
Privacy Policy
Effective Date: 06.07.2026
Last Updated: 06.07.2026
Privacy Policy
Agile Pangolin ("we", "our", "us") is committed to protecting your privacy and handling your personal information in a transparent, secure and lawful manner. Agile Pangolin is a sole trader business operated by Adrian Ferraro, trading as Agile Pangolin.
This Privacy Policy explains how we collect, use, store and protect your personal information when you visit our website, contact us or engage our consultancy services. It also explains your rights under the UK General Data Protection Regulation (UK GDPR) and the Data Protection Act 2018.
1. Data Controller
The Data Controller responsible for your personal information is:
Agile Pangolin
A sole trader business operated by Adrian Ferraro
Email: enquire@agilepangolin.com
ICO Registration Number: C1976259
2. The Information We Collect
Depending on how you interact with us, we may collect the following categories of information:
Personal Information
-
Name
-
Business name
-
Job title
-
Business address
-
Email address
-
Telephone number
Business Information
Where we provide consultancy services, we may collect business information relevant to delivering our services, including confidential commercial information supplied by clients.
Website Usage Information
When you visit our website, we may automatically collect information including:
-
IP address
-
Browser type
-
Device information
-
Pages visited
-
Time spent on pages
-
Referring website
-
Cookie and tracking information
3. How We Collect Your Information
We collect information when you:
-
Complete a contact form
-
Submit an enquiry
-
Subscribe to our newsletter
-
Download resources
-
Register for events
-
Contact us by email or telephone
-
Become a client
-
Browse our website
-
Accept cookies
-
Interact with our LinkedIn content or marketing activities
4. How We Use Your Information
We use your information to:
-
Respond to enquiries
-
Deliver consultancy services
-
Manage client relationships
-
Improve our website and services
-
Send newsletters and marketing communications where you have opted in
-
Administer events and resources
-
Meet legal and regulatory obligations
-
Protect our legitimate business interests
-
Maintain the security of our systems
5. Lawful Basis for Processing
Under UK GDPR we rely upon one or more of the following lawful bases:
Consent
Where you subscribe to newsletters, marketing communications or voluntarily provide information through our website.
Performance of a Contract
Where processing is necessary to provide consultancy services or to take steps before entering into a contract.
Legal Obligation
Where we are required to comply with applicable legal, accounting or regulatory obligations.
Legitimate Interests
Where processing is necessary for the legitimate interests of Agile Pangolin, including:
-
Operating our business
-
Responding to enquiries
-
Improving our services
-
Preventing fraud
-
Maintaining website security
-
Managing client relationships
Where we rely upon legitimate interests, we ensure that these interests do not override your rights and freedoms.
6. Marketing Communications
If you choose to subscribe, we may send newsletters, updates and information about our services. Marketing consent is obtained through our website and LinkedIn. You may withdraw your consent at any time by:
-
Clicking the unsubscribe link included in every marketing email; or
-
Contacting us at contact@agilepangolin.com.
7. Cookies and Website Analytics
Our website uses cookies to improve your browsing experience. These may include:
-
Essential cookies
-
Analytics cookies
-
Advertising cookies
We use a cookie consent mechanism allowing you to accept or manage your cookie preferences. We use services including:
-
Google Analytics
-
Google Tag Manager
For further information, please refer to our Cookie Policy.
8. Third-Party Service Providers
We use trusted third-party providers to help operate our business, including:
-
Capsule CRM
-
Transpond Marketing
-
Google Workspace
-
Google Analytics
-
Google Tag Manager
-
Wix (website platform)
-
Amazon Web Services (AWS)
-
Website hosting providers
-
Secure cloud storage providers
These providers only process personal information on our behalf where appropriate contractual safeguards are in place.
9. International Transfers
Some of our service providers may store or process personal information outside the United Kingdom. Where personal data is transferred internationally, we ensure appropriate safeguards are in place, including:
-
UK adequacy regulations;
-
the UK International Data Transfer Agreement (IDTA); or
-
other legally recognised transfer mechanisms required under UK GDPR.
10. Data Retention
We retain personal information only for as long as necessary. Typical retention periods include:
-
Client records: Up to 7 years
-
Financial records: Up to 7 years
-
Enquiry records: Up to 7 years where relevant
-
Marketing subscribers: Until you unsubscribe or become inactive
-
Website analytics: In accordance with Google Analytics retention settings
Where longer retention is required by law, we will retain information for the applicable statutory period.
11. Sharing Your Information
We may share personal information where necessary with:
-
Professional advisers
-
Accountants
-
Legal advisers
-
Insurers
-
Regulators
-
Courts
-
Government authorities
-
Technology providers acting on our behalf
We will never sell your personal information.
12. Keeping Your Information Secure
We take appropriate technical and organisational measures to protect personal information.
These include:
-
Encryption
-
Access controls
-
Secure hosting
-
Staff awareness and training
-
Multi-factor authentication
-
Secure cloud storage
-
Regular security reviews
While no online service can be completely secure, we continually review our security measures to reduce risk.
13. Your Rights
Under UK GDPR you have the right to:
-
Access your personal information
-
Correct inaccurate information
-
Request deletion of your information
-
Restrict processing
-
Object to processing
-
Request data portability
-
Withdraw consent where consent is the legal basis for processing
To exercise any of these rights, please contact: enquire@agilepangolin.com
14. Automated Decision Making
Agile Pangolin does not carry out automated decision-making or profiling that produces legal or similarly significant effects on individuals.
15. Children's Privacy
Our website and services are intended for business users and are not directed at children under the age of 18. We do not knowingly collect personal information from children.
16. Complaints
If you have any concerns about how we handle your personal information, we encourage you to contact us first so that we can seek to resolve your concerns. If you remain dissatisfied, you have the right to lodge a complaint with the UK Information Commissioner's Office (ICO), which regulates data protection and privacy matters in the United Kingdom.
17. Changes to This Privacy Policy
We may update this Privacy Policy from time to time to reflect changes in our services, legal obligations or business practices. Any updates will be published on this page together with the revised "Last Updated" date.
18. Contact Us
If you have any questions about this Privacy Policy or how we process your personal information, please contact: Agile Pangolin A sole trader business operated by Adrian Ferraro
Email: enquire@agilepangolin.com
