Legal
Privacy Policy
DNA Finance ("we", "us", "our") is committed to protecting your privacy. This policy explains how we collect, use, and protect your personal data in accordance with the UK General Data Protection Regulation (UK GDPR) and the Data Protection Act 2018.
Data Controller: DNA Finance, company number 16322517
Registered office: 556 Mumbles Road, Mumbles, Swansea, SA3 4DL
Contact: Admin@dnafinance.co.uk | 01792 677652
ICO registration number: [Insert ICO Registration Number]
1. What Information We Collect
We may collect the following information when you use our website, apply for finance, or contact us:
- Name, contact details (email, phone, address)
- Business details (company name, trading history, financial information relevant to your application)
- Information about the finance or equipment/asset you are seeking to fund
- Technical information such as IP address and browsing behaviour (see our Cookie Policy)
- Any other information you choose to provide when contacting us
2. How We Use Your Information
We use your information to:
- Assess your finance requirements and introduce you to suitable lenders on our panel
- Communicate with you about your enquiry or application
- Carry out anti-money laundering (AML) and identity verification checks as required by law
- Improve our website and services
- Comply with our legal and regulatory obligations, including those set by the FCA
- Send you relevant updates, where you have consented to this
3. Our Legal Basis for Processing
We process your data based on:
- Contract — to take steps to provide services you have requested
- Legal obligation — to meet AML, KYC, and FCA regulatory requirements
- Legitimate interests — to operate and improve our business, subject to your rights
- Consent — where you have opted in to marketing communications, which you may withdraw at any time
4. Who We Share Your Information With
To arrange finance on your behalf, we may share relevant information with:
- Lenders on our panel, to assess and process your application
- Credit reference and fraud prevention agencies
- Regulatory bodies, where required by law (e.g. the FCA)
- IT and service providers who support our business operations, under appropriate data protection agreements
We do not sell your personal data to third parties.
5. How Long We Keep Your Data
We retain personal data only as long as necessary to fulfil the purposes described in this policy, or as required by law and FCA regulatory requirements (which may require certain records to be kept for a minimum period after a relationship ends).
6. Your Rights
Under UK GDPR, you have the right to:
- Access the personal data we hold about you
- Request correction of inaccurate data
- Request deletion of your data, where applicable
- Restrict or object to certain processing
- Request data portability
- Withdraw consent at any time, where processing is based on consent
To exercise any of these rights, contact us at Admin@dnafinance.co.uk.
You also have the right to lodge a complaint with the Information Commissioner's Office (ICO) if you believe your data has been mishandled:
Website: ico.org.uk
Phone: 0303 123 1113
7. Security
We take appropriate technical and organisational measures to protect your personal data against unauthorised access, loss, or misuse.
8. Changes to This Policy
We may update this policy from time to time. The current version will always be available on this page.
Last updated: 02.03.2026