Skip to main content
Your Privacy Matters

Privacy Policy

Last updated: 09/02/2026

Our Privacy Promise

creditcardhelp.uk is committed to protecting your privacy. We follow data minimisation principles and only collect information that is strictly necessary to provide our service. No personal details are required, your data is never shared, and you can delete everything at any time.

1. What Data We Collect

If you create an account
  • Email address — used for login only
  • Password hash — encrypted, never stored in plain text
Financial data you choose to enter
  • Card names (e.g., "Barclaycard")
  • Last 4 digits (for your reference only)
  • Balances, credit limits, APRs
  • Minimum payment information
  • Monthly income and outgoings

2. What We Do NOT Collect

Full card numbersNever needed, never stored
Your nameNot required
Your addressNot required
Your phone numberNot required
Bank account detailsNot required
Tracking cookiesAnalytics only with your consent

3. How We Use Your Data

Your Data Is Only Used For This Tool

Your information is used exclusively to provide the debt planning service and for no other purpose whatsoever. It is never sold, never shared with advertisers, never used for marketing, never passed to credit agencies, and never used to build profiles about you.

Specifically, your data is used to:

  • Authenticate your account
  • Calculate your personalised debt payoff plan
  • Display your financial information back to you

When generating AI-powered advice, we send anonymised financial figures to OpenAI. No personally identifying information (email, name, etc.) is included in these requests.

4. Data Sharing

We do NOT:
Sell your data to anyone
Share your data with advertisers
Use your data for marketing purposes
Allow third parties to access your data

5. Data Security

All data encrypted in transit (HTTPS)
Passwords hashed using bcrypt
Session tokens in secure, httpOnly cookies
Database access restricted and secured

6. Your Rights (GDPR)

Under UK GDPR, you have the right to:

Access

Request a copy of your data

Rectification

Correct any inaccurate data

Erasure

Delete all data instantly (self-service)

Portability

Receive data in a machine-readable format

To exercise access or portability rights, please contact us.

Deleting Your Account

You can delete your account and all associated data at any time, directly from within the app. Click your profile icon, choose "Delete My Data", and confirm. That's it.

Deletion is immediate and permanent. Your account, all credit card data, budget, snapshots, and sessions are removed from our database. No copies are retained, no backups are kept, and no data is archived. There is nothing to cancel or follow up on.

7. Data Retention

We retain your data only while your account is active. Your data is used solely to provide the debt planning service and is never used for any other purpose. If you delete your account, all your data is permanently and immediately removed from our systems.

8. Cookies & Essential Website Tracking

We use two types of cookies and tracking:

Essential (always active)

A secure, httpOnly session cookie is required to keep you logged in. It contains no personal data and expires after 7 days.

Analytics (opt-in)

We use Rybitt, a privacy-friendly analytics tool, to understand how the site is used. It does not collect personal data, does not use tracking cookies across sites, and only runs if you choose to accept it via the cookie banner.

Cookie Details
Cookie/StorageTypeDurationPurpose
session_tokenEssential7 daysKeeps you logged in (httpOnly, secure)
analytics_consentEssentialPersistentStores your cookie preference (localStorage)
Rybitt analyticsOpt-inSessionAnonymous page view counting (no cross-site tracking)

You can change your analytics preference at any time using the "Cookie Preferences" link in the website footer. We do not use advertising or cross-site tracking cookies.

9. Third-Party Data Processors

We use the following third-party services to operate the Service. Each processes data under a Data Processing Agreement (DPA):

OpenAI

Purpose: AI-powered payoff plan generation
Data shared: Anonymised financial figures only (no email or personal identifiers)
Location: Data may be transferred to the United States under Standard Contractual Clauses (SCCs)

Brevo (Sendinblue)

Purpose: Transactional email delivery (verification, check-in emails)
Data shared: Email address only
Location: EU-based processing

Rybitt

Purpose: Privacy-friendly website analytics (opt-in only)
Data shared: Anonymous page views and interactions; no personal data or cross-site tracking
Location: EU-based processing

10. International Data Transfers

When we use OpenAI to generate your payoff plan, anonymised financial data (balances, APRs, payments — no email or personal identifiers) may be transferred to the United States. This transfer is protected by Standard Contractual Clauses (SCCs) approved by the UK Information Commissioner's Office. All other processing (email, analytics, database) takes place within the UK/EEA.

11. Contact

If you have any questions about this Privacy Policy or wish to exercise your data rights, please contact:

Brindleford Technologies Ltd
Email: privacy@creditcardhelp.uk
71–75 Shelton Street, Covent Garden, London, WC2H 9JQ
Registered in England & Wales • Company No. 16871436