Legal

Data Protection Policy

Last updated: 26 May 2026

Section 01

Purpose

To outline how LedgerlyPro protects personal and financial data in compliance with UK GDPR and the Data Protection Act 2018.

Section 02

Principles

We follow the six GDPR principles:

  • Lawfulness, fairness, transparency
  • Purpose limitation
  • Data minimisation
  • Accuracy
  • Storage limitation
  • Integrity and confidentiality
Section 03

Responsibilities

LedgerlyPro ensures:

  • Secure handling of personal data
  • Staff and contractors follow data protection rules
  • Data is processed only for legitimate purposes
Section 04

Data Security

We implement:

  • Encryption
  • Secure authentication
  • Access controls
  • Regular security reviews
  • Vendor due diligence
Section 05

Data Breaches

If a breach occurs:

  • We assess severity
  • Notify affected users if required
  • Report to the ICO within 72 hours if necessary
Section 06

Third‑Party Processors

We only work with GDPR‑compliant processors, including:

  • Stripe
  • Hosting providers
Section 07

Data Subject Rights

We maintain processes to respond to:

  • Access requests
  • Deletion requests
  • Correction requests
  • Objections

Contact: support@ledgerlypro.co.uk

Questions about data protection? Email support@ledgerlypro.co.uk.