Skip to main content
Postcodewise logo

Privacy Policy

Your privacy matters. This Privacy Policy explains how Digitsflow LTD ("we", "our", "us") collects, uses and protects personal data when you use Postcodewise—whether you browse reports, authenticate for APIs, or collaborate inside organisation workspaces.

Last Updated: September 2026

1. Who We Are

Digitsflow LTD is the data controller for personal information processed in connection with Postcodewise. We are a private limited company registered in England & Wales (Company No. 16330711) with our statutory registered office at Suite A, James Carter Road, Mildenhall, Bury St. Edmunds, IP28 7DE.

2. What Data We Collect

  • Account & verification data: name, email address, mobile telephone number (collected for SMS security verification and sybil/fraud mitigation), login credentials, passkey credentials, and organisation or workspace memberships. We support passwordless authentication via FIDO2 / WebAuthn Passkeys. Postcodewise stores only the public cryptographic key and credential ID. We never access, transmit, or store biometric templates (such as fingerprints or facial scans); biometric authentication is performed exclusively within your device's local Secure Enclave or hardware authenticator.
  • Social sign-in data: if you register or authenticate using Google, Apple, or Facebook OAuth, we receive your verified email address, full name, and unique provider identifier. We do not access your social media contacts, feeds, private messages, or extended profile data.
  • Conversational & AI query data: natural-language questions submitted to the Postcode AI Assistant, associated postcode coordinates, and question interaction telemetry. All user queries undergo automated sanitisation to strip identifiable personal information prior to processing and database caching.
  • Workspace & operational content: CSV location spreadsheets uploaded for postcode matching, survey templates and response payloads you collect, Floor Planner design canvas coordinates and dimensions, and team member invitations.
  • Map Studio & Shareable Maps data: titles, descriptions, custom pin markers, drawn geometric shapes (polygons, lines, radiuses), and boundary configurations created via Map Studio. For guest (non-logged-in) creators, edit authorization secrets are stored locally in your browser storage (localStorage); IP addresses are hashed using cryptographic one-way hashing for rate limiting and abuse prevention.
  • Floor Planner Room Scanner & sensor privacy: our mobile room scanner (/scan/{token}) accesses your device camera, orientation gyroscope, and WebXR LiDAR/depth sensors solely to compute dimensional walls. All optical video frames and camera feeds are processed client-side in-memory on your device. Video frames, photos, and camera streams are never transmitted to, recorded, or stored on Postcodewise servers. Only mathematical geometric coordinates (wall lengths, vertex coordinates) are transmitted to sync your floor plan.
  • Geolocation data: when you use the "Use my location" feature on our website or mobile apps, your device GPS coordinates (latitude and longitude) are transmitted ephemerally solely to resolve the closest UK postcode. We do not track, record, or store your physical location history or movement routes.
  • Widget lead capture data: where you submit an inquiry form embedded on a third-party website via a Postcodewise scorecard widget, we collect your email address, postcode, and technical metadata (IP address, user agent, referrer URL) strictly on behalf of that website's operator.
  • Technical & telemetry data: IP addresses, browser and device user-agents, referrer URLs, security audit logs, API usage metrics, and webhook diagnostic headers.
  • Payment & subscription data: transaction identifiers, billing addresses, VAT details, and payment records. Payment card details are tokenised and processed directly by our PCI-DSS compliant partner Stripe; full credit/debit card numbers never touch Postcodewise servers.
  • Support & feedback: communications, error reports, support tickets, and feedback submissions.

3. Browser Extension: Data, Location & Protections

The Postcodewise Property Report browser extension (Chrome, Edge, Firefox, Opera, Brave, Arc, and Safari) surfaces a Postcodewise report next to property listings you view. This section explains exactly what it reads, what "location data" means for the extension, what we send to our servers, what stays on your device, and how it's protected.

What the extension reads from a page

The extension only runs on property listing pages on Rightmove, Zoopla, OnTheMarket, PrimeLocation, and OpenRent, plus our own sign-in page at postcodewise.co.uk/extension/connect. On a listing page, it reads the property's address, postcode, and asking or rental price directly from that page's visible content — the same text you can already see in your browser.

"Location data" — what it is and isn't

The extension does not use your device's GPS, Wi-Fi positioning, or IP-based geolocation, and does not request browser geolocation permission. The only location-related data it handles is the property address and postcode of the listing you are viewing — information already displayed on the page, not your own physical whereabouts.

What we send to our servers

When you are signed in, the extension sends the postcode (and, for the "this property" sale-history feature, the scraped address text) to our own servers at postcodewise.co.uk over HTTPS, so we can return the area report or that property's Land Registry sale history. We never send this data to any third party, and the extension makes no network requests to any domain other than postcodewise.co.uk — its permissions are scoped to the five listing sites above purely so it can read the page content on them; it cannot see or access any other website you visit.

What's stored on your device

Signing in stores a short-lived sign-in token, your name and email, and your report quota in the browser's local extension storage on your own device. This never leaves your device except as the bearer token sent with requests to postcodewise.co.uk to authenticate them. It is removed automatically when the sign-in expires or you disconnect, and everything is deleted immediately if you uninstall the extension.

How it's protected

  • All communication with our servers is HTTPS-only.
  • Host permissions are limited to the five listing portals and postcodewise.co.uk — nothing broader.
  • No third-party analytics, advertising, or tracking code is bundled in the extension.
  • Address and postcode data read from a page is used solely to generate your report, never sold or shared.
  • You can disconnect your account from the extension at any time, which clears the stored sign-in token.

4. How We Use Your Data & Legal Basis

We process your personal data only where we have a lawful basis under UK GDPR and the Data Protection Act 2018:

  • Contract: to onboard you, authenticate your identity, deliver postcode reports, execute AI queries, fulfil API quotas and subscriptions, provision workspace artefacts (such as surveys and floor plans), and honour commercial agreements.
  • Legitimate Interests: to maintain platform security, prevent fraud and sybil account farming through mobile phone SMS verification, defend our infrastructure from abusive scraping, optimize query performance through cached summaries, and analyze aggregated platform telemetry.
  • Legal Obligation: to meet statutory accounting, VAT, and corporate tax compliance duties under UK law (e.g. HMRC records).
  • Consent: where you grant opt-in consent for non-essential analytics cookies, session replay recording, or voluntary marketing communications (which may be withdrawn at any time).

Contractual & Statutory Requirements: Provision of your verified email address, valid mobile telephone number, and payment information is a contractual requirement to register an account, verify identity, receive complimentary report or AI credits, or purchase subscriptions. If you choose not to provide this information, we will be unable to establish an account, issue API keys, or deliver authenticated services to you, although you remain free to use public postcode search anonymously.

5. Third‑Party Processing & Sharing

We disclose personal data strictly to vetted sub-processors essential for operating Postcodewise services:

Stripe Payments Europe, Ltd. & Stripe, Inc.

PCI-DSS Level 1 certified payment processor handling credit/debit card transactions and recurring workspace subscriptions.

AI Partners

Natural language inference provider powering the Postcode AI Assistant. Questions are automatically sanitised to scrub personal data before transmission, and data is processed under enterprise terms with zero training on customer inputs.

SMS Gateway & Telecommunications Carriers

Secure transmission of one-time security passcodes via SMS to verify mobile phone ownership upon registration.

Cloudflare, Inc.

Global content delivery network (CDN), web application firewall (WAF), DDoS mitigation, and Cloudflare Workers AI for automated survey translation.

Amazon Web Services (AWS)

Secure cloud hosting, storage, and transactional notification infrastructure within the UK and EU.

Transactional Email Carriers (Postmark, Resend, AWS SES)

Transactional delivery infrastructure utilized to send account verification emails, password resets, security notifications, and billing receipts.

PropertyData API & Spatial Partners

Specialized property intelligence APIs enriching postcode reports with estimated valuation benchmarks. Map tiles are served from our self-hosted infrastructure (maps.postcodewise.co.uk) with no third-party user tracking.

DigitalOcean, LLC

Cloud computing infrastructure and worker processing hosted in UK/EU data centres.

Hetzner Online GmbH

Dedicated high-performance data processing servers hosted within the EU.

Google Analytics 4

Aggregated web traffic measurement operated with IP anonymisation and Google Consent Mode v2 (storage denied until granted).

Microsoft Clarity

We partner with Microsoft Clarity and Microsoft Advertising to capture how you interact with our website through behavioral metrics, heatmaps, and session replay to improve user experience. Website usage data is captured using cookies and tracking technologies strictly when user consent is granted. For details, view the Microsoft Privacy Statement.

External Links & Third-Party Platforms

Postcodewise contains outbound links to external websites, including UK public-sector bodies (Police.uk, Department for Education, Office for National Statistics, HM Land Registry) and third-party commercial property portals. A link to an external website does not imply endorsement. We have no control over and assume no responsibility for the content, privacy policies, or cookie practices of external websites. When navigating away from our platform, you should review the privacy notice of the destination site.


We do not sell, rent, or trade your personal data to third parties under any circumstances. We may disclose data where required by law or in response to lawful regulatory requests.

6. International Transfers

Where we transfer personal data outside the UK or European Economic Area, we rely on appropriate safeguards such as:

  • UK adequacy regulations;
  • International Data Transfer Agreements (IDTAs) or UK Addendums to EU Standard Contractual Clauses;
  • Binding corporate rules of our certified processors.

7. Your Data‑Protection Rights

Under UK GDPR you have rights to:

  • Access – obtain a copy of your data.
  • Rectification – correct inaccurate or incomplete data.
  • Erasure – request deletion ("right to be forgotten").
  • Restriction – limit processing.
  • Portability – receive data in a machine‑readable format.
  • Object – object to processing based on legitimate interests or direct marketing.
  • Withdraw Consent – at any time where processing is based on consent.

Facebook Data Deletion: If you registered or linked your account via Facebook Login, you may request the deletion of your Facebook-associated account data at any time via your Facebook Settings under "Apps and Websites". Upon receipt of Facebook's automated callback, we initiate account data purging. You can review the real-time status of your data deletion request on our Facebook Data Deletion Status page.

Identity Verification & Statutory Exceptions: To safeguard personal data and prevent unauthorized disclosure, we may request proof of identity before fulfilling Subject Access Requests (SARs) or processing deletion requests. Please note that certain rights (such as erasure) are subject to statutory exceptions where continued retention is necessary to comply with a legal obligation (such as statutory HMRC tax retention), perform a contract, or establish, exercise, or defend legal claims.

To exercise any of these rights, email [email protected]. We will respond within one calendar month without charge.

If you believe we have not handled your data properly, you have the right to lodge a complaint with the UK Information Commissioner's Office (ICO): Wycliffe House, Water Lane, Wilmslow, Cheshire, SK9 5AF (Helpline: 0303 123 1113, Website: ico.org.uk).

8. Data Retention & Security

We retain personal data only for as long as necessary to fulfil legitimate business and legal purposes:

  • Unverified Registrations & 30-Day Automated Purge: User registrations that remain unverified (where email address verification has not been completed) are retained for a strict grace period of thirty (30) calendar days from signup. During this window, automated reminders are dispatched. If an account is still unverified at thirty (30) days, the user record, contact details, and any associated workspace allocations are permanently and irreversibly expunged.
  • Unauthorised Sign-Up Cancellation ("Didn't Sign Up?"): To safeguard email address owners against unauthorised registrations, every verification notice and reminder email includes a secure, one-click cancellation link. Anyone receiving an unrequested notice may instantly cancel the unverified account and permanently purge their email address from our systems without logging in.
  • Inactive Accounts & 3-Year Automated Deletion: Registered accounts that record no user activity or sign-in for three (3) consecutive years and possess no payment or transaction history are automatically and permanently deleted from our databases. A prior warning notification is dispatched thirty (30) calendar days before deletion. Authenticating or signing in immediately resets the activity timer and keeps the account active.
  • 6-Year Statutory Financial & Billing Retention (HMRC & UK Companies Act): In accordance with statutory UK tax and accounting legislation—including the Taxes Management Act 1970 (s.12B), the Companies Act 2006 (s.386), and HM Revenue & Customs (HMRC) regulatory requirements—accounts with historical financial transactions (including Stripe subscriptions, invoice records, and AI credit purchases) are retained for a mandatory statutory period of six (6) years from the transaction date.
  • Dormant Account Deactivation & "Long Time No See" Reactivation: For accounts subject to statutory financial retention that have remained inactive for more than three (3) years, the account is transitioned to a protected "Deactivated" state. Active web sessions are invalidated, and automated weekly usage reports and email digests are paused to protect user privacy. When an account owner returns and authenticates after prolonged dormancy, they are presented with an explanatory deactivation notice ("Long time no see") and can restore active access immediately via one-click account reactivation.
  • Automated Report Pausing for Dormant Accounts: Automated weekly API usage reports and email digests are automatically paused and disabled for any account that has recorded no user activity for twelve (12) consecutive months.
  • SMS Verification Passcodes: One-time passcodes expire and are permanently expunged within 10 minutes.
  • Phone Numbers & Account Identifiers: Retained for active accounts to verify authentication and enforce sybil defense / single-account credit limits.
  • Postcode AI Queries: Sanitised questions, question hashes, and generated answers are retained for caching and service improvement without user identifiers.
  • Financial & Billing Records: Invoices, VAT records, and subscription payment history are retained for up to 6 years pursuant to UK statutory tax requirements.

Technical and organisational measures—including TLS 1.3 encryption in transit, AES-256 encryption at rest, role-based access controls, and regular penetration testing—are continuously enforced to safeguard your data. While we implement robust industry safeguards, transmission of information over the public internet carries inherent risks and cannot be guaranteed as completely secure; any transmission is initiated at your own risk until it reaches our secure infrastructure. Users are advised to maintain appropriate endpoint security, such as up-to-date operating systems and anti-virus protection.

9. Cookies

Postcodewise uses cookies to operate and improve the platform. Full details are provided in our Cookie Policy, where you can manage preferences where tooling offers controls.

10. Contact Us

Questions or requests? Contact our Privacy Team:

[email protected]

Digitsflow LTD – Postcodewise Product
Suite A, James Carter Road, Mildenhall, Bury St. Edmunds, IP28 7DE

Alternative Formats: If you require this Privacy Policy or any legal notice in an alternative accessible format (such as large print, plain text, or audio), please contact our accessibility team at [email protected].

© 2026 Digitsflow LTD.

Detailed answer to your frequently asked question