Legal
Privacy Policy
Last updated: May 2026
Cubic Build Ltd is committed to protecting your privacy. This policy explains what personal data we collect, how we use it, and your rights under UK GDPR and the Data Protection Act 2018.
1. Who we are
Cubic Build Ltd is a company registered in England and Wales (Company Number: 14594125). Our registered address is on file with Companies House. We are the data controller for personal data collected through cubicbuild.com.
Contact us regarding privacy matters at: support@cubicbuild.com
2. What data we collect
We collect the following personal data:
- Name and email address when you submit our contact form
- Company name and service requirements when you enquire about our services
- Domain name when you use our free security checker tool
- CV and professional details if you apply to join our specialist network
- Payment information processed securely by Stripe (we do not store card details)
- Technical data including IP address and browser type via standard web server logs
3. How we use your data
We use your personal data to:
- Respond to your enquiries and provide our services
- Process payments for subscriptions and one-off services
- Send you security reports and monitoring alerts you have requested
- Follow up on security checker results with relevant service information
- Comply with our legal and regulatory obligations
We do not sell your personal data to third parties. We do not use your data for automated decision-making or profiling.
4. Legal basis for processing
We process your personal data on the following legal bases:
- Contract performance — to deliver services you have purchased
- Legitimate interests — to follow up on security checker results and service enquiries
- Legal obligation — to comply with UK law including HMRC requirements
- Consent — where you have explicitly opted in to marketing communications
5. Who we share data with
We share your data only with trusted third parties necessary to deliver our services:
- Stripe — payment processing (stripe.com/gb/privacy)
- Netlify — website hosting and form submissions (netlify.com/privacy)
- Microsoft 365 — email communications (microsoft.com/privacy)
- Anthropic Claude API — AI-powered security report generation
All third-party processors are required to handle your data in compliance with UK GDPR.
6. How long we keep your data
- Enquiry and contact form data — 2 years from last contact
- Client data — 7 years from end of service (HMRC requirement)
- Security checker data — 90 days
- Payment records — 7 years (legal requirement)
7. Your rights
Under UK GDPR you have the right to:
- Access the personal data we hold about you
- Correct inaccurate personal data
- Request deletion of your personal data
- Object to or restrict processing of your data
- Data portability — receive your data in a machine-readable format
- Withdraw consent at any time where processing is based on consent
To exercise any of these rights, contact us at support@cubicbuild.com. We will respond within 30 days.
8. Cookies
Our website uses only essential functional cookies required for the site to operate. We do not use tracking, advertising, or analytics cookies. No cookie consent banner is required as we only use strictly necessary cookies.
9. Security
We take the security of your personal data seriously. Our website uses SSL encryption, DMARC email authentication, and DKIM signing. Access to personal data is restricted to authorised personnel only.
10. Changes to this policy
We may update this policy from time to time. The date at the top of this page indicates when it was last updated. Continued use of our services after an update constitutes acceptance of the revised policy.
11. Complaints
If you are unhappy with how we handle your personal data, you have the right to complain to the Information Commissioner's Office (ICO) at ico.org.uk or by calling 0303 123 1113.