Notlio Privacy Policy
Effective date: 2026-03-28
Version: 2026-03-28
This Privacy Policy explains how Notlio collects, uses, stores, and protects personal data when you use our websites, web application, and related services (the "Service").
1. Who we are
Notlio is operated by JMC Tech Ventures LTD, a company registered in England and Wales.
For privacy questions, contact: support@notlio.com
2. Personal data we collect
Depending on how you use the Service, we may collect:
- Account data: email address, username, password hash.
- Authentication/session data: session identifiers, login/logout timestamps, expiry times, security metadata.
- Service usage data: feature interactions, alert settings, search terms, and technical diagnostics.
- Billing data: subscription status, billing plan, payment processor customer/subscription identifiers (we do not store full card details).
- Communications: support messages and related correspondence.
- Technical/device data: IP address, user-agent, timestamps, and error/operational logs.
3. How we collect data
We collect data:
- directly from you (for example, when you sign up or configure alerts);
- automatically when you use the Service (logs, sessions, security events);
- from third parties involved in service delivery (for example, payment processors).
4. Why we use personal data (purposes)
We use personal data to:
- provide and operate the Service;
- authenticate users and secure accounts;
- process subscriptions and manage billing;
- send service communications (including account and operational messages);
- monitor reliability, prevent abuse/fraud, and troubleshoot issues;
- comply with legal obligations and enforce our terms.
5. Lawful bases (UK GDPR)
Where UK GDPR applies, we rely on one or more of:
- Contract: to provide the Service you requested.
- Legitimate interests: to secure, improve, and administer the Service.
- Legal obligation: where processing is required by law.
- Consent: where legally required (for example, certain cookies/communications).
6. Sharing personal data
We may share personal data with:
- cloud and infrastructure providers;
- payment processors and billing providers;
- email and communications providers;
- analytics, monitoring, and security providers;
- professional advisers (legal/accounting) where necessary;
- regulators, authorities, or law enforcement where required by law.
We do not sell your personal data.
7. International data transfers
Your data may be processed in countries outside the UK.
Where required, we use appropriate safeguards for international transfers.
8. Data retention
We retain personal data only as long as necessary for the purposes described in this policy, including legal, accounting, fraud-prevention, and dispute-resolution requirements.
Retention periods vary by data type and operational/legal necessity.
9. Security
We use reasonable technical and organizational measures to protect personal data.
However, no method of transmission or storage is completely secure, and we cannot guarantee absolute security.
10. Your rights
Depending on your location and applicable law, you may have rights to:
- access your personal data;
- correct inaccurate data;
- request deletion;
- restrict or object to certain processing;
- data portability;
- withdraw consent (where processing relies on consent);
- lodge a complaint with a supervisory authority.
To exercise rights, contact support@notlio.com. We may need to verify your identity before acting on requests.
11. Children
The Service is not directed to children under 18, and we do not knowingly collect personal data from children.
12. Cookies and similar technologies
We use cookies and similar technologies as described in our Cookies Policy.
13. Changes to this policy
We may update this Privacy Policy from time to time.
Updated versions take effect on the stated effective date.
Continued use of the Service after the effective date means you accept the updated policy.
14. Contact
If you have questions about this Privacy Policy or personal data practices, contact:
support@notlio.com