alwayspen

Privacy & Cookie Policy

Last updated: 27 July 2026

alwayspen is a service operated by Sona IT ("Sona IT", "alwayspen", "we", "us"). This policy explains how we collect, use, and protect personal data when you use alwayspen.com and our services. Sona IT is the data controller. For any privacy question, contact [email protected].

Information we collect

How we use it

Our legal bases (UK GDPR) are performance of a contract, our legitimate interests in operating and securing the service, consent (for non-essential cookies and marketing), and compliance with legal obligations.

Cookies

We use a small number of cookies and similar technologies:

Sharing & sub-processors

We share data only with providers that help us run the service (for example hosting, email, payments, and - where you enable it - source-review tooling). Each is bound by data-processing terms. We do not sell your data. [List sub-processors here.]

International transfers

Where data is processed outside the UK/EEA, we rely on appropriate safeguards such as adequacy decisions or standard contractual clauses. We do not send client vulnerability data to jurisdictions without such safeguards.

Retention

We keep personal data only as long as needed to provide the service and meet legal obligations, then delete or anonymise it. Test reports are retained for [retention period] unless you ask us to delete them sooner.

Your rights

You may request access, correction, deletion, restriction, or portability of your data, and object to certain processing. Contact [email protected]. You can also complain to the UK Information Commissioner's Office (ICO) at ico.org.uk.

Changes

We'll update this page when our practices change and revise the date above.

Contact

Sona IT [confirm full registered name, e.g. Sona IT Ltd], [registered address], United Kingdom (company no. [number]). Email: [email protected].