Privacy Policy
1. Who We Are
MoneyChest ("Moneychest", "we", "our", "us") is operated by Digitsflow LTD, a private limited company registered in England & Wales (Company No. 16330711).
Postal Address:
Digitsflow LTD
3rd Floor, 86–90 Paul Street
London, EC2A 4NE
United Kingdom
Data Protection Contact:
privacy@digitsflow.co.uk
Digitsflow LTD is the data controller for all personal data processed through Moneychest.
2. What Data We Collect
We collect the following categories of personal data:
A. Personal Data You Provide
- Name (optional)
- Email address
- Username
- Telephone number (if provided)
- Account password (encrypted)
- Support messages you send us
- Learning progress or course interactions
- Subscription and billing-related data
B. Usage Data
Automatically collected when you use MoneyChest:
- IP address
- Device details
- Browser information
- Operating system
- Referring URLs
- Page views
- Features used
- Time spent on pages
- Interaction logs
- Heatmaps and session replay data (via Microsoft Clarity)
- Analytics data (via Google Analytics 4, IP anonymised)
C. Community & Public Content
If you create posts or comments:
- Public username
- Profile picture (if added)
- Posts, comments, likes
- Metadata (timestamps, edits, etc.)
All community content is public and visible to other users.
D. AI-Related Data
When you use AI features, we process:
- Questions or content you submit
- Inputs used for summarisation
- Interactions with our AI models
We do not use AI to make automated decisions that significantly affect you.
E. Cookies & Tracking Data
We use:
- Essential cookies
- Analytics cookies
- Affiliate tracking cookies
- Fraud/security cookies
- Session cookies
- Marketing cookies (if you opt in)
Full details are in our Cookie Policy.
3. How We Use Your Data & Legal Bases
We process your data only where we have a lawful basis under UK GDPR:
A. Contractual Necessity
To:
- Create and manage your account
- Authenticate logins
- Deliver community features
- Provide learning materials and progress tracking
- Enable paid subscriptions
B. Legitimate Interests
To:
- Improve the platform
- Detect and prevent fraud
- Maintain community safety
- Analyse anonymised usage patterns
- Enhance AI accuracy
- Display personalised content
- Monitor platform performance
We always balance our interests with your rights.
C. Legal Obligation
To comply with:
- Tax and accounting rules
- Regulatory compliance
- Law enforcement requests
- Data-retention obligations
D. Consent
Required only for:
- Non-essential cookies
- Affiliate tracking cookies
- Marketing emails (if you opt in)
You may withdraw consent at any time.
4. Third-Party Processing & Sharing
We share personal data only with trusted processors who support Moneychest:
Cloud Hosting
- AWS (UK/EU regions)
- DigitalOcean (UK/EU)
- Hetzner (EU)
Security & CDN
- Cloudflare
Analytics
- Google Analytics 4 (IP anonymised)
- Microsoft Clarity (heatmaps, session replay)
AI Providers
AI systems used to generate summaries or suggestions may temporarily process text you submit.
We do not use your data to train public AI models.
Legal Requirements
We may share data where required to:
- Comply with a court order
- Respond to lawful requests
- Protect our legal rights
We never sell or rent your personal data.
5. International Transfers
Where data is transferred outside the UK or EEA, we use:
- UK adequacy regulations
- International Data Transfer Agreements (IDTAs)
- Standard Contractual Clauses (SCCs)
- Binding Corporate Rules
We only transfer data where legally permitted.
6. Your Data-Protection Rights (UK GDPR)
You have the right to:
- Access
- – Request a copy of your data.
- Rectification
- – Fix inaccurate information.
- Erasure
- – Ask us to delete your data ("right to be forgotten").
- Restriction
- – Limit how your data is used.
- Portability
- – Receive data in machine-readable format.
- Object
- – To processing based on legitimate interest.
- Withdraw Consent
- – For cookies or marketing at any time.
To exercise your rights:
If unsatisfied, you may complain to the Information Commissioner's Office (ICO) at ico.org.uk.
7. Data Retention & Security
Retention
- Community posts: kept until you delete them
- Account data: kept while active
- Billing records: up to 6 years per UK law
- Support emails: up to 24 months
- Analytics logs: 26 months or less
Security
We use:
- Encryption in transit & at rest
- Secure hosting
- Access controls
- IP whitelisting
- Rate limiting
- Firewalls
- Regular penetration testing
No system is completely secure, but we take robust steps to safeguard your data.
8. Cookies
Moneychest uses cookies to operate essential features, improve performance, and personalise experience.
You can manage cookies via:
- Our cookie banner
- Browser settings
See our dedicated Cookie Policy for full details.
9. Children
Moneychest is intended for users 18+ only.
We do not knowingly collect data from minors.
10. Changes to This Privacy Policy
We may update this Privacy Policy occasionally.
If changes are significant, we will notify users via email or site notice.
11. Contact Us
For privacy questions or requests:
Digitsflow LTD
3rd Floor, 86-90 Paul Street
London EC2A 4NE
United Kingdom
© 2025 Digitsflow LTD.