Privacy Policy
Effective: August 2026
Plain English summary: our public marketing websites collect only standard server access logs. No cookies, no analytics, no tracking, no third-party scripts.
This Privacy Policy covers the public marketing websites for Tru-Digital Services and Tru Data Protection.
It does not cover logged-in portal services, client workspaces, DPO service delivery, contracts, billing, support cases, or data we process for clients. Those are covered by separate client terms, data processing agreements and service documentation.
1. Who We Are
Tru-Digital Services Limited is a UK digital services and compliance technology company.
Our public marketing websites include:
- Tru-Digital Services — our company and digital services website.
- Tru Data Protection — our data protection service website for UK schools and Multi-Academy Trusts.
Our details:
Company No.: 16210598
ICO Registration: ZB887707
Address: 3rd Floor, 86-90 Paul Street, London, EC2A 4NE
Data protection email: dpo@trudigitalservices.com
2. What This Policy Covers
This policy explains what personal data is processed when you visit our public marketing websites.
The position is simple:
- We do not use cookies.
- We do not use analytics.
- We do not use tracking pixels.
- We do not use advertising or remarketing tools.
- We do not load third-party scripts.
- We do not make external font requests.
- We do not provide user accounts on the marketing websites.
- We do not sell, rent or share website visitor data for marketing.
The only personal data that may be processed when you visit the marketing websites is standard server access log data.
3. What Data We Collect
Server access logs
When you visit our public marketing websites, our hosting and content delivery infrastructure may process standard technical access log data, such as:
- IP address;
- timestamp;
- URL requested;
- basic request and response information needed to deliver the site and protect the service.
This data is generated by standard web hosting and content delivery systems.
Why we process it:
- To deliver the website to your device.
- To protect the website and infrastructure.
- To investigate faults, abuse or security events.
- To maintain reliable website operation.
Legal basis: legitimate interests — operating, securing and maintaining our public websites.
Retention: server access logs are retained according to our CloudFront logging configuration, or not retained if logging is disabled.
4. What We Do Not Collect on the Marketing Websites
Our public marketing websites do not use:
- cookies;
- Google Analytics;
- Plausible Analytics;
- other analytics tools;
- tracking pixels;
- third-party scripts;
- external font requests;
- advertising networks;
- remarketing tags;
- user accounts;
- behavioural profiling.
This means there is no cookie banner and no consent mechanism on the marketing websites, because there are no non-essential cookies or tracking technologies to consent to.
If we introduce analytics, cookies or tracking technologies in the future, we will update this policy and provide any required consent controls before using them.
5. Website Suppliers and Sub-processors
For the public marketing websites only, the relevant suppliers are:
Notion is used as our content management source at build time. It does not receive visitor data from the public marketing websites.
6. International Transfers
AWS may use global edge locations to deliver website content efficiently and securely.
Where suppliers process personal data outside the UK, we rely on appropriate safeguards such as data processing terms, transfer mechanisms and supplier contractual commitments.
For the public marketing websites, the only visitor personal data expected to be involved is standard server access log data.
7. How Long We Keep Website Data
Server access logs are retained according to our CloudFront logging configuration, or not retained if logging is disabled.
We keep any logs only for as long as needed for security, troubleshooting and operational purposes.
8. Your Rights
You have rights under UK data protection law, including the right to:
- ask for access to your personal data;
- ask us to correct inaccurate data;
- ask us to erase data where the law allows;
- ask us to restrict processing;
- object to processing based on legitimate interests;
- complain to the Information Commissioner’s Office.
Because our public marketing websites do not use accounts, cookies or analytics identifiers, we may not be able to identify a specific visit unless relevant server log data is available and enough information is provided to locate it.
9. How to Exercise Your Rights
Contact us:
- Email: dpo@trudigitalservices.com
- Post: Tru-Digital Services Limited, 3rd Floor, 86-90 Paul Street, London, EC2A 4NE
We will respond within the legal timeframe, normally one month.
You can also complain to the Information Commissioner’s Office:
- Website: ico.org.uk
- Phone: 0303 123 1113
- Address: Information Commissioner’s Office, Wycliffe House, Water Lane, Wilmslow, Cheshire, SK9 5AF
10. Changes to This Policy
We may update this policy if our websites, suppliers, logging configuration or legal obligations change.
If we add cookies, analytics, tracking pixels, third-party scripts or advertising technologies in future, we will update this policy and add any required consent controls before using them.
11. Contact Us
Questions about this policy or your data?
Data Protection Officer / data protection contact: Gareth Eynon
✉️ Tru-Digital Services Limited, 3rd Floor, 86-90 Paul Street, London, EC2A 4NE
Last updated: August 2026
