Privacy Policy

Last updated: April 2026

Who we are

Uxitt is a productised UX audit and redesign service for Shopify and DTC ecommerce brands, operated from the United Kingdom.

For any privacy-related queries, contact us at hello@uxitt.com.

What data we collect

We collect personal data in the following circumstances:

  • Enquiry and review forms — name, email address, website URL, and any project details you submit.
  • Order placement — name, email address, and payment details processed securely by Stripe. We do not store your full card details.
  • Email correspondence — any information you share when contacting us directly.
  • Website analytics — anonymised usage data (pages visited, device type, approximate location) to understand how our site is used.

How we use your data

We use the data we collect to:

  • Deliver the service you have purchased or requested.
  • Send order confirmations and project-related communications.
  • Respond to enquiries and support requests.
  • Improve our website and service offering.

We will not use your data for unsolicited marketing without your explicit consent, and we will never sell your data to third parties.

Legal basis for processing (GDPR)

Where the UK GDPR applies, we process your personal data under the following lawful bases:

  • Contract — processing necessary to fulfil an order or service you have requested.
  • Legitimate interests — responding to enquiries and improving our service.
  • Consent — where you have explicitly opted in to marketing communications.

Third-party services

We use the following third-party services which may process your data:

  • Stripe — payment processing. Your payment data is handled directly by Stripe and subject to Stripe's Privacy Policy.
  • Resend — transactional email delivery (order confirmations). Data is processed in accordance with Resend's data processing terms.
  • Vercel — website hosting. Anonymised access logs may be retained by Vercel.

Data retention

We retain personal data only as long as necessary to fulfil the purposes outlined in this policy, or as required by law. Order records are retained for 7 years in line with UK financial record-keeping requirements. Enquiry data is retained for up to 2 years unless you ask us to delete it sooner.

Your rights

Under UK GDPR, you have the right to:

  • Access the personal data we hold about you.
  • Correct inaccurate data.
  • Request deletion of your data ("right to be forgotten").
  • Object to or restrict certain types of processing.
  • Receive a copy of your data in a portable format.

To exercise any of these rights, email hello@uxitt.com. We will respond within 30 days.

You also have the right to lodge a complaint with the Information Commissioner's Office (ICO).

Cookies

Our website may use essential cookies to ensure the site functions correctly. We do not currently use advertising or tracking cookies. If this changes, we will update this policy and seek your consent where required.

Changes to this policy

We may update this Privacy Policy from time to time. The "last updated" date at the top of this page will reflect any changes. Continued use of our site or services after changes constitutes acceptance of the updated policy.