Legal Policies

Effective date: 5th February 2024

GDPR Data Protection Policy

1. Data protection principles

Strategy Success Lab is committed to processing data in accordance with its responsibilities under the GDPR.

Article 5 of the GDPR requires that personal data shall be:

  1. processed lawfully, fairly and in a transparent manner in relation to individuals;

  2. collected for specified, explicit and legitimate purposes and not further processed in a manner that is incompatible with those purposes; further processing for archiving purposes in the public interest, scientific or historical research purposes or statistical purposes shall not be considered to be incompatible with the initial purposes;

  3. adequate, relevant and limited to what is necessary in relation to the purposes for which they are processed;

  4. accurate and, where necessary, kept up to date; every reasonable step must be taken to ensure that personal data that are inaccurate, having regard to the purposes for which they are processed, are erased or rectified without delay;

  5. kept in a form which permits identification of data subjects for no longer than is necessary for the purposes for which the personal data are processed; personal data may be stored for longer periods insofar as the personal data will be processed solely for archiving purposes in the public interest, scientific or historical research purposes or statistical purposes subject to implementation of the appropriate technical and organisational measures required by the GDPR in order to safeguard the rights and freedoms of individuals; and

  6. processed in a manner that ensures appropriate security of the personal data, including protection against unauthorised or unlawful processing and against accidental loss, destruction or damage, using appropriate technical or organisational measures.”

2. General provisions

  1. This policy applies to all personal data processed by Strategy Success Lab.

  2. The Responsible Person shall take responsibility for Strategy Success Lab ongoing compliance with this policy.

  3. This policy shall be reviewed at least annually.

  4. Strategy Success Lab is registered with the Information Commissioner’s Office as an organisation that processes personal data.

3. Lawful, fair and transparent processing

  1. To ensure its processing of data is lawful, fair and transparent, Strategy Success Lab shall maintain a Register of Systems.

  2. The Register of Systems shall be reviewed at least annually.

  3. Individuals have the right to access their personal data and any such requests made to Strategy Success Lab shall be dealt with in a timely manner.

4. Lawful purposes

  1. All data processed by Strategy Success Lab must be done on one of the following lawful bases: consent, contract, legal obligation, vital interests, public task or legitimate interests (see ICO guidance for more information).

  2. Strategy Success Lab shall note the appropriate lawful basis in the Register of Systems.

  3. Where consent is relied upon as a lawful basis for processing data, evidence of opt-in consent shall be kept with the personal data.

  4. Where communications are sent to individuals based on their consent, the option for the individual to revoke their consent should be clearly available and systems should be in place to ensure such revocation is reflected accurately in Strategy Success Lab.

5. Data minimisation

Strategy Success Lab shall ensure that personal data are adequate, relevant and limited to what is necessary in relation to the purposes for which they are processed.

6. Accuracy

  1. Strategy Success Lab shall take reasonable steps to ensure personal data is accurate.

  2. Where necessary for the lawful basis on which data is processed, steps shall be put in place to ensure that personal data is kept up to date.

7. Archiving / removal

  1. To ensure that personal data is kept for no longer than necessary, Strategy Success Lab shall put in place an archiving policy for each area in which personal data is processed and review this process annually.

  2. The archiving policy shall consider what data should/must be retained, for how long, and why.

8. Security

  1. Strategy Success Lab shall ensure that personal data is stored securely using modern software that is kept-up-to-date.

  2. Access to personal data shall be limited to personnel who need access and appropriate security should be in place to avoid unauthorised sharing of information.

  3. When personal data is deleted this should be done safely such that the data is irrecoverable.

  4. Appropriate back-up and disaster recovery solutions shall be in place.

9. Breach

In the event of a breach of security leading to the accidental or unlawful destruction, loss, alteration, unauthorised disclosure of, or access to, personal data, Strategy Success Lab shall promptly assess the risk to people’s rights and freedoms and if appropriate report this breach to the ICO (

more information on the ICO website).

END OF POLICY

Strategy Sucess Lab (the “Company”) respects the privacy concerns of the users of its websites: www.strategysuccesslab.com, www.katewhitleyonline.com, and the services provided therein (the “Site”). The Company thus provides this privacy statement to explain what information is gathered during a visit to the Site and how such information may be used.

As a general policy, no personally identifiable information, such as your name, address, or e-mail address, is automatically collected from your visit to the Site. However, certain non-personal information is recorded by the standard operation of the Company’s internet servers. Information such as the type of browser being used, its operating system, and your IP address is gathered in order to enhance your online experience.

The Site’s various mailing lists, downloads, special offers, contests, registration forms, and surveys may request that you give us contact information such as your name, mailing and/or e-mail address, demographic information such as your age and gender, and personal preference information such as your preferred software and interests. Information submitted at the time of submission will be used by the Company only as necessary for our legitimate business interests, including without limitation the improvement of our products, services and the contents of the Site. The Company may also share such information with our business and promotional partners to further those interests. Personally identifiable information is never sold or leased to any third parties. With your permission, we may use your contact information to send you information about our company and products. You may always opt-out of receiving future mailings as provided below. The Company does not store any credit card information it may receive in regard to a specific transaction and/or billing arrangement except as necessary to complete and satisfy its rights and obligations with regard to such transaction, billing arrangement, and/or as otherwise authorised by a user.

The Company may disclose user information in special cases when we have reason to believe that disclosing this information is necessary to identify, contact or bring legal action against someone who may be causing injury to or interference (either intentionally or unintentionally) with the Company’s rights or property, other users of the Site, or anyone else that could be harmed by such activities.

The Company may also be required to disclose personal information in response to lawful requests by public authorities, including to meet national security or law enforcement requirements.


Third-Party Content

This privacy policy only concerns the processing for which the Company is data controller. If you have any questions regarding personal data contained in the Third-Party Content, please contact the third-party provider responsible for such Third Party Content.

Children Age 16 and Under:


The Company recognises the special obligation to protect personally identifiable information obtained from children age 18 and under. AS SUCH, IF YOU ARE 16 YEARS OLD OR YOUNGER, THE COMPANY REQUESTS THAT YOU NOT SUBMIT ANY PERSONAL INFORMATION TO THE SITE OR TO THE COMPANY. If the Company discovers that a child age 18 or younger has signed up on the Site or provided us with personally identifiable information, we will delete that child’s identifiable information from our records.

Strategy Success Lab nonetheless encourages parents to go online with their kids. Here are a few tips to help make a child’s online experience safer:

Teach kids never to give personal information, unless supervised by a parent or responsible adult. Includes name, address, phone, school, etc.

Know the sites your kids are visiting and which sites are appropriate.Look for Website privacy policies.

Know how your child’s information is treated.Check out the IPO’s site for more tips on protecting children's privacy online.

Use of Cookies:
Cookies are pieces of information that a website transfers to an individual’s computer hard drive for record keeping purposes. Cookies make using our Site easier by, among other things, saving your passwords and preferences for you. These cookies are restricted for use only on our Site, and do not transfer any personal information to any other party. Most browsers are initially set up to accept cookies. You can, however, reset your browser to refuse all cookies or indicate when a cookie is being sent. Please consult the technical information relevant to your browser for instructions. If you choose to disable your cookies setting or refuse to accept a cookie, some parts of the Site may not function properly or may be considerably slower.

Malware/Spyware/Viruses:

Neither the Company nor the Site knowingly permit the use of malware, spyware, viruses, and/or other similar types of software.

Links to External Sites:


The Company is not responsible for the content or practices of third party websites that may be linked to the Site. The Company is also not responsible for any information that you might share with such linked websites. You should refer to each website’s respective privacy policy and practices prior to disclosing any information.

Bulletin Boards and Chat Areas:
Guests of the Site are solely responsible for the content of messages they post on the Company’s forums, such as chat rooms and bulletin boards. Users should be aware that when they voluntarily disclose personal information (e.g., user name, e-mail address, phone number) on the bulletin boards or in the chat areas, that information can be collected and used by others and may result in unsolicited messages from other people. You are responsible for the personal information you choose to submit in these instances. Please take care when using these features.

Choice/Opt-Out:
The Site may provide you the opportunity to opt-in to receive communications from us at the point where we request information about you. You always have the option of removing your name from any e-mail list in order to discontinue any such future communications. In order to ensure immediate removal from any list, please follow the specific instructions set forth within the communications you receive from the Company which you no longer wish to receive. If you are unsuccessful in completing the instructions specified in any such communication, please e-mail us at [email protected] including a copy of the undesired email attached to the request, and state you wish to be removed from the mailing list.

Transfer of Information Across National Borders:

Our site and various information we collect are operated on servers located in various jurisdictions, including the United States. When you access or use the Site and/or our services, personal information about you may be transferred outside the country in which you are situated to these other locations. The Company’s policies ensure that such personal information is protected to the same standard when processed by any Company entity or office around the world. We also ensure that appropriate contracts containing standard data protection clauses approved by the European Commission to protect that information and the rights of individuals are in place with any and all third-party service providers we may use.

Your Access to and Control Over Your Personally Identifiable Information:

At any time, but only once per calendar year, or as otherwise required under applicable law, users may contact Company to review the personally identifiable information that Company has collected about you. If you discover any errors, please notify Company and the information will be corrected. To review the personally identifiable information that company has collected about you, please send an email [email protected] with the subject line: “Personal Information Review Request.” Users may also request that Company delete a user account(s) or, if you have not established a user account, your email address, and any related data at any time. If you wish to delete your user account(s), please email us at [email protected] with the words “Delete Account” in the subject line. If you do not have a user account and wish to delete your email address or other personally identifiable information that you might have provided through your use of the Site, any Games, and/or any Services, please email us at
[email protected] with the words “Delete My Information” in the subject line.

You may also choose to confirm that the Company does not use your personal information in certain ways and/or to otherwise “opt out” of certain uses of that personal information, including without limitation (i) when your personal may to be disclosed to a third party unrelated to the Company and/or parties directly related to providing your Services and/or (ii) when your personal information may be used for a purpose that is materially different from the purpose(s) for which it was originally collected or subsequently authorised by you. If you wish to limit your personal data in either such way, or have other questions about how the Company may use your personal data, please contact us at [email protected] the words “Privacy Request” in the subject line.

Unit 84182, PO Box 6945, London, W1A 6US