Privacy policy

Last updated: 18/03/2026

 This Privacy Policy explains how we collect, use, store and protect your personal data when you visit our website, contact us, or work with us as a client or prospective client.

We comply with the UK General Data Protection Regulation (UK GDPR) and the Data Protection Act 2018, and we handle your information lawfully, fairly, and transparently.

If you have any questions about this policy, please contact us using the details below.

Who we are (Data Controller)

We are Designamite, a trading company of Kameleon Group Limited. We are the data controller for the personal data collected via this website.

Email: sparks@designamite.co.uk
Address: The Workhouse, Brannams Square, Barnstaple, England, EX32 8QB

If you have any queries about your personal data or this policy, please get in touch.

Personal data we collect

We may collect the following information when you visit our site, contact us, or use our services.

Information you provide via our web site

  • Contact details (name, email address, phone number)
  • Project briefs, scope requirements, and asset uploads
  • Marketing preferences
  • Recruitment application information (if applying for a role)

Information collected automatically

  • IP address
    Device information including browser type, operating system
    pages visited, time on page, and usage patterns
  • Cookie and tracking data (see Cookie section)
  • Information from clients
  • Billing and invoicing details
  • Communication records
  • Contractual information
  • Necessary account or access credentials for project delivery (handled securely)

How we use your personal data

We only use your information when we have a lawful basis to do so.

To deliver our services

So we can develop and fulfil our contracts.

  • Responding to enquiries
  • Preparing proposals
  • Delivering development, creative or digital services
  • Providing client support
  • Managing project communication

For website operation and analytics

To improve our website.

  • Analysing visitor behaviour
  • Ensuring site security and performance

For marketing

You can opt out at any time.

  • Sending updates or newsletters where you opt‑in
  • Following up on business enquiries

Legal and regulatory compliance

  • Tax, accounting, audits
  • Responding to lawful requests

Cookies and Tracking Technologies

Our website uses cookies and similar technologies to:

  • Improve site performance
  • Analyse usage
  • Personalise content
  • Support security

Where required, we ask for your consent before placing non‑essential cookies.

You can change your cookie settings at any time via your browser or our cookie banner.

Sharing your personal data

We may share your personal data with trusted third parties who help us operate our website and deliver our services, such as:

  • Hosting providers
    Cloud storage platforms
  • Analytics and performance tools
  • Customer relationship management (CRM) systems
  • Email or marketing platforms
  • Sub‑contractors working on your project

All third parties operate under strict data protection agreements and may only process your information in accordance with our instructions.

We do not sell or distribute your data to unrelated third parties.

International data transfers

Some of our service providers may be based outside the UK or EEA.

Where this occurs, we ensure appropriate safeguards are in place, such as:

  • UK GDPR‑approved
  • Standard Contractual Clauses
  • Adequacy decisions
  • Additional security measures

We only transfer data where it is lawful and secure to do so.

How long we keep your information

We retain personal data only for as long as necessary for the purposes it was collected, including:

  • Enquiry data: typically 12 months
  • Client project data: retained for contractual and legal requirements
  • Analytics data: according to our cookie policy
    Marketing data: until you unsubscribe
  • Legal, accounting and regulatory data: statutory retention periods 
When no longer needed, data is securely deleted or anonymised.

How we protect your data

We take security seriously and use appropriate technical and organisational measures, including:

  • Secure hosting and encrypted data transfer
  • Access controls and authentication
  • Data minimisation
  • Regular security reviews
  • ISO 27001‑aligned information security controls

More information on our Information Security practices is available upon request.

Your rights

Under UK GDPR, you have the right to:

  • Access your personal data
  • Correct inaccurate data
  • Request deletion (“right to be forgotten”)
  • Restrict or object to processing
  • Withdraw consent at any time
  • Receive a copy of your data (data portability)
  • Object to direct marketing
  • Complain to the Information
  • Commissioner’s Office (ICO)

To exercise your rights, contact us using the details provided above.

Changes to this policy

We may update this Policy from time to time, and the latest version will always be published on this page.