Privacy Policy
Last updated: 3/6/2026
1. Introduction
IT Security Locksmith ("we", "us", "our") is committed to protecting and respecting your privacy.
This Privacy Policy explains how we collect, use, store and protect your personal data when you:
- Visit our website: https://www.itsecuritylocksmith.co.uk
- Enquire about or purchase our services
- Submit information for cryptocurrency recovery assessments
- Subscribe to content such as blogs, webinars or training
It also explains your rights under UK data protection law.
2. Data Controller
IT Security Locksmith is the data controller responsible for your personal data.
- Contact details: Jonathan Evans
- Business name: IT Security Locksmith Limited
- Email: contact@itsecuritylocksmith.co.uk
- Address: Ellerd House, Amenbury Lane, Harpenden, Hertfordshire, England, AL5 2EJ
If you have any questions about this Privacy Policy or your data, please contact us using the details above.
3. What Personal Data We Collect
We may collect, use, store and transfer the following types of personal data:
- Identity & Contact Data
- Name
- Email address
- Telephone number
- Billing and delivery address
- Financial & Transaction Data
- Payment details
- Purchase history
- Technical Data
- IP address
- Browser type and version
- Time zone settings and location
- Operating system and platform
- Usage Data
- Information about how you use our website and services
- Cryptocurrency Recovery Assessment Data
- Marketing & Communications Data
- Preferences in receiving communications
- We do not intentionally collect special category data (e.g. health, religion)
- Our website is not intended for children, and we do not knowingly collect data relating to children.
Where you request assistance relating to cryptocurrency recovery, we may collect:
- Estimated value of cryptocurrency wallet(s)
- Nationality
- Location of the recovery request
- Details explaining why recovery is required
- Any supporting information you voluntarily provide
⚠️ You must not provide sensitive personal data unless necessary, and we request that you do not include mnemonic seed phrases, private keys, passwords, passphrases or full wallet access credentials through unsecured channels.
4. How We Collect Your Data
We collect data using the following methods:
- Direct interactions
- You may provide personal data when you:
- Contact us via email, phone or forms
- Request information or services
- Purchase services
- Submit cryptocurrency recovery assessment details
- Register for webinars or courses
Automated technologies
As you use our website, we may automatically collect technical data through standard server and analytics processes.
5. How We Use Your Personal Data (Lawful Basis)
We will only use your personal data where the law allows us to.
|
Purpose |
Type of Data |
Lawful Basis |
|
Respond to
enquiries |
Identity, Contact |
Legitimate
interests |
|
Provide services |
Identity,
Contact, Financial |
Contract |
|
Cryptocurrency
recovery assessment |
Identity,
Contact, Crypto Assessment Data |
Pre-contract
steps / Legitimate interests |
|
Deliver
recovery-related services |
Identity,
Financial, Crypto Data |
Contract |
|
Manage payments
& transactions |
Financial |
Contract |
|
Improve website
& services |
Technical, Usage |
Legitimate
interests |
|
Comply with legal
obligations |
All relevant |
Legal obligation |
|
Send
service-related communications |
Contact |
Contract /
Legitimate interests |
We do not carry out unsolicited marketing and do not cold call.
6. Marketing Communications
We will only send marketing communications if:
- You have requested information, or
- You have given consent where required
- You can opt out at any time by contacting us.
7. Data Sharing
We do not sell your personal data.
We may share your data with trusted third-party service providers, including:
- Website hosting providers
- Payment processors
- IT and system administration services
These providers are required to process your data only on our instructions and to protect it appropriately.
8. International Transfers
Some of our service providers may be located outside the UK (for example, hosting infrastructure).
Where data is transferred internationally, we ensure appropriate safeguards are in place, such as:
Equivalent legal protections for personal data
9. Data Security
We implement appropriate technical and organisational measures to protect your data, including:
- Access controls and authentication
- Secure systems and environments
- Limiting access to authorised individuals only
- However, no system is completely secure.
10. Data Retention
We only retain your personal data for as long as necessary for the purposes we collected it.
Typical retention periods:
- Customer and transaction data: up to 7 years (legal/tax requirements)
- Cryptocurrency recovery assessment data: retained only as long as necessary to assess and deliver services, or to meet legal obligations
11. Your Legal Rights
Under UK GDPR, you have the right to:
- Request access to your personal data
- Request correction of inaccurate data
- Request erasure of your data
- Object to processing
- Request restriction of processing
- Request transfer of your data
- Withdraw consent at any time (where applicable)
To exercise your rights, contact us using the details above.
12. Complaints
You have the right to complain to the UK data protection authority:
Information Commissioner’s Office (ICO)
Website: https://ico.org.uk
We would, however, appreciate the opportunity to address your concerns first.
13. Third-Party Links
Our website may include links to third-party websites.
We are not responsible for their privacy practices.
14. Changes to This Policy
We may update this Privacy Policy from time to time.
The latest version will always be available on our website, with the “Last updated” date shown above.