Privacy Notice
Last updated: 27 July 2026
1. Who we are
JPBRIDGE LTD is a company registered in England and Wales under company number 16301294.
Registered office:
71–75 Shelton Street
Covent Garden
London
WC2H 9JQ
United Kingdom
JPBRIDGE LTD is the data controller for personal information that we collect through this website and in connection with our own business activities and administration.
You can contact us about this Privacy Notice or the way we handle personal information at:
Email: accounts@jpbridge.com
Telephone: +44 20 3807 1129
When we process personal information on behalf of a client as part of providing our services, we may act as a data processor. In those circumstances, we process the information in accordance with the client’s documented instructions and the applicable agreement.
2. Scope of this Privacy Notice
This Privacy Notice explains how we collect, use, store, share and protect personal information in connection with:
this website;
enquiries and requests for quotations;
communications with clients, prospective clients, suppliers, professional advisers and other business contacts;
the provision and administration of our services; and
our legal, financial and general business administration.
In this Privacy Notice, “personal information” means information relating to an identified or identifiable individual.
This Privacy Notice does not apply to websites operated by third parties or to personal information for which another organisation is the data controller.
3. Personal information we may collect
Depending on how you interact with us, we may collect:
your name, organisation, job title and business contact details;
your email address, telephone number and postal address, where relevant;
information contained in enquiries, emails, documents and other communications;
information required to discuss, arrange, provide and manage our services;
client, supplier, contractual, invoicing and payment records;
information obtained from publicly available business sources;
technical information generated when you use our website, including your IP address, browser type, device information, access date and time, referring page and website security information; and
other information that you or an organisation you represent provides to us.
In limited circumstances, information provided in connection with a particular service may include special category personal data. We process such information only where it is necessary and lawful and where appropriate safeguards are in place.
Please do not provide sensitive personal information through the website’s general enquiry form unless we have specifically asked you to do so. Where necessary, we will arrange an appropriate method of communication.
Where we need personal information to enter into or perform a contract, failure to provide the required information may prevent us from responding fully to your request or providing the relevant service.
4. Where we obtain personal information
We may obtain personal information:
directly from you;
from a client, employer, business partner, supplier or professional adviser;
from publicly available sources, including company websites and public business registers;
through correspondence and documents relating to the services we provide; and
automatically through website hosting and security logs.
5. How and why we use personal information
Responding to enquiries
We use contact and enquiry information to respond to questions, discuss requirements, prepare quotations and take steps requested before entering into an agreement.
Our lawful basis is taking steps at your request before entering into a contract or our legitimate interests in responding to business enquiries and developing business relationships.
Providing and managing services
We use personal information to arrange, provide, administer and communicate about our services.
Our lawful basis is the performance of a contract, taking steps before entering into a contract or our legitimate interests in providing services to the organisation you represent.
Managing business relationships
We use business contact information to communicate with clients, prospective clients, suppliers, professional advisers and other relevant parties.
Our lawful basis is our legitimate interest in managing business relationships and operating our business effectively.
Billing, accounting and legal compliance
We use relevant information for invoicing, payments, accounting, tax, record-keeping and compliance with legal and regulatory obligations.
Our lawful basis is compliance with a legal obligation, performance of a contract or our legitimate interests in maintaining accurate business records.
Website operation and security
We may use technical information to operate, maintain and protect our website, prevent misuse and diagnose technical or security problems.
Our lawful basis is our legitimate interest in maintaining a secure and effective website.
Establishing or defending legal rights
We may use and retain relevant information where necessary to establish, exercise or defend legal claims, respond to disputes or comply with requests made under applicable law.
Our lawful basis is compliance with a legal obligation or our legitimate interests in protecting our legal and business interests.
Consent
Where we rely on consent to process personal information, you may withdraw your consent at any time by contacting us.
Withdrawal of consent does not affect the lawfulness of processing carried out before consent was withdrawn.
We do not sell personal information.
6. Special category personal data
Special category personal data includes particularly sensitive information relating to:
health;
racial or ethnic origin;
religious or philosophical beliefs;
political opinions;
trade union membership;
genetic information;
biometric information used for identification; and
a person’s sex life or sexual orientation.
Where JPBRIDGE LTD processes special category personal data as a data controller, we identify an appropriate lawful basis under Article 6 of the UK GDPR and an applicable condition under Article 9.
Where we process such information on behalf of a client, the client is normally responsible for identifying the relevant lawful basis and processing condition. We process the information in accordance with the client’s documented instructions and our contractual obligations.
We take account of the increased sensitivity of such information when determining access controls, security measures, retention periods and methods of communication.
7. Who we may share personal information with
Where necessary and proportionate, we may share personal information with:
website hosting, email, cloud storage, IT and communications providers;
accountants, lawyers, insurers and other professional advisers;
clients, suppliers, service providers and other parties involved in providing an agreed service;
banks and payment service providers;
public authorities, regulators, courts and law-enforcement bodies where required or permitted by law; and
another organisation in connection with a genuine sale, restructuring or transfer of all or part of our business.
Service providers acting on our behalf are required to use personal information only for the agreed purposes and to apply appropriate security measures.
We do not disclose personal information to third parties for their own marketing purposes.
8. International transfers
Some of our service providers, clients or business contacts may process personal information outside the United Kingdom.
Where the UK rules on international data transfers apply, we use an appropriate transfer mechanism. This may include:
UK adequacy regulations;
the UK International Data Transfer Agreement;
the UK Addendum to approved standard contractual clauses; or
another safeguard or exception permitted under applicable data protection law.
Where required, we carry out a transfer risk assessment, referred to in UK legislation as a data protection test, and consider whether additional contractual, technical or organisational safeguards are necessary.
The purpose of this assessment is to ensure that the standard of protection for personal information is not materially lower following the transfer.
You may contact us for further information about the safeguards used for a particular transfer.
9. How long we keep personal information
We retain personal information only for as long as reasonably necessary for the purpose for which it was collected and to meet contractual, legal, accounting, insurance and reporting requirements.
Our usual retention periods are:
general enquiries that do not result in an engagement: up to two years after the last substantive contact;
client, supplier, contractual and service records: normally up to six years after the relevant relationship or service ends;
accounting, invoicing and tax records: for the period required under applicable law;
records processed on behalf of a client: for the period specified in the client agreement or the client’s documented instructions; and
website and security logs: for the period applied by our hosting and technology providers or for as long as reasonably necessary for security and website administration.
We may retain information for longer where reasonably necessary in connection with a legal claim, dispute, regulatory requirement or other legal obligation.
Information may be deleted earlier where it is no longer required.
10. Information security
We use appropriate technical and organisational measures designed to protect personal information against accidental or unlawful loss, alteration, unauthorised access, misuse or disclosure.
Access to personal information is limited to persons and service providers who require it for legitimate business purposes and who are subject to appropriate confidentiality or contractual obligations.
Our security measures may include, where appropriate:
access controls and password protection;
multi-factor authentication;
secure storage and transmission methods;
device and system security;
data minimisation;
backup and recovery procedures; and
secure deletion or disposal.
Although we take reasonable precautions, no method of internet transmission or electronic storage can be guaranteed to be completely secure.
We therefore review and improve our security measures where appropriate.
11. Your data protection rights
Depending on the circumstances and the lawful basis used, you may have the right to:
request access to your personal information;
request correction of inaccurate or incomplete information;
request deletion of your personal information;
request restriction of processing;
object to particular uses of your personal information;
request transfer of information in a portable format;
withdraw consent where processing is based on consent; and
request information about safeguards used for an international transfer.
These rights may be subject to legal conditions, exemptions and limitations.
You have the right to object to processing based on legitimate interests. You also have the right to object to direct marketing at any time.
To exercise any of these rights, please contact:
We may need to request additional information to confirm your identity before responding.
We normally respond to valid requests within one month. This period may be extended where permitted by law if a request is particularly complex or if we have received a number of requests.
12. Automated decision-making
We do not use personal information collected through this website to make decisions based solely on automated processing that produce legal or similarly significant effects.
13. Cookies and similar technologies
This website does not currently use non-essential cookies or similar technologies for analytics, advertising or marketing purposes.
Our website hosting and technology providers may process limited technical information or use technologies that are strictly necessary for the security, delivery and operation of the website.
If our use of cookies or similar technologies changes in the future, we will update this Privacy Notice and provide appropriate information and consent options where required by law.
14. Third-party websites
Our website may contain links to websites operated by third parties.
We are not responsible for the content, security or privacy practices of third-party websites. You should review the privacy information provided by the relevant third party before submitting personal information to it.
15. Questions and complaints
Please contact us first if you have a question or concern about how we handle your personal information. We will review your concern and seek to resolve it.
Email: accounts@jpbridge.com
Telephone: +44 20 3807 1129
You also have the right to make a complaint to the UK Information Commissioner’s Office:
Information Commissioner’s Office
Wycliffe House
Water Lane
Wilmslow
Cheshire
SK9 5AF
United Kingdom
Telephone: 0303 123 1113
Website: Make a complaint to the Information Commissioner’s Office
16. Changes to this Privacy Notice
We may update this Privacy Notice to reflect changes in our services, business activities, systems, service providers or legal obligations.
The latest version will be published on this page together with the date of the most recent update.
Independent Business Support
External support for cross-border business workstreams
+44 20 3807 1129
© 2026 JPBRIDGE LTD. All rights reserved.
Registered office address: 71-75 Shelton Street, Covent Garden, London WC2H 9JQ
Company No. 16301294
VAT: GB 489 0829 38
