Privacy Policy
Last updated: 27 August 2026
1. Data controller
Flow Route Base Ltd is the data controller for personal data collected through flowroutebase.click and session bookings. Contact: hello@flowroutebase.click, Street: 150 Berryknowes Avenue; City: Glasgow; State/province/area: Glasgow City; Phone number: 0141648405; Zip code: G52 2LS; Country calling code: +44; Country: United Kingdom.
2. Data we collect
- Contact form: name, email address, message content, optional session preference and preferred date.
- Booking correspondence: email exchanges, appointment dates, and payment confirmation references.
- Technical data: IP address, browser type, and pages visited when analytics cookies are accepted.
- Cookie preference: your accept or reject choice stored locally in your browser.
We never ask you to submit your recovery phrase, private keys, or wallet seed words through our website or email.
3. How we use data
- Responding to enquiries and confirming session bookings
- Sending pre-session questionnaires and follow-up resources
- Improving website content when analytics are enabled
- Meeting legal and accounting obligations
4. Legal bases
We process data on the basis of contract (session bookings), legitimate interests (responding to enquiries and improving our educational resources), and consent (analytics cookies).
5. Retention
Contact form submissions and booking records are retained for up to three years unless a longer period is required for tax or dispute resolution. Analytics data is retained according to our analytics provider's settings, typically 14 months.
6. Your rights
Under UK GDPR you may request access, correction, erasure, restriction, portability, or objection to processing. You may withdraw consent for analytics at any time via cookie settings. Contact hello@flowroutebase.click to exercise your rights.
7. International transfers
Our website may use service providers located outside the UK. Where data is transferred internationally, we ensure appropriate safeguards such as Standard Contractual Clauses or UK adequacy regulations apply.
8. Security
We use HTTPS, access controls on booking records, and staff training on data minimisation. No method of transmission over the internet is completely secure; please avoid sending sensitive wallet credentials by email.
9. Third parties
We do not sell personal data. Limited sharing may occur with email hosting, calendar scheduling, and analytics providers under data processing agreements. See our cookie policy for cookie-specific details.
10. Complaints
You may lodge a complaint with the Information Commissioner's Office (ICO) if you believe your data has been handled improperly.