Loading...
Loading...
Effective Date: 2026 · Last Updated: 2026
Ellisdata is a trading name of Data Agile Ltd, a company registered in England and Wales (Company No. 14374464), with registered office at:
85 Great Portland Street,Email: support@ellisdata.co.uk
For the purposes of data protection law, Data Agile Ltd acts as Data Controller or Data Processor as described below.
This policy complies with the UK General Data Protection Regulation and the Data Protection Act 2018.
This Privacy Policy explains how we collect, use and protect personal data when you:
Our services are intended for business users only.
We act as Data Controller when:
We act as Data Processor when:
Clients upload business data (including invoices, supplier and customer information) to our platform.
In these cases:
Where we act as Data Processor, individuals should direct data protection requests to the relevant Client organisation.
A. Website Enquiries
B. Portal Account Data
We use passwordless authentication with email OTP and multi-factor authentication (MFA).
C. Client Service Data (Uploaded by Clients)
Clients may upload:
We do not independently verify the accuracy or legality of Client Data.
D. Technical and Usage Data
When you access our website or portal, we may collect:
This is collected for security, monitoring and system improvement purposes.
We process personal data to:
We do not sell personal data.
We do not use Client invoice data for marketing purposes.
We are not responsible for the accuracy, legality, or content of data uploaded by Clients.
We rely on the following lawful bases:
We do not automatically subscribe individuals to marketing lists.
We may send marketing communications only where:
You may withdraw consent at any time by using the unsubscribe link or contacting support@ellisdata.co.uk.
We do not share marketing lists with third parties.
Data is hosted in Microsoft Azure (UK South region only).
We may use the following service providers:
ERP integrations occur only when Clients choose to connect their accounts.
We do not intentionally transfer personal data outside the United Kingdom.
Where third-party providers are engaged, appropriate safeguards are implemented in accordance with applicable data protection law.
We implement appropriate technical and organisational measures including:
Access to personal data is restricted to authorised personnel with a legitimate business need.
No system can be guaranteed to be completely secure.
We retain:
Retention periods may be extended where necessary for the establishment, exercise, or defence of legal claims.
Our platform provides automation and AI-assisted recommendations.
We do not carry out fully automated decision-making that produces legal or similarly significant effects on individuals under Article 22 UK GDPR.
Final decisions remain under Client control.
We do not intentionally process:
The platform is designed for general B2B invoice processing.
Under UK data protection law, individuals have the right to:
To exercise these rights, contact: support@ellisdata.co.uk
Where we act as Data Processor, requests should be directed to the relevant Client organisation.
You also have the right to lodge a complaint with the:
Information Commissioner's Office
We use essential cookies required for platform functionality.
We use Azure Application Insights for system monitoring and diagnostics.
We do not use advertising or marketing tracking cookies.
Non-essential cookies are not deployed without appropriate consent.
A separate Cookie Policy provides further details.
We may update this Privacy Policy from time to time.
The most current version will always be available on our website.