§Privacy
Privacy Policy
How Breachrr Security handles personal data.
Effective 27 July 2026
What we collect
When you contact us, we collect your name, email address, company, and any information you share about your organisation.
When you visit this website, we collect standard server logs — IP address, browser, pages viewed. We do not use tracking cookies or third-party analytics that identify individual visitors.
How we use it
To respond to your enquiry, to scope and deliver engagements you contract us for, and to maintain records required by law (accounting, tax, and regulatory obligations).
Who we share it with
Our sub-processors, listed on our Trust & Disclosure page. HMRC and other authorities where legally required. We do not sell data to anyone.
Your rights under UK GDPR
You have the right to request access to, correction of, or deletion of your personal data. You can also object to processing, request data portability, or withdraw consent where applicable.
To exercise any of these rights, contact info@breachrrsecurity.com. You can also complain to the ICO if you are unhappy with how we handle your data.
How long we keep it
Enquiries that do not become engagements: 12 months. Engagement records: 7 years, as required by UK accounting regulations.
International transfers
Data may be processed by our sub-processors in the US, EU, or UK. All transfers use appropriate safeguards under UK GDPR — standard contractual clauses or adequacy decisions as applicable.
Contact
For any privacy question: info@breachrrsecurity.com.
Talk to us
Ready when you are. Open for engagements.
An intro conversation to talk through your situation. We'll ask about your stage, your compliance target, and what forced the conversation. Then we tell you honestly whether we're the right fit.