Rockgate Academy ← Back to the website
Legal information

Privacy Policy

This policy explains how Rockgate Academy Ltd collects, uses and protects personal information when you visit this website, message us, or enquire about a programme. Last updated: 27 September 2026.

1. Who we are

The data controller is Rockgate Academy Ltd, a company registered in England and Wales under company number 17153023, with registered office at 71–75 Shelton Street, Covent Garden, London, WC2H 9JQ.

Rockgate Academy Ltd is a training provider. It is not authorised or regulated by the Financial Conduct Authority and does not provide regulated financial advice. This policy covers personal data only — see our FAQs for more on what Rockgate Academy is and isn't.

Privacy enquiries can be sent to [email protected].

2. Information we collect

Depending on how you contact us, we may collect:

  • your name, email address, phone number and the programme you're interested in, if you use the enquiry form;
  • anything you tell us about your background, learning goals, or (for case support) the case you'd like help with;
  • messages and call notes from any follow-up conversation, including over WhatsApp;
  • payment and billing information if you enrol on a paid programme, handled directly by our payment provider, Monzo;
  • technical information collected automatically by our website host, such as IP address, browser type, and page requests.
The enquiry form on this site does not submit your details to a server or database. Pressing "Submit Enquiry" prepares an email on your own device for you to review and send — we only receive it if you choose to send that email.

3. How and why we use personal information

We use personal information to:

  • respond to your enquiry and answer your questions;
  • take steps you request before you enrol on a programme, such as confirming availability or pricing;
  • deliver a programme or case-support session you've booked, including course communications;
  • process payment for a paid programme, via Monzo;
  • keep basic business and accounting records, and meet our legal obligations.

Our lawful bases are, depending on the situation: taking steps at your request before a contract, performing a contract once you've enrolled, our legitimate interest in responding to enquiries and running the business, and complying with legal obligations such as tax and accounting rules.

We do not make decisions with legal or similarly significant effects on you by automated means through this website.

4. Who we may share information with

Where necessary, information may be shared with:

  • Monzo, to process payment for a paid programme;
  • our website hosting provider, to keep the site running and secure;
  • email and communication tools we use to reply to you;
  • a regulator, law-enforcement body, or professional adviser, where required by law.

We do not sell personal information.

5. External services this site uses

This site requests brand fonts from Google Fonts when a page loads. That request may give Google technical information such as an IP address and browser details.

WhatsApp links only take you to WhatsApp when you choose to click them. Meta's own privacy terms then apply to that conversation.

Payment for paid programmes is handled directly by Monzo. We do not store your card details ourselves — Monzo's own privacy terms apply to that transaction.

6. How long we keep information

We keep personal information only for as long as it's reasonably needed for the purpose it was collected for, and to meet legal or accounting requirements.

A general enquiry that doesn't lead to enrolment is normally deleted within 24 months of the last contact. Records connected to a paid programme (such as invoices) are kept for as long as UK tax and accounting rules require, typically six years.

7. Security

We use reasonable technical and organisational measures to protect personal information from unauthorised access, loss, misuse, or disclosure. No method of internet transmission is completely secure, so please avoid sending sensitive documents (such as ID or bank statements) over ordinary email or WhatsApp.

8. Your information rights

Under UK GDPR, you may have the right to:

  • ask for access to the personal information we hold about you;
  • ask for inaccurate information to be corrected;
  • ask for information to be erased or its use restricted;
  • object to certain processing, including direct marketing;
  • receive certain information in a portable format;
  • withdraw consent where consent is the basis we're relying on.

To make a request

Email [email protected]. We may need to verify your identity first.

9. Cookies and website data

This site does not set analytics, advertising, or profiling cookies. Basic security logs may still be created automatically by our website host. If that changes in future, this policy will be updated first.

10. Questions and complaints

If you have a question or concern about how your personal information has been handled, please contact us first at [email protected] — we'll do our best to put things right.

You also have the right to complain to the Information Commissioner's Office (ICO), the UK's data-protection regulator, at ico.org.uk.

Rockgate Academy is a training provider, not a regulated financial services firm, so complaints about our training or case-support service are not eligible for referral to the Financial Ombudsman Service — that route applies to regulated financial advice, not to training. Please raise any service concerns with us directly using the details above.

We may update this policy if our services, suppliers, or legal duties change. The latest revision date is shown at the top of this page.