Privacy Policy

Last updated: 3/6/2026

 1. Introduction

IT Security Locksmith ("we", "us", "our") is committed to protecting and respecting your privacy.

This Privacy Policy explains how we collect, use, store and protect your personal data when you:

  • Visit our website: https://www.itsecuritylocksmith.co.uk
  • Enquire about or purchase our services
  • Submit information for cryptocurrency recovery assessments
  • Subscribe to content such as blogs, webinars or training

It also explains your rights under UK data protection law.

2. Data Controller

IT Security Locksmith is the data controller responsible for your personal data.

  • Contact details: Jonathan Evans
  • Business name: IT Security Locksmith Limited
  • Email: contact@itsecuritylocksmith.co.uk
  • Address: Ellerd House, Amenbury Lane, Harpenden, Hertfordshire, England, AL5 2EJ

If you have any questions about this Privacy Policy or your data, please contact us using the details above.

3. What Personal Data We Collect

We may collect, use, store and transfer the following types of personal data:

  • Identity & Contact Data
  • Name
  • Email address
  • Telephone number
  • Billing and delivery address
  • Financial & Transaction Data
  • Payment details
  • Purchase history
  • Technical Data
  • IP address
  • Browser type and version
  • Time zone settings and location
  • Operating system and platform
  • Usage Data
  • Information about how you use our website and services
  • Cryptocurrency Recovery Assessment Data
  • Marketing & Communications Data
  • Preferences in receiving communications
  • We do not intentionally collect special category data (e.g. health, religion)
  • Our website is not intended for children, and we do not knowingly collect data relating to children.

Where you request assistance relating to cryptocurrency recovery, we may collect:

  • Estimated value of cryptocurrency wallet(s)
  • Nationality
  • Location of the recovery request
  • Details explaining why recovery is required
  • Any supporting information you voluntarily provide

⚠️ You must not provide sensitive personal data unless necessary, and we request that you do not include mnemonic seed phrases, private keys, passwords, passphrases or full wallet access credentials through unsecured channels.

4. How We Collect Your Data

We collect data using the following methods:

  • Direct interactions
  • You may provide personal data when you:
  • Contact us via email, phone or forms
  • Request information or services
  • Purchase services
  • Submit cryptocurrency recovery assessment details
  • Register for webinars or courses

Automated technologies

As you use our website, we may automatically collect technical data through standard server and analytics processes.

5. How We Use Your Personal Data (Lawful Basis)

We will only use your personal data where the law allows us to.

Purpose

Type of Data

Lawful Basis

Respond to enquiries

Identity, Contact

Legitimate interests

Provide services

Identity, Contact, Financial

Contract

Cryptocurrency recovery assessment

Identity, Contact, Crypto Assessment Data

Pre-contract steps / Legitimate interests

Deliver recovery-related services

Identity, Financial, Crypto Data

Contract

Manage payments & transactions

Financial

Contract

Improve website & services

Technical, Usage

Legitimate interests

Comply with legal obligations

All relevant

Legal obligation

Send service-related communications

Contact

Contract / Legitimate interests

We do not carry out unsolicited marketing and do not cold call.

6. Marketing Communications

We will only send marketing communications if:

  • You have requested information, or
  • You have given consent where required
  • You can opt out at any time by contacting us.

7. Data Sharing

We do not sell your personal data.

We may share your data with trusted third-party service providers, including:

  • Website hosting providers
  • Payment processors
  • IT and system administration services

These providers are required to process your data only on our instructions and to protect it appropriately.

8. International Transfers

Some of our service providers may be located outside the UK (for example, hosting infrastructure).

Where data is transferred internationally, we ensure appropriate safeguards are in place, such as:

Equivalent legal protections for personal data

9. Data Security

We implement appropriate technical and organisational measures to protect your data, including:

  • Access controls and authentication
  • Secure systems and environments
  • Limiting access to authorised individuals only
  • However, no system is completely secure.

10. Data Retention

We only retain your personal data for as long as necessary for the purposes we collected it.

Typical retention periods:

  • Customer and transaction data: up to 7 years (legal/tax requirements)
  • Cryptocurrency recovery assessment data: retained only as long as necessary to assess and deliver services, or to meet legal obligations 

Under UK GDPR, you have the right to:

  • Request access to your personal data
  • Request correction of inaccurate data
  • Request erasure of your data
  • Object to processing
  • Request restriction of processing
  • Request transfer of your data
  • Withdraw consent at any time (where applicable)

To exercise your rights, contact us using the details above.

12. Complaints

You have the right to complain to the UK data protection authority:

Information Commissioner’s Office (ICO)

Website: https://ico.org.uk

We would, however, appreciate the opportunity to address your concerns first.

Our website may include links to third-party websites.

We are not responsible for their privacy practices.

14. Changes to This Policy

We may update this Privacy Policy from time to time.

The latest version will always be available on our website, with the “Last updated” date shown above.