1. Who We Are
Apex Edge Sales Engineering Limited (“we”, “us”, “our”) is the data controller responsible for your personal data.
Company No.: 15821626
ICO Registration: ZB796431
Registered office: 71-75 Shelton Street, Covent Garden, London, WC2H 9JQ, United Kingdom
contact@apexedgesalesengineering.com
We do not have a statutory requirement to appoint a Data Protection Officer.
2. What This Policy Covers
This policy explains how we collect, use, share, and protect personal data when you:
- visit our websites,
- contact us or receive B2B communications from us,
- submit an enquiry or form on our website,
- use free tools such as ApexIQ WinScore Preview, or
- engage with our publications, reports, and services in a business capacity.
3. Personal Data We Collect
We may collect:
Business contact and relationship data
Name, business email address, company, role, and communications with us.
Enquiry and correspondence data
Information you provide in messages, calls, meeting notes, forms submitted via our website, or documents you share.
Client delivery and commercial data (where relevant)
Contract and service details, billing and invoice records, and delivery communications.
Website usage data (analytics only)
Aggregated and anonymous information about page visits and traffic patterns, collected via Netlify Web Analytics from server-side CDN logs. This does not use cookies or personally identifying information.
We do not intentionally collect special category data (for example, health data). Please do not send it to us.
4. Where We Get Your Data From
We obtain personal data from:
- you (directly, when you contact us or engage with us),
- your employer (where you interact with us in a business role),
- referrals and introductions, and
- public professional sources (for example, company websites), where appropriate.
5. How We Use Your Data And Our Lawful Bases
We process personal data only where we have a lawful basis under UK GDPR.
Responding to enquiries and relationship management
Purpose: respond to messages, schedule meetings, manage communications
Lawful basis: legitimate interests (running our business) and, where applicable, steps prior to entering a contract
Delivering services and account administration
Purpose: deliver services, manage contracts, support, invoicing, record-keeping
Lawful basis: performance of a contract, legitimate interests, and legal obligation (where required)
B2B marketing communications
Purpose: send relevant updates, insights, publications, and invitations to business contacts
Lawful basis: legitimate interests (B2B marketing), and consent where required by law or where you have asked to receive specific marketing
You can opt out at any time, and we will maintain a suppression record so we respect your objection. ICO guidance confirms that PECR consent rules for electronic mail marketing do not apply to corporate subscribers, but we comply with data protection law and honour all opt-outs.
Website analytics (Netlify Web Analytics)
Purpose: understand website usage and improve performance
Lawful basis: legitimate interests
We use Netlify Web Analytics, which operates from server-side CDN logs and does not use cookies or personally identifying information. No cookie consent is required for this analytics approach.
Legal, security, and compliance
Purpose: comply with law, protect the business, prevent fraud, manage disputes, enforce rights
Lawful basis: legal obligation and legitimate interests
6. Cookies And Similar Technologies
We use cookies and similar technologies only where strictly necessary for the secure delivery and operation of the Site. We do not use analytics cookies or advertising cookies. See our Cookie Policy for details.
7. Sharing Your Data
We share personal data only where necessary, including with:
- service providers that help us run the website and deliver services (including Netlify, who host and serve this website),
- professional advisers (legal, financial) where required, and
- regulators, courts, or law enforcement where we are legally required to do so.
We do not sell your personal data.
8. International Transfers
Some service providers may process personal data outside the UK, including in the United States. Where this involves a restricted transfer, we use appropriate safeguards such as UK adequacy regulations, the UK International Data Transfer Agreement (IDTA), or the UK Addendum to the EU Standard Contractual Clauses, as applicable.
9. Data Retention
We keep personal data only as long as necessary for the purposes above:
- Client and transaction records: 7 years (tax and legal compliance)
- Business development and enquiries: up to 24 months after last meaningful contact
- B2B marketing records and opt-out history: up to 3 years after last interaction (suppression records kept as needed to ensure we respect opt-outs)
- Consent records (where applicable): up to 5 years for compliance evidence
- Analytics: Netlify Web Analytics data retained in line with Netlify’s data retention terms; we may retain aggregated, non-identifying statistics longer
10. Your Rights
You have rights to:
- access your personal data,
- rectify inaccurate data,
- erase data (in certain circumstances),
- restrict processing,
- object to processing (including direct marketing),
- data portability (where applicable), and
- withdraw consent at any time where we rely on consent.
To exercise your rights: contact@apexedgesalesengineering.com
We aim to respond within one month. For complex or numerous requests, we may extend this period by up to two further months. If we do so, we will inform you within the first month and explain why.
11. Automated Decision-Making
We do not use your personal data for automated decision-making or profiling.
12. Security
We use appropriate technical and organisational measures to protect personal data against unauthorised access, loss, or destruction. These include encrypted data transmission (HTTPS), restricted access controls, and use of reputable hosting and infrastructure providers. No method of transmission or storage is completely secure.
13. Data Breaches
In the event of a personal data breach that is likely to result in a risk to individuals’ rights and freedoms, we will notify the UK Information Commissioner’s Office within 72 hours of becoming aware, as required by UK GDPR. Where the breach is likely to result in a high risk to you, we will also notify you directly without undue delay.
14. Complaints
If you have concerns, contact us first at contact@apexedgesalesengineering.com
You can also complain to the UK Information Commissioner’s Office (ICO) at ico.org.uk or by calling 0303 123 1113.
15. Updates To This Policy
We may update this policy from time to time. The latest version will be published on our website, and the “Last updated” date will reflect the current version.