Privacy Policy
Last updated: September 30, 2025
1. Introduction
RebateNest ("we", "our", or "us") is committed to protecting your privacy. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our tax rebate services, including P87 claim assistance.
By using our services, you agree to the collection and use of information in accordance with this policy.
2. Information We Collect
2.1 Personal Information
When you contact us or use our services, we may collect:
-
Full name
-
Email address
-
Phone number
-
National Insurance number
-
Employment history and details
-
Tax information relevant to your P87 claim
-
Bank account details (for rebate payments)
-
Copies of supporting documents (receipts, mileage records, etc.)
2.2 Automatically Collected Information
When you visit our website, we may automatically collect:
-
IP address
-
Browser type and version
-
Pages visited and time spent
-
Referring website
-
Device information
3. How We Use Your Information
We use the information we collect to:
-
Process and submit your P87 tax rebate claims to HMRC
-
Communicate with you about your claim status
-
Verify your identity and eligibility
-
Comply with legal obligations and HMRC requirements
-
Improve our services and website
-
Send you important updates about tax legislation changes
-
Respond to your inquiries and provide customer support
4. Legal Basis for Processing (GDPR)
Under the General Data Protection Regulation (GDPR), we process your personal data based on:
-
Consent: You have given us explicit permission to process your data for specific purposes
-
Contractual necessity: Processing is necessary to fulfill our service agreement with you
-
Legal obligation: We must process your data to comply with UK tax law and HMRC requirements
-
Legitimate interests: Processing is necessary for our business operations and your benefit
5. Data Sharing and Disclosure
We may share your information with:
-
HMRC: Required to process your tax rebate claims
-
Service providers: Trusted third parties who assist in operating our business (e.g., payment processors, IT support)
-
Legal authorities: When required by law or to protect our rights
We do not sell, rent, or trade your personal information to third parties for marketing purposes.
6. Data Security
We implement appropriate technical and organizational measures to protect your personal information against unauthorized access, alteration, disclosure, or destruction. This includes:
-
Encryption of sensitive data in transit and at rest
-
Secure server infrastructure
-
Regular security assessments
-
Restricted access to personal data
-
Staff training on data protection
7. Data Retention
We retain your personal information for as long as necessary to fulfill the purposes outlined in this policy, unless a longer retention period is required by law. For tax-related records, we typically retain information for at least 6 years after the end of the tax year to which they relate, in accordance with HMRC requirements.
8. Your Rights Under GDPR
You have the following rights regarding your personal data:
-
Right of access: Request copies of your personal data
-
Right to rectification: Request correction of inaccurate data
-
Right to erasure: Request deletion of your data (subject to legal obligations)
-
Right to restrict processing: Request limitation on how we use your data
-
Right to data portability: Request transfer of your data to another service
-
Right to object: Object to processing of your data for certain purposes
-
Right to withdraw consent: Withdraw consent at any time (where consent is the basis for processing)
9. Cookies and Tracking
Our website may use cookies and similar tracking technologies to enhance your experience. You can control cookie settings through your browser preferences.
10. Third-Party Links
Our website may contain links to third-party websites. We are not responsible for the privacy practices of these external sites. We encourage you to review their privacy policies.
11. Children's Privacy
Our services are not directed to individuals under 18 years of age. We do not knowingly collect personal information from children.
12. Changes to This Policy
We may update this Privacy Policy from time to time. Changes will be posted on this page with an updated revision date. Your continued use of our services after changes constitutes acceptance of the updated policy.
13. Contact Us
If you have questions about this Privacy Policy or wish to exercise your rights, please contact us at:
RebateNest
Email: privacy@rebatenest.co.uk
Website: www.rebatenest.co.uk
14. Complaints
If you believe your data protection rights have been violated, you have the right to lodge a complaint with the Information Commissioner's Office (ICO), the UK's supervisory authority for data protection:
Information Commissioner's Office
Wycliffe House, Water Lane
Wilmslow, Cheshire SK9 5AF
Phone: 0303 123 1113
Website: www.ico.org.uk