Last updated: 14th January 2026
1. Introduction
Neish Training Ltd (“we”, “us”, “our”) is committed to protecting and respecting your privacy.
This Privacy Policy explains how we collect, use, store, and share your personal data when you use our website neishtraining.com (our “Website”), as well as your rights in relation to that personal data under UK law (including the UK GDPR and Data Protection Act 2018).
By using our website or services, you agree to the processing of your personal data as described in this policy.
2. Who we are
- Organisation name: Neish Training Ltd
- Registered in Scotland, Company Number SC740047
- Suite 122, 111 West George Street, Glasgow G2 1QX
- Email: info@neishtraining.com
- Phone: +44 141 341 0469, +44 7776 188366
3. Definitions
- Personal data – any information relating to an identified or identifiable natural person.
- Processing – any operation performed on personal data, such as collection, storage, use, or disclosure.
- You/your – The individual whose personal data we collect and process.
- We/us – Neish Training Ltd.
4. Data protection principles
We follow the UK GDPR data protection principles, which means that we ensure that personal data is:
- Processed lawfully, fairly, and transparently.
- Collected only for specified, explicit, and legitimate purposes.
- Adequate, relevant, and limited to what is necessary for those purposes.
- Accurate and kept up to date.
- Retained only as long as necessary for the purposes for which it was collected.
- Protected with appropriate technical and organisational security measures.
5. What personal data do we collect
Information you give us directly
- Name, email address, postal address, telephone number
- Organisation or employer details, job title (if relevant)
- Course or session preferences and attendance information
- Other information relevant to your experience and eligibility for some courses
- Messages or content you send to us via website forms, email, or other communications
- Newsletter sign-up details via AWeber or similar
Payment information
We process all payments securely through Stripe via WooCommerce. We do not store full payment card details on our servers.
Stripe handles payment card information in accordance with its own security standards (PCI-DSS compliant).
We may store minimal transaction information, such as payment date, amount, and reference, for administrative and accounting purposes.
Information we collect automatically when you use our Website
- IP address
- Technical data about your device and browser (e.g., browser type and version, operating system)
- Information about how you use the Website (pages visited, time spent, referring website, path through the site)
- Cookies and similar tracking technologies (see section 14)
6. Why we use your personal data (purposes of processing)
- Responding to enquiries and feedback
- Providing information and services (courses, counselling, newsletters)
- Website maintenance and improvement, including analytics, security, debugging, and user experience
- Compliance with legal obligations (accounting, reporting, safeguarding)
- Communication about our services and relevant opportunities
- Internal administration and record-keeping
- Contract / Performance of Services: to provide the services you have requested, such as course registration or counselling sessions
7. Lawful basis for processing
We rely on one or more of the following lawful bases:
- Consent: when you sign up for newsletters or non-essential cookies.
- Contract / Performance of Services: where you have requested our services.
- Legal Obligation: to comply with statutory or regulatory requirements.
8. Sharing / Disclosure of Your Data
We may share your personal data with:
- Our partners (e.g., other charities, funders), if you have consented, for the performance of our services.
- Regulatory or legal authorities, if required by law or to protect our legal rights.
- Affiliate or group organisations, where relevant, are always in compliance with data protection principles
- Service providers and data processors are third parties who help us operate our Website and provide our services. This includes: website hosting and technical support, email and communication platforms, analytics tools (e.g., Google Analytics), security tools (e.g., Google reCAPTCHA)
We do not sell your personal data.
9. International Transfers
Some of the personal data we collect, including information collected via Google Analytics, may be transferred outside the UK.
Where transfers occur, we seek to ensure that appropriate safeguards are in place, such as data processing agreements or standard contractual clauses.
Please note that, in the case of services like Google Analytics, we cannot fully control where the data is stored or processed.
10. Data Retention
We retain personal data only as long as necessary:
- Contact form submissions: up to 24 months
- Newsletter subscriptions: until you unsubscribe
- Course bookings and attendance records: 7 years
- Website analytics data (Google Analytics): 14 months, aggregated where possible, and used to improve the Website
After retention periods, data is securely deleted or anonymised.
11. Your Rights
Under UK GDPR, you have the right to:
- Right to access the personal data we hold about you (“subject access request”)
- Right to rectification if the data is inaccurate or incomplete
- Right to erasure (in certain circumstances) (“right to be forgotten”)
- Right to restrict processing in certain situations
- Right to data portability, where applicable
- Right to object to certain processing (for example, direct marketing)
- Right to withdraw consent (where the lawful basis is consent)
- Right to lodge a complaint with a supervisory authority (in the UK, the Information Commissioner’s Office – ICO) if you believe we are processing your data unlawfully
To exercise your rights, contact: info@neishtraining.com. We may need to verify your identity before responding.
12. Security of Your Data
We implement technical and organisational measures, including:
- Secure servers and encrypted transfers (HTTPS)
- Password protection and restricted access
- Staff training and data handling protocols
13. Children and Young People
We do not knowingly collect personal data from children and young people under 16. If we become aware that we have collected such data without consent from a parent/guardian, we will delete it.
14. Cookies and Tracking Technologies
Our Website uses cookies (which are text files placed on your computer) and similar tracking technologies to:
- Ensure the website works properly
- Collect anonymised statistics (analytics)
- Remember preferences
- Improve user experience
Types of cookies:
- Strictly necessary cookies: Essential for the website to function. These do not require your consent.
- Analytics cookies: Help us understand how visitors use the site. Consent will be requested before these are placed.
- Marketing cookies: Used to deliver personalised advertising or track user behaviour across this website and other websites. Examples include Meta/Facebook and Google AdSense. They are only placed with your consent.
Consent can be withdrawn at any time via browser settings.
15. Changes to Our Privacy Policy
We may update this policy to reflect changes in services or legal obligations. Significant changes will be highlighted on the website.
16. Contact details
Questions or requests regarding your personal data:
Neish Training Ltd
- Email: info@neishtraining.com
- Phone: +44 141 341 0469, +44 7776 188366
You also have the right to contact the ICO at www.ico.org.uk if you are unhappy with our response.