This Privacy Policy explains how Steller Investment & Finance Solution LTD (trading as Steller Finance) ("Steller Finance", "we", "us" or "our") collects, uses, stores and shares personal data and your rights under applicable UK data protection laws (including the Data Protection Act 2018 and other related legislation). This Policy applies to personal data processed in connection with our Website (stellerfinance.co.uk), our Services and any communications between you and us.
Steller Investment & Finance Solution LTD is the data controller for personal data collected through our Website and Services. Contact details:
Address: 22 Gunnersbury Crescent, Acton, London, United Kingdom, W3 9AA
Email: loans@stellerfinance.co.uk
Phone: +44 020 3951 2735
We process personal data for the following purposes, relying on the legal bases indicated:
5.1 Credit reference agencies: When assessing an application we may share personal data with credit reference agencies (CRAs). CRAs will supply information such as credit scores and public records to lenders and will record searches on credit files which may be visible to other organisations and affect credit scores.
5.2 Automated decisions: Some aspects of credit assessment by lenders may involve automated decision-making and profiling. We will advise you where automated decision-making is used and provide information on your rights in relation to such processing. Where required by law, we will obtain your explicit consent before processing that results in a solely automated decision producing legal or similarly significant effect.
We will share personal data with third parties where necessary for the performance of Services or where required by law, including:
We require third parties to handle personal data securely and only for specified purposes. Where third parties process data on our behalf, they will do so under written contracts and appropriate safeguards.
We may transfer personal data to countries outside the UK (including the EEA, or to service providers operating in jurisdictions such as the United States). Where transfers occur, we will ensure appropriate safeguards are in place, such as:
We will ensure onward transfer safeguards are documented and available on request.
We retain personal data only for as long as necessary to fulfil the purposes we collected it for, including to meet legal, regulatory and accounting requirements. Typical retention periods may include:
Specific retention periods will be determined based on the nature of the data and legal obligations. Please contact us for details of exact retention durations.
Under UK data protection law you have the following rights in relation to personal data we hold about you (subject to applicable exemptions):
To exercise any of these rights please contact our Data Protection Contact at: [INSERT CONTACT EMAIL/ADDRESS]. We will respond within one month of receipt of the request (or longer where permitted by law) and may require identity verification.
We use cookies and similar technologies to operate and provide our Website, to understand usage patterns and to personalise content. Our Cookie Policy (link) explains the types of cookies used, their purpose and how to manage preferences.
When sending marketing communications by electronic means (email, SMS) we will comply with the Privacy and Electronic Communications Regulations (PECR). We will only send direct electronic marketing where we have consent or where a legitimate interest applies and you have been given an opt-out.
We implement appropriate technical and organisational measures to protect personal data against unauthorised access, loss, destruction or alteration. Measures include encryption, access controls, secure servers and staff training. However, no method of transmission or storage is completely secure and we cannot guarantee absolute security.
Our Services are not directed at children under 18. We do not knowingly collect personal data from children. If you believe we have inadvertently collected data from a minor, please contact us so we can promptly delete the data and take appropriate steps.
You may opt out of receiving marketing at any time by following the unsubscribe instructions in the communication or by contacting us at [INSERT CONTACT]. Even if you opt out of marketing, we may still send you non-marketing transactional messages about your account or applications.
If you have a complaint about how we process your personal data, please contact our Data Protection Contact in the first instance at [INSERT]. You also have the right to lodge a complaint with the Information Commissioner’s Office (ICO): www.ico.org.uk.
We may update this Privacy Policy from time to time to reflect changes in our practices, legal requirements, or services. We will publish the updated policy on the Website with the effective date. Where changes are material, we will notify impacted users.
Data Protection Contact / Privacy Officer: [INSERT NAME OR TITLE]
Email: [INSERT]
Postal address: [INSERT REGISTERED OFFICE ADDRESS]
Phone: [INSERT]
Some lenders may use automated decision-making or profiling to assess creditworthiness or affordability. We will notify you where such processing is in place and provide information about the logic and the potential impact of the processing. You may request human review of such decisions when permitted.
If you are accessing our Services from outside the UK, please note that data transferred to and processed in the UK will be subject to UK data protection laws. By using our Services you consent to the transfer of your personal data to the UK and other jurisdictions where we operate or where our service providers are located.
Our Website may contain links to third-party websites. This Privacy Policy only applies to data collected by Steller Finance. We are not responsible for the privacy practices of third-party sites and you should review their privacy policies.
We retain personal data only for as long as necessary. When data is no longer required we securely delete or anonymise it in accordance with our data retention policy and legal obligations.
We conduct DPIAs where processing is likely to result in high risk to individuals’ rights and freedoms (for example, large-scale profiling). DPIAs help identify and mitigate privacy risks.
We use third-party data processors to provide certain services (hosting, analytics, payment processing). Where we engage processors, we have contracts in place requiring them to implement appropriate security measures and to process personal data only on our instructions.
In the event of a personal data breach affecting your data, we will comply with our legal obligations to report the breach to the ICO where required and, where the breach is likely to result in a high risk to individuals’ rights and freedoms, we will notify affected individuals without undue delay.
If you have questions about this Privacy Policy, wish to exercise your rights, or wish to make a complaint, contact our Data Protection Contact:
Email: loans@stellerfinance.co.uk
Address: 22 Gunnersbury Crescent, Acton, London, United Kingdom, W3 9AA
Phone: +44 020 3951 2735