This policy explains what personal data Rentez collects, why it is collected, who processes it, and what rights you have over it. It applies to the website at rentez.eu and to the members-only trading journal.
WELLINGTON TRADE LTD
Company Number 09748800, registered in England and Wales
Contact: contact@rentez.eu
Wellington Trade Ltd is the data controller for the purposes of the UK GDPR and the EU GDPR. The author of the published content remains anonymous to members, but the company behind the service is fully identified above and is legally accountable for how your data is handled.
Deliberately very little. There is no advertising network, no behavioural profiling, and no sale of data to anyone.
| Data | When | Why |
|---|---|---|
| E-mail address | At sign-up, login, or when using the contact form | To create and authenticate your membership, and to reply to your question |
| Payment details | At checkout | Handled entirely by Stripe — card numbers never reach our servers or database |
| Billing name, country, VAT status | At checkout | Invoicing and tax compliance |
| Session token, IP address, browser user-agent | When you sign in | To keep you logged in, and to enforce the two-device limit per membership |
| Message content | When you use the contact form | To answer you; includes a basic anti-spam rate limit tied to your IP |
There are no marketing cookies, no analytics trackers and no third-party pixels on this site. The only cookie set is the session cookie that keeps you signed in.
Personal data is shared only with the processors needed to run the service:
| Processor | Purpose | Data shared |
|---|---|---|
| Stripe | Payments and subscription billing | E-mail, billing details, payment data |
| Resend | Transactional e-mail (login links, replies) | E-mail address, message content |
| Notion | Authoring and storing journal entries | Content only — no member data |
| Hosting provider | Running the website and database | All operational data, stored in the EU/UK |
Each processor is bound by its own data processing agreement. Where a transfer outside the UK/EEA occurs, it relies on Standard Contractual Clauses or an adequacy decision.
Under the UK GDPR and EU GDPR you may request access to your data, correction of inaccurate data, erasure, restriction of processing, portability, or object to processing based on legitimate interests. You may also withdraw consent where processing relies on it.
Write to contact@rentez.eu and the request will be handled within one month. If you believe your data has been mishandled, you may complain to the UK Information Commissioner's Office at ico.org.uk, or to your local supervisory authority in the EEA.
The site is served over HTTPS. Session cookies are HTTP-only, secure and SameSite-restricted. Login uses single-use expiring links rather than stored passwords, so there is no password database to breach. Card data is never stored on our infrastructure.
The service is not directed at anyone under 18, and accounts are not knowingly created for minors.
If this policy changes materially, the date at the top is updated and active members are notified by e-mail before the change takes effect.
Any question about this policy or about your data: contact@rentez.eu.