Privacy policy

Last updated: 11 October 2025

The privacy of your data (and it is your data, not ours) is a big deal to us.

Thermotastic is committed to complying with UK GDPR and other UK privacy regulations. In this policy, we explain what data we collect and why, how your data is handled and your rights to your data.

“We”, “us”, and “our” refer to Industry 32 Ltd (trading as Thermotastic) and we act as the data controller.

Legal basis for processing personal data

We process your personal data so we can provide Thermotastic according to our Terms of Service.

We also process personal data when we pursue our legitimate business interests, including accounting, security, fraud prevention, marketing, and product development.

We process personal data when we need to comply with legal obligations.

Personal data we collect

  • Identity data (e.g. your name)
  • Contact data (e.g. your email address)
  • Financial data (e.g. your payment history with us)
  • Usage data (e.g. pages you visit and any errors you come across)
  • Profile data (e.g. your preferences and account settings)
  • Technical data (e.g. your browser information)
  • Location data (to make sure you're based in the UK)

How we collect personal data

  • Most of the personal data we collect is provided by you, when you create an account or contact our support team.
  • Usage, technical and location data are provided by your browser when you use our website.

What we collect and how we use it

Our guiding principle is to only collect the information we need in order to provide the service you signed up for. Here's what that means in practice:

When you sign up

We collect your identity and contact information to create your account, personalise your experience, and send onboarding messages and updates.

When you make a payment

We collect your billing and payment details so we can charge you, calculate VAT, and issue invoices. Stripe handles your full card details. We store only the last four digits, expiry date, and cardholder name.

When you use Thermotastic

Your browser sends technical data, and we track feature usage and preferences. We use this information to improve Timetastic, respond to support requests, and send relevant guides and updates.

When you browse our website

We collect anonymised usage statistics and record how you arrived at the site and your first landing page to evaluate our marketing performance.

When you contact our support team

We collect your identity, contact details, and message content. If you use our forms, we also collect technical data to help diagnose issues.

Data from third parties

We may obtain additional information from third-party suppliers to verify or complete existing records.

Sharing Your Personal Data

We share personal data within the Citation Group for service improvement, analysis, administration, and account management. Each group company acts as its own data controller.

We work with third-party service providers such as software vendors, accountants, legal advisors, tax authorities, and regulators. We encrypt or anonymise data before sharing whenever possible and maintain data processing agreements that require vendors to follow our instructions.

We share personal data when the law requires it or when we must protect our rights or intellectual property.

We may use and share anonymised, aggregated data for business insights, benchmarking, and trend analysis.

International Transfers

Because Timetastic operates globally, your data may move outside your country, including outside the EEA, Switzerland, or the UK.

We transfer your data only when the receiving country offers adequate protection or when the third party uses Standard Contractual Clauses approved by regulators.

Protecting Your Data

  • You choose your own password; please use a strong one and keep it confidential.
  • We encrypt data between your browser and our servers using SSL/TLS.
  • We maintain security measures to prevent unauthorised access, misuse, or loss.
  • We restrict internal access to people who need it and require them to follow confidentiality rules.
  • If a data breach occurs, we follow our breach policy and notify you and regulators when required.

How Long We Keep Personal Data

  • We keep your data while your account remains active.
  • We delete your data when you cancel your account.
  • We delete accounts with no payment or activity for 18 months.
  • We keep certain data for 6 years for legal and accounting purposes.
  • We may store data longer when the law allows it (e.g., for complaints or litigation).
  • We retain support conversations for 12 months and delete them automatically afterward.

Your Rights

You have the right to:

  • Access your personal data
  • Correct inaccurate data
  • Delete your data
  • Restrict how we process your data
  • Receive your data in a portable format

You can exercise most rights through your Timetastic account. If you need help, contact our support team. We may ask for proof of identity to ensure we speak to the correct person.

Marketing

We send onboarding messages, product updates, tips, and information about Citation Group services. We rely on your identity, contact, technical, usage, and profile data to keep these messages relevant.

You can opt out at any time using the “unsubscribe” link or your Timetastic preferences. We will still send essential billing, support, and transactional messages.

Links to Other Websites

Our website may link to external sites with their own privacy policies. Please review those policies before sharing personal data on those sites.

Cookies

We use cookies to recognise users, deliver accurate information, support essential features, and improve our website and Timetastic. You can read more in our Cookie Policy.

Age of Users

Timetastic and our website are not intended for people under 16.

Feedback and Complaints

If you have concerns about our handling of personal data, please contact us. If you want to escalate your concern, you can contact:

  • The Information Commissioner’s Office (UK)
  • Our EU Data Representative, Adam Brogdan (EU residents)

Changes and Questions

We review this policy regularly and publish updates on this page. If we make significant changes, we will email you.

If you have questions or feedback, email hello@timetastic.co.uk.

The privacy of your data (and it is your data, not ours) is a big deal to us.

Thermotastic is committed to complying with GDPR and other privacy regulations. In this policy, we explain what data we collect and why, how your data is handled and your rights to your data.

Summary: For website visitors, we don't use cookies and we don't collect any personal data. If you decide to create an account, we ask for the bare minimum information that's necessary for Thermotastic to function.

As a visitor to this website

The privacy of our website visitors is important to us so we don't collect any personal data. We use Plausible (a privacy-friendly alternative to Google Analytics). This allows us to monitor overall trends in our website traffic, without using cookies or tracking individual visitors.

If you decide to create an account

Our guiding principle is to only collect the information we need in order to provide the service you signed up for. Here's what that means in practice:

What we collect

We ask for your name and email address when you create a Thermotastic account. That's just so we can identify you when you login.

In order to create and manage your web calculators, we process spreadsheet data that you upload.

How we store your information

We use a trusted database provider (Supabase) to ensure that the data we collect is kept fully encrypted and secured.

What we do with your information

The primary use of the data we collect is to create and manage your web calculators. We also use email to share notifications to users.

Who we share your information with

We use a small number of service providers to help us run Thermotastic. We carefully select these service providers and ensure they meet high data protection, data privacy and security standards.

Retention of data

We will retain your information as long as your account is active.

You can choose to delete your Thermotastic account at any time. All of your data will be deleted immediately and permenantly when you delete your account.

Changes and questions

Any updates to our privacy policy will be posted on this page and, if appropriate, sent to you by email.

Contact us at support@thermotastic.co.uk if you have any questions, comments, or concerns about this privacy policy, your data, or your rights with respect to your information.