EqifyBack to home

Privacy Policy

Last updated: February 2026

1. Who we are

Eqify is operated by Eqify Ltd. We are committed to protecting your personal data and respecting your privacy in accordance with the UK General Data Protection Regulation (UK GDPR) and the Data Protection Act 2018.

For any data protection queries, contact us at eqifyltd@gmail.com.

2. What data we collect

We may collect and process the following personal data:

  • Account information: name, email address, and password (stored securely via AWS Cognito).
  • Business details: business name, VAT number, business type, and accounting period.
  • Bank transaction data: account details and transaction history retrieved via Open Banking (TrueLayer).
  • Payment information: managed securely by Stripe. We do not store full card details.
  • Contact form submissions: name, email, and message content.
  • Usage data: how you interact with the service for improvement purposes.

3. How we use your data

We use your data to:

  • Provide and maintain the Eqify service, including VAT categorisation of your transactions.
  • Process payments and manage your subscription.
  • Communicate with you about your account or respond to enquiries.
  • Improve the service and develop new features.

4. Legal basis for processing

We process your data on the following bases:

  • Contract: to provide the service you have signed up for.
  • Legitimate interest: to improve our service and communicate with you.
  • Consent: where you have explicitly opted in (e.g. contact form submissions).

5. Open Banking and TrueLayer

Bank connections are facilitated by TrueLayer, an FCA-authorised provider. When you connect your bank, you authorise TrueLayer to share your transaction data with Eqify. We only access the data you consent to share, and you can revoke access at any time by disconnecting your bank in the dashboard.

6. Data sharing

We do not sell your personal data. We share data only with:

  • TrueLayer: to retrieve your bank transaction data via Open Banking.
  • Stripe: to process subscription payments.
  • Amazon Web Services (AWS): to host and store data securely.

7. Data retention

We retain your data for as long as your account is active. If you delete your account, we will remove your personal data within 30 days, except where we are required by law to retain it.

8. Your rights

Under UK GDPR, you have the right to:

  • Access the personal data we hold about you.
  • Request correction of inaccurate data.
  • Request deletion of your data.
  • Object to or restrict processing.
  • Data portability.
  • Withdraw consent at any time.

To exercise any of these rights, contact us at eqifyltd@gmail.com.

9. Cookies

We use essential cookies required for the service to function (e.g. authentication and CSRF protection). We may use analytics cookies to understand how the service is used. You can control cookie preferences in your browser settings.

10. Changes to this policy

We may update this policy from time to time. We will notify you of significant changes via email or through the service.