← Back to Home
Privacy Policy
Last Updated: January 2025
1. Introduction
Englander ("we", "our", or "us") is committed to protecting your privacy. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our Location Confirmation mobile application and our website at englander.ai.
We comply with UK GDPR, EU GDPR (where applicable), the UK Data Protection Act 2018, and the ePrivacy Directive (Cookie Law).
2. Information We Collect
2.1 Personal Information
- Email address (for account creation and authentication)
- Password (encrypted and hashed)
- Linnworks account credentials (access tokens, not raw passwords)
- Subscription/payment metadata (processed via Stripe)
2.2 Usage Data
- Device information (model, operating system version)
- App and website usage statistics (pages viewed, features used, scan frequency)
- Error logs and crash reports
- Interactions with our consent banner and privacy settings
2.3 Linnworks Data
When you connect your Linnworks account, we may access:
- Stock levels and inventory data
- Warehouse locations and bin/rack locations
- Product information (SKUs, titles)
3. How We Use Your Information
We use your information to:
- Provide and maintain the Location Confirmation service
- Authenticate your access and manage sessions
- Integrate with Linnworks and display inventory data
- Process subscription payments and manage billing
- Send important service-related notifications
- Improve app and website performance and user experience
- Respond to support requests
- Comply with legal and regulatory obligations
4. Cookies, Tracking and Google Consent Mode v2
4.1 Cookies and Similar Technologies
We use cookies and similar technologies on our website for:
- Essential functions (login, security, fraud prevention)
- Analytics (to understand how our site is used)
- Advertising and personalisation (where enabled)
4.2 Google Analytics and Google Ads
We use Google Analytics and, where applicable, Google Ads. These services help us understand site usage and, if you consent, may support advertising and remarketing.
4.3 Google Consent Mode v2 (Advanced)
Our website uses Google Consent Mode v2 in Advanced Mode. This means that Google tags adjust their behaviour based on your consent choices:
- Before consent, Google receives limited, cookieless pings with consent state information.
- After consent, Google may use cookies and full measurement data where you have granted permission.
We send consent signals for:
analytics_storage
ad_storage
ad_user_data
ad_personalization
4.4 Cookieless Pings
When consent for cookies is denied, Google receives only privacy-safe signals ("cookieless pings") that do not use cookies or other identifiers. These include basic information such as timestamp, referrer URL and general device/browser information. Google may use these pings for aggregated, modelled reporting.
4.5 Managing Your Cookie Preferences
You can manage your cookie preferences at any time using the "Cookie settings" link in the footer of our website. This allows you to:
- Accept or decline analytics cookies
- Accept or decline advertising/personalisation cookies
Note: Strictly necessary cookies cannot be disabled as they are required for the site and app to function correctly.
4.6 Consent Duration and Renewal
Your cookie preferences are stored for 12 months, after which you will be asked to provide consent again. You may also change or withdraw your consent at any time using the "Cookie settings" link.
5. Data Storage and Security
We take data security seriously and implement industry-standard measures to protect your information:
- All data transmissions are encrypted using HTTPS/TLS
- Passwords are hashed using bcrypt before storage
- Data is stored in secure Firebase (Google Cloud) infrastructure within UK/EU regions
- Access to data is restricted on a need-to-know basis
- We conduct regular security audits and updates
6. Data Sharing and Disclosure
We do not sell your personal information. We may share information with:
- Firebase (Google Cloud) – hosting, authentication and database services
- Stripe – payment processing
- Linnworks – inventory management integration
- Professional advisers (e.g. accountants, legal advisers)
- Public authorities where required by law
7. Data Retention
- Account data: retained while your account is active and for a reasonable period afterwards, unless you request deletion.
- Usage logs: retained for approximately 90 days.
- Financial records: retained for 7 years as required by law.
8. Your Rights (UK GDPR / EU GDPR)
You have the right to:
- Access your personal data
- Rectify inaccurate personal data
- Request erasure of your personal data
- Restrict or object to processing
- Data portability
- Lodge a complaint with a supervisory authority
To exercise your rights, contact: privacy@englander.ai
9. Children's Privacy
Our service is not intended for users under 16 years of age. We do not knowingly collect data from children. If you believe a child has provided us with personal data, please contact us.
10. International Data Transfers
Your data is primarily stored in UK/EU data centres. Where we transfer data outside the UK/EU, we only do so where appropriate safeguards are in place (for example, standard contractual clauses).
11. Changes to This Policy
We may update this Privacy Policy to reflect changes in our practices or legal requirements. We will post the updated version on this page and adjust the "Last Updated" date accordingly.
12. Contact Us
For privacy-related questions or to exercise your rights, contact: