Privacy notice
Last updated 9 July 2026. This privacy notice applies to FoundMyPro during beta and public launch.
Who we are
Eduardo Neto, a sole trader based in England trading as FoundMyPro, is the controller for this processing. Contact: privacy@foundmypro.com. Correspondence address: Eduardo Neto / Found My Pro, Lytchett House, 13 Freeland Park, Wareham Road, Poole, Dorset, BH16 6FA.
Provider profiles from public sources
We publish basic business profiles of mobile service providers: business name, publicly listed business contact details, services, and coverage area, sourced from the provider's own public website. Every profile shows its source and when we last checked it. Our lawful basis is legitimate interests; we have completed an assessment concluding providers would reasonably expect business details they publish themselves to appear in a business directory.
We never copy reviews, photos, or logos from other platforms, never publish personal addresses, and never publish social-media-sourced profiles without the provider's recorded permission.
Your rights and controls
Providers can claim, correct, suppress, or delete their profile using the links on every profile page. Suppression is permanent: our data collection never re-creates a suppressed profile. You can ask us for access, rectification, erasure, restriction, and data portability where it applies. You can object to processing based on legitimate interests, including unclaimed profile publication. If we rely on consent, you can withdraw it at any time without affecting earlier processing. We respond without undue delay and within one month unless the UK GDPR allows an extension. You can complain to the ICO at ico.org.uk/make-a-complaint.
Sources, recipients and processors
For provider profiles created from public sources, the source categories are provider-owned public websites and provider-permitted public social media pages. We share public profile data with site visitors and API users when a profile is published. We use processors for hosting, database and storage, transactional email, security, and product operations. We do not sell personal data.
Automated decision-making
We use automated tools to help classify and rank provider records, but publication, suppression, deletion, and regulated-category decisions remain subject to human review. We do not make solely automated decisions with legal or similarly significant effects.
Forms on this site
Self-listing submissions are processed to create your listing (contract basis). Register-interest submissions are processed with your consent, only to tell you when your region goes live. Each form identifies which fields are required; without them we may not be able to process the submission or send the requested notification.
How long we keep your data
Feedback: if you leave an email with a report, we keep it only so we can reply; it is removed once your report has been dealt with - never sooner than 30 days after you sent it, so a reply is always possible - and no later than 180 days after you sent it. The report text itself is kept without your address. Provider sign-in links and sessions are deleted within 7 days of expiring. Undelivered transactional email records are encrypted and deleted within 30 days after delivery is abandoned. Provider account records are kept while your profile is listed. Unclaimed profiles are revalidated or removed on a rolling basis; suppression records are kept indefinitely - that is what keeps you suppressed; register-interest records are deleted when the region launches or after 24 months, whichever is sooner. If a profile edit is blocked by our content rules, we keep a record of the blocked text for up to 90 days so we can review it and handle any appeal, then delete it - this 90-day limit applies even if the account is later barred. If an account is barred for abuse, we keep the bar record itself indefinitely to enforce it. The time-based removals run automatically every day.
Cookies
Only strictly necessary cookies are used (locale preference, the provider sign-in session, staff admin session). No advertising or third-party analytics cookies.
Usage analytics and email telemetry
To understand which services and areas are searched for and whether the site works, we record usage events (for example a search, or a visit to a profile review link) on our own servers. These events never store your IP address or browser details: both are replaced with keyed one-way codes, and the code linking events from the same visitor changes every day, so activity cannot be tracked across days. No third-party analytics service receives this data. Raw events are deleted after 13 months; only aggregate statistics are kept longer.
When we email a provider (a transparency notice about their draft profile, or emails they request such as claim verification), our email provider tells us whether the message was delivered, bounced, or reported as spam, so we can stop contacting addresses that do not want or cannot receive our mail. We do not use open-tracking pixels in these emails, and links in them are not routed through click-tracking redirects.