Privacy Policy

Privacy Notice

V2 23.10.25

1. Introduction

This privacy notice explains how we collect, use, and protect your personal data through your use of our websites and mobile applications, including any information you may provide when you purchase a product or service, sign up for our newsletter, or take part in a prize draw or competition.

This privacy notice applies to your use of:

By providing us with your data, you confirm that you are over 13 years of age.


2. Who is the Data Controller and Data Processor?

The data controller determines the purposes and means of processing personal data, while a data processor processes personal data on behalf of the data controller.

Who acts as the data controller depends on the context of the processing:

  • When we provide our products and services via our tracking system websites, our customer is the data controller, and we are the data processor. Scorpion Automotive does not determine why personal data is processed in this case—the purpose is defined by our customers.
  • When we process personal data for our own business purposes, such as managing client relationships, we act as the data controller. In this capacity, Scorpion Automotive Ltd (“we”, “us”, or “our”) is responsible for your personal data.

3. Our Data Protection Officer

We have appointed a Data Protection Officer (DPO) to help ensure your personal information is handled according to best practices.

Data Protection Officer: Andrew Jeffrey
Email: dpo@scorpionauto.com
Post: Data Protection Officer, Scorpion Automotive, Scorpion House, Chorley North Business Park, Drumhead Road, Chorley, PR6 7DE, UK

If you are unhappy with how we handle your data, you may contact the Information Commissioner’s Office (ICO)(www.ico.org.uk). We would appreciate the opportunity to resolve any complaint directly first.

It is important that your information is accurate and up to date. Customers of our tracking system products can update their details through their product’s website or mobile app. Other customers can contact us at dpo@scorpionauto.comto make updates.


4. What Data Do We Collect About You?

Personal data means any information capable of identifying an individual. It does not include anonymised data.

We may collect and process the following categories of personal data:

(Content retained as in your original text — all sections from Communication Data to Sensitive Data remain unchanged, except for minor grammar and formatting corrections for clarity.)


5. How We Collect Your Personal Data

We collect personal data in the following ways:

  • Direct interactions: You may provide data by filling in forms on our websites, sending emails, or otherwise contacting us.
  • Automated technologies: We may automatically collect technical data using cookies and similar technologies. See our Cookie Policy for more details.
  • Third-party sources: We may receive data from analytics providers (e.g. Google), advertising networks (e.g. Facebook), and other service providers or publicly available sources such as Companies House and the Electoral Register.

6. Marketing Communications

Our lawful basis for sending marketing communications is either your consent or our legitimate interest in growing our business.

Under the Privacy and Electronic Communications Regulations, we may send marketing communications if you have made a purchase, requested information from us, or agreed to receive such communications—and have not opted out. Limited companies may receive marketing emails without prior consent, though you may opt out at any time.

Before sharing your data with third parties for their own marketing purposes, we will obtain your explicit consent.

You can stop receiving marketing messages at any time by following the unsubscribe links in our communications or emailing dpo@scorpionauto.com.

Opting out of marketing does not affect communications related to purchases, warranties, or other transactional matters.


7. Disclosures of Your Personal Data

We may share your personal data with:

  • Service providers who provide IT and system administration services
  • Professional advisers such as lawyers, bankers, auditors, and insurers
  • Government bodies requiring us to report processing activities
  • Third parties in the event of a business transfer or merger

All third parties must respect the security of your data and process it only in accordance with our instructions and the law.


8. International Transfers

We may transfer data to service providers (e.g. Dropbox, Mailchimp, WeTransfer) with servers based outside the European Economic Area (EEA).

Whenever we transfer data outside the EEA, we ensure appropriate safeguards are in place, such as:

  • Transfers to countries deemed adequate by the European Commission
  • Use of EU-approved standard contractual clauses or certification mechanisms
  • Transfers to US providers under the EU–US Privacy Shield or its successor frameworks

Where no safeguard is available, we will request your explicit consent before proceeding.


9. Data Security

We implement appropriate security measures to prevent accidental loss, unauthorised access, or disclosure of your personal data. Access is restricted to personnel with a legitimate business need and subject to confidentiality obligations.

In case of a data breach, we will notify you and any relevant authorities as required by law.


10. Data Retention

We retain your personal data only as long as necessary for the purposes it was collected, including legal and accounting obligations. Typically, we retain customer records for six years after the end of the customer relationship.

In some cases, we may anonymise data for statistical or research purposes, in which case it will no longer identify you.


11. Your Legal Rights

You have the right to:

  • Request access to, correction, or deletion of your personal data
  • Object to or restrict its processing
  • Request transfer of your data
  • Withdraw consent at any time

You can learn more about your rights at https://ico.org.uk/for-organisations/guide-to-the-general-data-protection-regulation-gdpr/individual-rights/.

To exercise these rights, email sales@scorpionauto.com.
We may need to verify your identity before fulfilling your request. We aim to respond within one month.


12. Third-Party Links

Our websites may include links to third-party websites, plug-ins, or applications. Clicking those links may allow third parties to collect data about you. We are not responsible for their privacy practices and encourage you to review their privacy notices.


13. Cookies

You can set your browser to refuse all or some cookies or alert you when websites use them. However, some parts of our websites may not function properly if cookies are disabled.

For more information, please refer to our Cookie Policy.

Additional Information:

  • The website uses cookies to help keep track of items you add to your shopping cart, including when you have abandoned your cart. This information may be used to determine when to send cart reminder messages via SMS.
  • We will not share your SMS campaign opt-in with any third party for purposes unrelated to providing you with the services of that campaign. We may share your personal data, including your SMS opt-in or consent status, with third parties that help us deliver our messaging services—such as platform providers, phone companies, and vendors assisting in the delivery of text messages.