Privacy Policy

Grassroots Business Support ("we", "our", or "us") is committed to protecting and respecting your privacy. This Privacy Policy explains how we collect, use, and safeguard your personal information when you interact with us, whether via our website, email, or other means.

1. Who We Are

Grassroots Business Support is a UK-based remote accountancy practice. Our services include accountancy, bookkeeping, tax, and business support. We are the data controller responsible for your personal data.

Business Name: Grassroots Business Support

Email: hello@grbsupport.co.uk

Data Protection Officer: Emma Utting

2. What Information We Collect 

We may collect and process the following types of personal data:

  • Identity Data: Full name, business name, date of birth, and National Insurance number.

  • Contact Data: Email address, phone number, postal address.

  • Financial Data: Bank details, transaction history, tax information.

  • Technical Data: IP address, browser type, time zone settings, and website usage statistics.

  • Communication Data: Any correspondence sent to us via email, website forms, or otherwise.

3. How We Use Your Data

We use your data to:

  • Provide and manage our accountancy and business support services.

  • Comply with legal and regulatory obligations.

  • Communicate with you regarding services, updates, or changes.

  • Maintain internal records for accounting, taxation, and business operations.

  • Improve our website and client experience.

4. Legal Basis for Processing

We rely on the following lawful bases under the UK GDPR to process your personal data:

  • Contract: Processing necessary for the performance of a contract.

  • Legal Obligation: To comply with our legal and regulatory duties.

  • Legitimate Interests: To operate and improve our services effectively.

  • Consent: Where you have given clear consent for us to process your data.

5. Data Sharing 

We only share your personal data where necessary:

  • With HMRC and other regulatory authorities.

  • With service providers and subcontractors who support our operations (e.g. cloud accounting software, email services).

  • With professional advisers including legal and tax consultants.

  • If required by law or in connection with legal proceedings.

We never sell your data.

6. Data Retention 

We retain personal data only as long as necessary for the purpose collected, including for legal, tax, and regulatory reasons. Typically, this is six years after the end of our relationship, unless otherwise required.

7. Your Data Protection Rights

Under the UK GDPR, you have rights including:

  • Access - Request access to your personal data.

  • Rectification - Request correction of inaccurate or incomplete data.

  • Erasure - Request erasure of your personal data, where applicable.

  • Restriction - Request restriction of processing.

  • Objection - Object to processing on grounds relating to your situation.

  • Data Portability - Request transfer of your data to you or another provider.

 To exercise these rights, contact:

Emma Utting

email: hello@grbsupport.co.uk

You also have the right to complain to the Information Commissioner’s Office (ICO) at www.ico.org.uk if you are unhappy with how we handle your data.

8. Security 

We implement appropriate technical and organisational measures to protect your data, including encryption, secure servers, and limited access protocols.

9. Cookies

We may use cookies or similar tracking technologies on our website to improve user experience. You can manage cookie preferences through your browser settings.

10. Updates to This Policy

We may update this Privacy Policy occasionally to reflect changes in laws or our operations. The latest version will always be available on our website, and material changes will be communicated where required.