GateHouse
Legal & policy

Trust, in writing.

Privacy policy

Last updated July 1, 2026 · 8 min read

This policy explains what personal data GateHouse Technologies Ltd. processes as a controller when you use our website and corporate services. It is deliberately short, because our architecture keeps our data footprint small: for customer data processed through the platform, GateHouse acts as a processor and the terms are governed by the Data Processing Addendum.

The platform is metadata-only by design. Customer datasets are processed inside the customer’s own environment and never sent to GateHouse. This policy covers our website and corporate processing — for platform processing, see the DPA.

1 · Who we are

GateHouse Technologies Ltd. (“GateHouse”, “we”) is registered in England & Wales and based in London. For privacy questions, contact privacy@gatehouse.example.

2 · What we collect

When you interact with our website or talk to sales, we process: contact details you provide (name, work email, company, role); communications you send us; and limited technical data (approximate region, device and browser, and cookie identifiers as described in our Cookie policy).

We do not need or want special-category data, and we ask that you do not send it to us through website forms.

3 · Why we process it

  • To respond to sales and support enquiries (legitimate interests / pre-contract steps).
  • To operate, secure and improve our website (legitimate interests).
  • To send product and company updates where you have opted in (consent).
  • To meet legal and accounting obligations (legal obligation).

4 · Legal bases

We rely on legitimate interests, performance of a contract or steps prior to a contract, consent (which you may withdraw at any time), and legal obligation, depending on the processing described above.

5 · Sharing

We share personal data only with vetted service providers acting on our instructions (see Subprocessors), and where required by law. We do not sell personal data. Note that GateHouse is not a data broker — raw data is not a product of ours.

6 · International transfers

Our default posture is EU/UK data residency. Where a transfer outside the UK/EEA is necessary, we rely on adequacy decisions or Standard Contractual Clauses with appropriate safeguards.

7 · Retention

We keep personal data only as long as necessary for the purpose it was collected, then delete or anonymise it. Sales-enquiry records are retained for up to 24 months from last contact unless a relationship is established.

8 · Your rights

Subject to law, you may request access, rectification, erasure, restriction, portability, and object to processing. Contact privacy@gatehouse.example; you also have the right to complain to your supervisory authority (in the UK, the ICO).

Questions about this document? Email legal@gatehouse.example. This page is a plain-language summary for the website; executed agreements govern where they differ.

Talk to sales.

We are glad to walk your legal and security teams through any of this.