Privacy policy

Effective from 1/12/2024

Welcome to Beach. We take protecting your privacy seriously, and this privacy policy explains how we collect, use and protect your personal data when using our mobile app, website and services.

If you do not understand anything, or have questions, please get in touch with our friendly support team at [email protected].

1. Who we are

Beach (Beach Finance Ltd) is a company registered in England and Wales (company no. 14969609), authorised and regulated by the Financial Conduct Authority (firm no. 1010244), and registered at 128 City Road, London, United Kingdom, EC1V 2NX.

2. What data we collect

We may collect and process the following types of data:

  • Information you provide to us directly, such as your name, date of birth, address and National Insurance number. This includes any identification information and documentation, and financial information provided. This may be through our digital services such as our mobile app and website, or through telephone conversations, email, post or social media.
  • Information we collect automatically, such as what device you are using, how the app and website are being used (such as page views), and any cookies or similar technologies.
  • A record of any communication between us, including online, email, letter and telephone conversations.
  • Details of transactions made through our services, such as adding money, and buying or selling investments.
  • Information from third parties, such as from fraud prevention services or investment balances from trusted partners.
  • Information provided by a power of attorney and about a power of attorney.

3. How we use your data

We use your information for the following purposes:

  • To provide our services, such as to offer you an easy access pot and pension pot to save and invest.
  • To process contributions and transactions, such as adding money and making investments.
  • To automate decision making for processes such as fraud detection and eligibility assessments.
  • For regulatory compliance and security purposes, such as conducting identity verification, anti-money laundering checks, monitoring for fraudulent activity and complying with all regulations set by the Financial Conduct Authority and all UK laws.
  • To personalise your experience, such as customised information within the app.
  • To improve our services, such as analysing behaviour to improve the app and website functionality.
  • To communicate with you, such as sending account updates, provide regulatory notices and communicating about any customer support issues you may have.

4. Legal basis for processing your data

We process your data under the following legal bases:

  • Contractual obligations: to provide services as agreed in the terms and conditions.
  • Legal obligations: to comply with financial regulations and legal requirements.
  • Legitimate interest: to enhance your experience and secure our services.
  • Consent: for sending marketing communications (you may withdraw content at any time).

5. How we share your data

We may share your data with:

  • Service providers: third parties who help operate our app and website and underlying services, such as investment administration service providers and payment processors.
  • Suppliers: such as IT and customer support services, marketing services and analytics providers.
  • Regulators: such as the Financial Conduct Authority and other legal bodies when required.
  • Financial institutions: for core features such as ISA and pension transfers.
  • Other: as required by law (for instance a court order).

Where your information is shared, we will take all reasonable steps to ensure your data is handled safely and securely, and in accordance with your rights, our obligations and the obligations of third parties under UK GDPR and the law.

6. Data storage and security

We take your data security seriously, and use safety measures such as:

  • Encryption of sensitive data when transferred.
  • Secure IT infrastructure, such as secure servers for data storage.
  • Regular security audits and security policy reviews.

We retain your data for as long as necessary to fulfill our obligations and comply with legal requirements. This includes after you no longer maintain an account with us. After the required regulatory period, your data will be securely deleted or anonymised.

7. Your rights

Under the UK GDPR, you have the following rights:

  • Access: you may request a copy of your personal data.
  • Correction: you may correct any inaccuracies in your data.
  • Erasure: you may request deletion of your data (subject to legal and regulatory constraints).
  • Restriction: you may limit how your data is processed (subject to legal and regulatory constraints).
  • Data portability: you may receive your data in a machine-readable format (digital version that a computer can read).
  • Objection: you may opt out of certain processing activities, such as marketing.

To exercise your rights, or have any questions, please email [email protected]. If you remain dissatisfied you have the right to lodge a complaint with the Information Commissioner’s Office (ICO).

8. Cookies and tracking technologies

We use cookies and similar technologies to:

  • Understand how you use our app and website.
  • Improve your experience.
  • Provide targeting marketing (if consented).

You can manage your cookie preferences through your browser settings. For more information, please see our cookie policy.

9. Marketing preferences

From time to time, we may send you marketing communications if you have opted in (asked for marketing communications). You can update your preferences in your account settings, by clicking “unsubscribe” in marketing emails, or emailing us at [email protected].

10. International data transfers

Your data is stored and processed in the UK. If data is transferred outside the UK or the European Economic Area (EEA), we ensure appropriate protections are in place with suppliers.

11. Updates to this policy

We may update this privacy policy from time to time. Significant changes will be communicated via email or app notifications. The latest version will always be available on our website at beach.org/privacy-policy.

12. Contact us

If you have any questions about this privacy policy, want to exercise your rights, or would like to speak with our Data Protection Officer, please contact us via email at [email protected].

Beach, for a brighter future

Get started