website usage statistics
  • Marketing platforms: If you interact with our email campaigns (HubSpot, Mailchimp, etc.)
  • Social media platforms: If you interact with our posts or ads

4. How We Use Your Information (Legal Basis)

Under UK GDPR Article 6, we process your personal information on the following legal bases:

4.1 Consent (Article 6(1)(a))

  • What: Marketing emails, newsletters, optional cookies
  • How: You tick a box or actively opt-in
  • Withdrawal: Unsubscribe link in emails; update preferences at any time

4.2 Contract (Article 6(1)(b))

  • What: Demo requests, service enquiries, customer onboarding
  • How: Necessary to respond to your request or provide services
  • Example: When you request a demo, we need your email to send booking details

4.3 Legitimate Interests (Article 6(1)(f))

  • What: Website analytics, fraud prevention, business development
  • How: Necessary for our legitimate business interests
  • Your rights: You can object to processing based on legitimate interests

Our legitimate interests include:

  • Improving our website and user experience
  • Understanding which content is most valuable
  • Detecting and preventing fraud or security threats
  • Conducting business development and market research
  • Maintaining records for legal compliance

Balancing test: We ensure our interests do not override your rights. You can object at any time.

4.4 Legal Obligation (Article 6(1)(c))

  • What: Tax records, legal compliance, responding to court orders
  • How: Required by UK law
  • Example: Keeping financial records for HMRC

5. Cookies and Similar Technologies

We use cookies and similar technologies (pixels, tags, web beacons) on our website.

For detailed information, see our Cookie Policy.

Summary of Cookie Use

Cookie TypePurposeConsent Required?
Strictly NecessaryWebsite functionality, security❌ No (essential)
AnalyticsUnderstand how visitors use our site✅ Yes
MarketingTrack ad performance, retargeting✅ Yes
FunctionalRemember your preferences✅ Yes

Managing Cookies

You can manage cookie preferences through:

  • Our cookie banner (appears on first visit)
  • Cookie preference centre (footer link)
  • Browser settings (see Cookie Policy for instructions)

Our cookie consent tool: We use Iubenda to manage consents. Details at https://support.iubenda.com/support

6. How We Use Your Information

6.1 Providing Services and Support

We use your information to:

  • Respond to demo requests and enquiries
  • Schedule and conduct product demonstrations
  • Provide customer support
  • Process service applications
  • Manage client accounts

6.2 Marketing and Communication

We use your information to:

  • Send newsletters and blog updates (with consent)
  • Inform you about new features and services
  • Invite you to webinars and events
  • Send relevant care sector insights

You can unsubscribe at any time via the link in emails or by emailing privacy@priorityline.ai

6.3 Website Improvement and Analytics

We use your information to:

  • Analyse website traffic and user behaviour
  • Identify popular content and improve navigation
  • Test new features and designs
  • Optimise for mobile and different browsers

6.4 Security and Fraud Prevention

We use your information to:

  • Detect and prevent security threats
  • Monitor for suspicious activity
  • Protect against spam and abuse
  • Comply with legal obligations

6.5 Business Operations

We use your information to:

  • Maintain accurate business records
  • Conduct market research
  • Improve our products and services
  • Comply with tax and legal requirements

7. Who We Share Your Information With

7.1 Service Providers (Processors)

We share information with trusted service providers who process data on our behalf:

Service ProviderPurposeLocationSafeguards
Website HostingHost priorityline.aiUK/EUISO 27001, GDPR compliant
Email Marketing PlatformSend newslettersUK/EU/USStandard Contractual Clauses
Analytics (Google Analytics)Website usage analysisUS/UKGoogle Analytics 4, IP anonymisation, SCCs
CRM SystemCustomer relationship managementUK/EUEncrypted, GDPR compliant
Customer SupportLive chat, ticketingUS/EUSCCs, data hosting in EU
Payment ProcessorProcess paymentsUKPCI DSS compliant

All service providers:

  • Are bound by Data Processing Agreements
  • Are contractually obliged to keep data secure
  • May only use data on our instructions
  • Are regularly audited for compliance

7.2 Professional Advisers

We may share information with:

  • Solicitors (legal advice)
  • Accountants (financial compliance)
  • Business consultants (under confidentiality agreements)

7.3 Regulatory and Legal Authorities

We may disclose information when legally required:

  • Information Commissioner's Office (ICO)
  • HM Revenue & Customs (HMRC)
  • Care Quality Commission (CQC) - if relevant to service provision
  • Police and law enforcement (with valid legal requests)
  • Courts and tribunals (in legal proceedings)

7.4 Business Transfers

If we sell, merge, or reorganise our business, personal data may be transferred to the new owner. We will:

  • Notify you in advance
  • Ensure the new owner respects this privacy policy
  • Give you options if you object

7.5 We Do NOT:

  • ❌ Sell your personal information to third parties
  • ❌ Share data with advertisers (except anonymised analytics)
  • ❌ Use your data for purposes unrelated to our services
  • ❌ Send spam or unsolicited communications

8. International Data Transfers

8.1 Where We Store Data

Primary storage: United Kingdom and European Economic Area (EEA)

8.2 Transfers Outside the UK/EEA

Some service providers may process data in:

  • United States (e.g., Google Analytics, some SaaS platforms)
  • Other third countries

When we transfer data outside the UK/EEA, we ensure adequate protection through:

  • ✅ Standard Contractual Clauses (SCCs) - ICO-approved contracts
  • ✅ Adequacy Decisions - Countries recognised by UK Government as having adequate data protection
  • ✅ Supplementary Measures - Additional security (encryption, access controls)

8.3 Your Rights Regarding Transfers

You can:

  • Request details of where your data is processed
  • Object to transfers (though this may limit service functionality)
  • Request a copy of safeguards in place

9. How Long We Keep Your Information

We retain personal information only as long as necessary for the purposes we collected it.

Data TypeRetention PeriodReason
Contact form enquiries2 years from last contactBusiness development, legal claims
Newsletter subscribersUntil you unsubscribe + 30 daysMarketing purposes, consent records
Demo request details3 years from requestSales records, contract formation
Customer account data7 years after contract endsTax law, legal claims (Limitation Act)
Website analytics26 months (anonymised after 14 months)GDPR best practice
Cookie consent records12 monthsPECR compliance
CCTV (if applicable)30 daysSecurity, ICO guidance
Email correspondence2 years from last contactBusiness records, legal claims

After Retention Periods

When no longer needed, we will:

  • Delete data securely (DoD 5220.22-M standard or equivalent)
  • Anonymise data for statistical purposes (where appropriate)
  • Archive data if legally required (restricted access, encrypted)

Legal Holds

We may retain data beyond normal periods if:

  • There is an ongoing legal claim or investigation
  • Regulatory authority requests preservation
  • You have requested restriction of processing

10. Security Measures

We implement technical and organisational measures to protect your information:

10.1 Technical Security

  • Encryption: TLS 1.3 for data in transit; AES-256 for data at rest
  • Firewalls: Web application firewall (WAF) and network firewalls
  • Access controls: Multi-factor authentication (MFA), role-based access
  • Monitoring: 24/7 security monitoring, intrusion detection
  • Backups: Encrypted, geographically separate backups
  • Vulnerability management: Regular scanning and penetration testing

10.2 Organisational Security

  • Staff training: Annual data protection and security training
  • Background checks: DBS checks for UK staff with data access
  • Confidentiality agreements: All staff sign NDAs
  • Data minimisation: We collect only what we need
  • Privacy by design: Security built into all systems
  • Incident response plan: Documented breach response procedures

10.3 Third-Party Security

All service providers must:

  • Hold ISO 27001 or equivalent certification
  • Pass our security assessment
  • Sign Data Processing Agreements
  • Undergo annual audits

10.4 Your Security Responsibilities

Please help us protect your information:

  • Use strong passwords if you create an account
  • Do not share login credentials
  • Report security concerns to security@priorityline.ai
  • Be cautious of phishing emails claiming to be from us

11. Your Data Protection Rights (UK GDPR)

You have the following rights under UK GDPR:

11.1 Right of Access (Article 15)

  • What: Request a copy of your personal data
  • How: Email privacy@priorityline.ai
  • Timeframe: We respond within 1 month (free for first request)
  • What you'll receive: Copy of data, processing details, retention periods

11.2 Right to Rectification (Article 16)

  • What: Correct inaccurate or incomplete data
  • How: Email privacy@priorityline.ai with corrections
  • Timeframe: We respond within 1 month

11.3 Right to Erasure / "Right to be Forgotten" (Article 17)

  • What: Request deletion of your personal data
  • When available:
    • Data no longer necessary
    • You withdraw consent (for consent-based processing)
    • You object and we have no overriding legitimate grounds
    • Data was unlawfully processed
  • Exceptions: We may refuse if legally required to keep data (e.g., tax records, legal claims)

11.4 Right to Restrict Processing (Article 18)

  • What: Limit how we use your data
  • When available:
    • You contest data accuracy (while we verify)
    • Processing is unlawful but you don't want deletion
    • We no longer need the data but you need it for legal claims
    • You object to processing (while we verify legitimate grounds)

11.5 Right to Data Portability (Article 20)

  • What: Receive your data in a structured, machine-readable format
  • When available: Processing is based on consent or contract AND processing is automated
  • Format: CSV, JSON, or other commonly used formats

11.6 Right to Object (Article 21)

  • What: Object to processing based on legitimate interests or for direct marketing
  • Effect: We must stop processing unless we demonstrate compelling legitimate grounds
  • Direct marketing: You can object at any time (we must comply immediately)

11.7 Rights Related to Automated Decision-Making (Article 22)

  • What: Not be subject to solely automated decisions with legal/significant effects
  • Our position: We do not use automated decision-making on our website

11.8 Right to Withdraw Consent

  • What: Withdraw consent for consent-based processing
  • How: Unsubscribe from emails; update cookie preferences; email privacy@priorityline.ai
  • Effect: We stop processing from the point of withdrawal (doesn't affect lawfulness of past processing)

How to Exercise Your Rights

  • Email: privacy@priorityline.ai
  • Subject line: "Data Subject Request - [Your Name]"
  • Include: Full name, email address, description of request
  • ID verification: We may request ID to verify your identity (to protect your data)
  • Response time: 1 month (may extend by 2 months for complex requests)
  • Cost: Free (excessive or repeat requests may incur reasonable fees)

12. Right to Complain

If you're unhappy with how we handle your personal data:

Step 1: Contact Us

Email privacy@priorityline.ai with your concern. We will:

  • Acknowledge within 2 business days
  • Investigate thoroughly
  • Respond within 30 days

Step 2: Contact the ICO

You have the right to complain to the UK data protection regulator:

Information Commissioner's Office (ICO)
  • Website: ico.org.uk/make-a-complaint
  • Phone: 0303 123 1113
  • Live Chat: Available on ico.org.uk
  • Post: Information Commissioner's Office, Wycliffe House, Water Lane, Wilmslow, Cheshire SK9 5AF

You can complain to the ICO at any time - you don't have to contact us first.

13. Children's Privacy

Our website and services are not directed at children under 18.

We do not knowingly collect personal information from children.

If you believe we have inadvertently collected information from a child, please contact privacy@priorityline.ai immediately. We will delete it promptly.

Parent/Guardian Responsibility: If you are a parent or guardian and become aware your child has provided us with information, please contact us.

14. Links to Other Websites

Our website may contain links to third-party websites, including:

  • Social media platforms (LinkedIn, Twitter)
  • Partner websites
  • Industry resources
  • News articles

We are not responsible for:

  • Privacy practices of third-party websites
  • Content on external sites
  • Security of other websites

Before providing information to third parties, please review their privacy policies.

15. Social Media

We have a presence on social media platforms, including:

  • LinkedIn
  • Twitter / X
  • YouTube

When you interact with our social media accounts:

  • The platform's privacy policy applies
  • We may see your profile information (depending on your settings)
  • We do not collect personal data directly from social media (except publicly available info)

Marketing: If you message us on social media, we may use the conversation to provide support or respond to enquiries (legitimate interests).

16. Email Marketing

16.1 When We Send Marketing Emails

We send marketing emails only if:

  • ✅ You provided consent (ticked a box)
  • ✅ You are an existing customer and we're promoting similar services (soft opt-in)

16.2 What We Send

  • Newsletter with care sector insights
  • Product updates and new features
  • Webinar and event invitations
  • Case studies and best practices

Frequency: Approximately 1-2 emails per month (you can update frequency preferences)

16.3 Unsubscribe

Every marketing email includes:

  • Clear "Unsubscribe" link (at bottom)
  • Link to update preferences (choose types of emails you receive)

We will stop sending marketing emails within 2 business days of your unsubscribe request.

16.4 Transactional Emails

We will continue to send non-marketing emails even if you unsubscribe, including:

  • Responses to your enquiries
  • Service updates (if you're a customer)
  • Important account information
  • Legal notices

17. Changes to This Privacy Policy

17.1 When We Update

We may update this privacy policy:

  • To reflect changes in UK data protection law
  • When we add new features or services
  • Based on feedback from the ICO
  • To improve clarity

17.2 How We Notify You

Minor changes (e.g., clarifications):

  • Update the "Last Updated" date
  • Post the new policy on our website

Material changes (e.g., new purposes, new data sharing):

  • Email notification to subscribers
  • Prominent website notice
  • 30 days' notice before changes take effect

17.3 Version History

Current version: 1.0 (30 October 2025)

Previous versions available on request: privacy@priorityline.ai

18. Legal Framework

This privacy policy is designed to comply with:

  • ✅ UK General Data Protection Regulation (UK GDPR)
  • ✅ Data Protection Act 2018
  • ✅ Privacy and Electronic Communications Regulations (PECR) 2003
  • ✅ Investigatory Powers Act 2016 (lawful interception)

Governing Law: This policy is governed by the laws of England and Wales.

19. Contact Us

General Privacy Questions

Email: privacy@priorityline.ai

Response time: Within 3 business days

Data Protection Officer

Email: dpo@priorityline.ai

Responsibilities: Oversee data protection compliance, respond to data subject requests

Data Subject Requests

Email: privacy@priorityline.ai

Subject line: "Data Subject Request"

Response time: Within 1 month

General Enquiries

Email: hello@priorityline.ai

PriorityLine.ai (CS Platforms Ltd)

Last Updated: 30 October 2025

We and selected third parties use cookies or similar technologies for technical purposes and, with your consent, for other purposes as specified in the cookie policy.

Use the “Accept” button to consent. Use the “Reject” button to continue without accepting.