Legal

Privacy Policy

How we collect, use and protect your personal data, and the rights you have over it.

Last updated: February 2026

Who we are

We are MetacogAI Limited (Company No. 16906002, registered in England & Wales), trading as MetacogAI, registered office Golden Hinde House, Neptune Wharf, London SE16. We are committed to maintaining the trust and confidence of visitors to our website and we take the protection of your privacy and confidentiality seriously. In particular, we are not in the business of selling, renting or trading email lists with other companies for marketing purposes.

This policy sets out when and why we collect your personal information, how we use it, the limited conditions under which we may disclose it to others, and how we keep it secure.

Types of data we collect

Personal information means any information that may be used to identify you, such as your name, title, phone number or mailing address. In general, you can browse our website without giving us any personal information. We use analytics to understand how visitors use the site and collect only anonymous, aggregated statistics. Where you contact us or register your interest, we may collect:

  • your name
  • your contact details, including postal address, telephone numbers (including mobile numbers) and email address
  • your marketing preferences
  • your feedback and survey responses
  • your location
  • your correspondence and communications with us
  • other publicly available personal data, including information you have shared on a public platform

This list is not exhaustive and in specific instances we may need to collect additional data for the purposes set out in this policy. Some data is collected directly, for example when you email us or book an audit. Other data is collected indirectly, for example your browsing activity. We may also collect personal data from third parties who have your consent to pass your details to us. Our website is not intended for children and we do not knowingly collect data relating to children.

Cookies

A cookie is a small text file that a website transfers to your device for record-keeping purposes, allowing us to analyse site traffic patterns and enhance your browsing experience. A cookie cannot give us access to your device or to information beyond what you provide. Most browsers automatically accept cookies; consult your browser's help if you want to restrict or disable them. If you disable cookies you can still view the publicly available information on our site, but some functions may not be available.

How we use your data

We, and trusted partners acting on our behalf, use your personal data:

  • to provide services to you
  • to make a tailored website available to you
  • to verify your identity
  • with your agreement, to contact you electronically about services we think may interest you
  • to enable us to manage interactions with you
  • where we have a legal right or duty to use or disclose your information, for example in relation to an investigation by a public authority or a legal dispute

Legal basis for processing

We are required to set out the legal basis for our processing of personal data. If a basis on which we process your personal information is no longer relevant, we will stop processing that data.

1. Information we process because we have a contractual obligation. When you buy a service from us, or otherwise agree to our terms and conditions, a contract is formed between you and us. To carry out our obligations under that contract we must process the information you give us. We may also aggregate this information in a general way to monitor our performance. We will continue to process this information until the contract between us ends or is terminated by either party.

2. Information we process with your consent. In some circumstances, such as when you browse our website or ask us for more information about our services, you consent to us processing your information. Wherever possible we will seek your specific consent. Sometimes consent is implicit, such as when you send us a message to which you would reasonably expect a reply. Except where you give explicit consent, we do not use your information in any way that would identify you personally. We will continue to process on this basis until you withdraw your consent or it can reasonably be assumed that your consent no longer exists.

3. Information we process on the basis of legitimate interests. The normal legal basis for processing customer data is that it is necessary for our legitimate interests, including:

  • selling and supplying our services to our customers
  • protecting customers, employees and other individuals and maintaining their safety, health and welfare
  • promoting, marketing and advertising our products and services
  • understanding customer behaviours, activities, preferences and needs
  • improving existing services and developing new ones
  • complying with legal and regulatory obligations
  • handling customer contacts, queries and complaints
  • fulfilling our duties to our customers, colleagues and other stakeholders

Sharing data with third parties

In order to make certain services available to you, we may need to share your personal data with some of our service partners. We only allow service providers to handle your personal data when we have confirmed that they apply appropriate data protection and security, which means they can only use your data to provide services to us and to you, and for no other purpose.

We may contact you by email to invite you to review services you have received from us in order to collect feedback and improve our services. We may also use such reviews in promotional material and media.

How we keep your data secure

We are committed to keeping your personal data safe and secure. Our security measures include:

  • encryption of data
  • regular scenario planning and crisis management exercises so that we are ready to respond to cyber security attacks and data security incidents
  • security controls which protect the infrastructure from external attack and unauthorised access
  • internal policies setting out our data security approach, and training for employees

Links to other websites

Our website may contain links to information on other websites. For websites we do not control, we cannot be responsible for the protection and privacy of any information you provide while visiting them. Those sites are not governed by this policy; if you have questions about how a site uses your information, please check that site's privacy statement.

Your rights

Our policy complies with UK law, including the UK GDPR. You have the right to access, rectify, erase, restrict processing of and port your personal data, to object to processing based on legitimate interests, and to withdraw consent where processing is based on consent.

At any time you may review or update the personal data we hold about you. To obtain a copy of your information, to correct out-of-date or incorrect data, or to ask us to remove personally identifiable information, email moses@metacogai.io. After receiving your request we will tell you when we expect to provide the information and whether any fee applies. Removing your data may limit the service we can provide to you.

Contact and complaints

If you have questions about how we use your personal data that are not answered here, or you want to exercise your rights, email moses@metacogai.io.

You also have the right to lodge a complaint with the Information Commissioner's Office. Further information and contact details are available at ico.org.uk.

Review

We may update this privacy notice from time to time as necessary. The terms that apply to you are those posted on our website on the day you use it.