Summary: Corvalenix Research is committed to protecting your personal data. We collect only what is necessary to deliver our services. We do not sell your data, share it for advertising, or use it for any purpose beyond what is stated in this policy. This notice explains your rights and how we protect your information under the UK General Data Protection Regulation (UK GDPR) and the Data Protection Act 2018.
About This Policy
This Privacy Policy describes how Corvalenix Research Ltd ("Corvalenix Research", "we", "us") collects, uses, and protects personal data in connection with our website (corvalenix.com) and our market intelligence and research platform.
We are committed to processing personal data lawfully, fairly, and transparently in accordance with the UK GDPR and the Data Protection Act 2018. Please read this policy carefully. By using our website or services, you acknowledge the practices described here.
Who We Are
Corvalenix Research Ltd is the data controller for personal data collected through our website and services.
- Registered address: The Scalpel, 52 Lime Street, London EC3M 7AF, United Kingdom
- Email: [email protected]
- Phone: +44 20 7946 5281
We are registered with the Information Commissioner's Office (ICO). If you have any questions about how we handle your personal data, please contact us using the details above or in Section 14.
Information We Collect
Information you provide directly
- Enquiry and contact data — name, email address, and phone number submitted via our membership enquiry form or when contacting us directly.
- Account information — name, email, and billing details when you subscribe to a membership plan.
- Payment details — processed by our third-party payment provider. We do not store full card numbers on our servers.
- Correspondence — content of messages sent to us by email or through our website.
Information collected automatically
- Usage data — pages visited, features accessed, time on platform, and navigation patterns.
- Technical data — IP address, browser type, operating system, screen resolution, and referring URL.
- Cookie data — as described in Section 9.
How We Use Your Information
We use personal data only for the purposes for which it was collected:
- To respond to membership enquiries and onboard new subscribers
- To deliver platform services including reports, briefings, sector intelligence, and data tools
- To process payments and manage billing and invoicing
- To send service-related communications (e.g. plan confirmations, support responses, platform updates)
- To send our market intelligence newsletter and weekly briefings to active subscribers
- To improve our platform and content through aggregated, anonymised usage analytics
- To comply with our legal obligations under UK law
We do not use your personal data for automated individual decision-making or profiling for third-party marketing purposes.
Legal Basis for Processing
Under UK GDPR, we rely on the following lawful bases for processing your personal data:
- Contract (Article 6(1)(b)) — processing is necessary to fulfil the membership agreement between you and Corvalenix Research.
- Consent (Article 6(1)(a)) — where you have given clear consent, including by submitting an enquiry form or subscribing to our newsletter.
- Legitimate interests (Article 6(1)(f)) — for fraud prevention, platform security, and internal analytics, where our interests do not override your rights.
- Legal obligation (Article 6(1)(c)) — where UK law requires us to retain or disclose personal data (e.g. for tax and accounting purposes).
Sharing Your Information
We do not sell, rent, or trade your personal data. We may share it in the following limited circumstances:
- Service providers — third-party vendors who assist us in operating our platform (e.g. payment processors, email delivery, hosting, analytics). All providers are contractually bound to handle data only as directed by us and in compliance with UK GDPR.
- Legal requirements — where required by law, court order, or a legitimate governmental or regulatory authority (including the FCA or ICO).
- Business transfers — in connection with a merger, acquisition, or sale of assets, where the receiving party agrees to privacy obligations equivalent to those in this policy.
- With your explicit consent — in any other circumstance where you have expressly authorised disclosure.
We do not share personal data with financial institutions, insurers, or product providers. Our research independence depends on this boundary, and it is maintained as a matter of policy, not just law.
Data Retention
We retain personal data only for as long as necessary for the purposes set out in this policy, or as required by applicable law:
| Category | Retention Period | Basis |
|---|---|---|
| Active subscriber data | Duration of membership + 7 years | Contract, legal obligation (tax/accounting) |
| Enquiry data (non-converting) | 12 months | Legitimate interest |
| Financial records | 7 years minimum | Legal obligation (HMRC) |
| Platform usage analytics | Up to 3 years (anonymised) | Legitimate interest |
| Correspondence and support records | 3 years | Legitimate interest |
When data is no longer required, it is securely deleted or anonymised.
Your Rights Under UK GDPR
You have the following rights with respect to your personal data:
- Right of access — to request a copy of the personal data we hold about you (Subject Access Request).
- Right to rectification — to request correction of inaccurate or incomplete data.
- Right to erasure — to request deletion of your personal data in certain circumstances.
- Right to restrict processing — to request that we limit how we use your data while a dispute is resolved.
- Right to data portability — to receive a copy of your data in a structured, machine-readable format.
- Right to object — to object to processing based on legitimate interests or for direct marketing.
- Right to withdraw consent — to withdraw consent at any time where processing is based on consent.
To exercise any of these rights, contact us at [email protected]. We will respond within 30 days. You also have the right to lodge a complaint with the Information Commissioner's Office (ICO) at ico.org.uk.
Cookies
Our website uses cookies and similar technologies:
- Essential cookies — required for core website functionality (e.g. session management, security). Cannot be disabled without impairing the site.
- Analytics cookies — used to understand aggregate usage patterns. Data is anonymised before analysis.
- Preference cookies — used to remember your settings (e.g. billing toggle state).
We do not use advertising, tracking, or third-party marketing cookies. You can manage cookies through your browser settings. Blocking essential cookies may affect website functionality.
Data Security
We implement appropriate technical and organisational measures to protect personal data against unauthorised access, loss, or destruction, including:
- Encryption of data in transit using TLS 1.2 or higher
- Access controls limiting staff access to personal data on a need-to-know basis
- Regular security assessments of our platform and third-party providers
- Incident response procedures, including notification to the ICO and affected individuals in the event of a personal data breach posing a significant risk, as required under UK GDPR
No method of data transmission or storage is entirely secure. While we take reasonable precautions, we cannot guarantee absolute security.
International Transfers
Some of our third-party service providers may process personal data outside the UK or European Economic Area. Where such transfers occur, we ensure appropriate safeguards are in place in accordance with UK GDPR, including Standard Contractual Clauses (SCCs) or transfers to countries with adequate data protection under UK adequacy decisions.
Children
Our services are directed at adults and business professionals. We do not knowingly collect personal data from individuals under 18. If you believe we have inadvertently collected such data, please contact [email protected] and we will delete it promptly.
Changes to This Policy
We may update this Privacy Policy to reflect changes in our practices or applicable law. When we make material changes, we will update the date at the top of this page and notify active subscribers by email where appropriate. Your continued use of our services after such notice constitutes acceptance of the updated policy.
Contact & Complaints
For any questions, access requests, or concerns about this Privacy Policy or your personal data:
Data Controller — Corvalenix Research Ltd
The Scalpel, 52 Lime Street, London EC3M 7AF
Email: [email protected]
Phone: +44 20 7946 5281
We respond to data requests within 30 days as required under UK GDPR.
To complain to the supervisory authority: ico.org.uk · 0303 123 1113