Skip to content
Legal · Compliance Radar

Privacy notice

What Compliance Radar collects, why, how long it is kept, and the rights you can exercise over it.

Last updated 15 September 2026

Who we are

Compliance Radar is a product of Tamazia. Tamazia is the controller for the personal data described in this notice. If you are a client, the audit evidence we hold about your website is processed on your instructions under your services agreement, and that agreement governs where this notice and it differ.

What we collect

DataWhyBasis
Email address, website address, and anything you type into the audit or register formsTo reply with your provision list and to run the audit you asked forSteps at your request prior to a contract; legitimate interests in responding to enquiries
Your selected combination (sector, sub-sector, jurisdiction, sub-jurisdiction)To resolve the law stack the page shows youLegitimate interests; stored in your own browser, not on our servers, unless you submit a form
Captured artefacts from a client website: pages, headers, network logs, cookie state, screenshotsTo produce evidence-backed findingsPerformance of the services contract
Billing details, handled by StripeTo take paymentPerformance of contract; legal obligation for records

We do not run advertising trackers on this site, and we do not sell or share personal data for cross-context behavioural advertising.

Evidence artefacts

Audit captures are read from public pages: the same pages any visitor can open. Artefacts are hashed at capture, access-controlled, and retained as your evidence record for the period set in your contract. Network captures are slimmed so personal data appearing in response bodies is not needlessly retained. Where a capture would require us to enter real payment details or authenticate as a user, we do not: the result is recorded as "not assessed" instead.

How long we keep it

Who we share it with

Processors only, under written terms: our hosting and email providers, and Stripe for payments. We do not transfer personal data outside the UK or EEA except to processors covered by an adequacy decision or standard contractual clauses. We do not resell data to anyone.

Your rights

You can ask for access, correction, erasure, restriction, portability, or object to processing based on legitimate interests. Write to [email protected] and we will respond within one month. If you are unhappy with the outcome you can complain to the ICO at ico.org.uk, or to your local supervisory authority in the EEA.

This notice describes how we handle your data. It is not legal advice about how you should handle yours, which is what the product is for.