Privacy Policy
Last updated: June 2026
Who we are
CXComply is operated by [COMPANY NAME / SOLE TRADER NAME], the data controller for the personal data described below. ICO registration: [ICO REGISTRATION NUMBER]. Contact us.
What we collect and why
- Domains you scan and the scan results. Stored so your results page works and reports can be generated. Lawful basis: performance of a contract (Art. 6(1)(b)). Scan results contain technical data about websites, not personal data about you.
- Email address (paid reports only). Collected by Stripe at checkout and used to send you your report link. Lawful basis: performance of a contract.
- Payment details.Handled entirely by Stripe; we never see or store your card number. See Stripe's privacy policy for details.
- Server logs (IP address, requests). Kept briefly for security and rate limiting. Lawful basis: legitimate interests (Art. 6(1)(f)) in keeping the service secure.
AI processing
Scan results (technical website data) are analysed using Anthropic's Claude API to produce the plain-English report. Under Anthropic's API terms this data is not used to train their models. We do not send your email address or payment details to the AI provider.
Retention
Scan results and reports are kept so your shareable links continue to work. You can ask us to delete your scans and personal data at any time using the contact above.
Your rights
Under UK GDPR you have the right to access, correct, delete, and port your personal data, to object to or restrict processing, and to withdraw consent where processing is based on consent. You also have the right to complain to the Information Commissioner's Office (ico.org.uk).
Cookies
The CXComply website itself does not set non-essential cookies and does not use third-party advertising trackers. If that ever changes, we will ask for your consent first — we would be a poor compliance scanner otherwise.