Skip to main content
UKContracts
Freecompliance~5 min

Privacy Policy (UK GDPR)

Generates a privacy policy that meets UK GDPR Article 13 transparency requirements: identity of the controller, contact details, processing purposes and lawful bases, recipients, international transfers, retention periods, data-subject rights, ICO complaint route, and source of data. Suitable for most UK-based websites collecting basic personal data (email signups, contact forms, account registration, analytics). For specialist sectors (health, finance, children's data) consult a solicitor.

Legal references covered (3)
  • §UK GDPR (retained Regulation (EU) 2016/679), Articles 13–22
  • §Data Protection Act 2018
  • §Privacy and Electronic Communications Regulations (PECR) 2003

🌍 Available in your language

Form labels are translated into 9 languages so you can complete documents confidently. The legal document itself is generated in English, because UK law requires the binding text to be in English.

Need help understanding the document? Use a trusted translator or consult a UK solicitor who speaks your language.

Available in
🇬🇧🇵🇱🇺🇦🇷🇴🇷🇺🇮🇳🇵🇰🇸🇦🇨🇳🇬🇪
Not legal advice. UKContracts AI Ltd provides legal document templates and information only. We are not a law firm and do not provide legal advice, legal representation, or any service requiring a solicitor's qualification. For complex matters, consult a qualified solicitor.
ℹ️ Note for this template: This template covers standard B2C and B2B websites. If you process special-category data (health, biometric, race, religion), children's data, or large-scale automated decisions, get a solicitor to tailor the policy and consider whether a DPO or DPIA is required.

Fill in the details

2/9 required
Identity of the controller

Required for almost all UK organisations processing personal data. Register at ico.org.uk (£40/£60/£2,900 by tier).

Site information
What you collect
Transfers

Tick if you use any service hosted outside the UK — most cloud services qualify.

Retention

Tax / financial records typically 6 years. Other account data: keep only as long as needed.

HMRC requires 6 years for VAT and income tax records.

Document