Privacy Policy

Last Updated on 18 July 2025

Controller:
KDL Services Ltd (12215474)
ICO registration ZB892726
Contact: privacy@kaidleifert.com

1. Introduction & Who We Are

This Privacy Policy applies to the services and websites provided by KDL Services Ltd, a company registered in the United Kingdom (Company No. 12215474). KDL Services Ltd is the data controller responsible for your personal data. Our Information Commissioner’s Office (ICO) registration number is ZB892726.

This policy covers the data processing activities for all our brands and associated domains, including:

  • kaidleifert.com
  • aigovernance.ae
  • guardgrc.com
  • highperformancefreedom.com

For any data protection inquiries, you can contact us at: privacy@kaidleifert.com

2. Personal Data We Collect

We collect the following types of personal data to provide and improve our services:

  • Identification Data: Your name and email address. We may also collect an optional postal address for billing purposes.
  • Transaction Data: Details of the product or service purchased, the amount paid, currency, and any applicable tax information (e.g., VAT).
  • Service Data: Information you provide as part of using our services, such as questionnaire answers or assessment scores for personalised reports.
  • Usage Data: Technical information about how you interact with our websites and emails, including your IP address, browser type, page views, email opens, and link clicks. This data is used for analytics and may be used for re-marketing purposes.
3. How and Why We Use Your Data (Legal Basis)

We only process your personal data when we have a legal basis to do so under data protection laws.

Purpose of ProcessingLegal basis
To deliver the products you purchase and provide customer support.Performance of Contract
To generate personalised reports and blueprints based on your inputs.Legitimate Interest to provide a tailored service
To send you newsletters, marketing offers, and other updates.Your Consent. You can opt-out at any time.
For accounting, tax records, and legal compliance.Legal obligation
4. Data Sharing & International Transfers
RecipientPurpose
LemonSqueezyOur Merchant of Record for payment processing, tax (VAT) compliance, and fraud prevention.
StripeSecure payment processing for transactions handled by LemonSqueezy.
FluentCRMTo manage our email marketing lists and send automated communications.
HostingerFor secure website and DNS hosting.
OpenAI LLCTo power the AI models used for generating personalised reports. Data is minimised for this purpose.

Some of these providers are based outside the UK. When we transfer your data internationally (e.g., to the US), we rely on legally-approved safeguards, such as the UK’s Standard Contractual Clauses (SCCs), to ensure your data is protected.

5. Retention

We will only retain your personal data for as long as necessary to fulfil the purposes we collected it for.

  • Transaction data is kept for 7 years to comply with tax and legal requirements.
  • Service data is kept for 24 months after our last interaction.
  • Marketing data is kept until you withdraw your consent.
6. Your Data Protection Rights

You have rights over your personal data. We are committed to upholding these rights regardless of your location.

You have the right to Access, Rectify, Erase, Restrict, Portability of, and to Object to the processing of your data. For our clients in the UAE, we voluntarily apply the core principles of the UAE’s Personal Data Protection Law (PDPL) in how we handle your data.

o exercise any of your rights, please contact us at privacy@kaidleifert.com. We will respond to your request within 30 days. As a UK-registered company, the designated supervisory authority for any formal complaints is the UK’s Information Commissioner’s Office (ICO) at ico.org.uk.

7. Cookies

Our websites use cookies. Non-essential cookies are only loaded with your explicit consent. For more detailed information, please see our separate Cookie Policy.