Website Privacy Notice

1. BACKGROUND

Last updated: 2nd June 2026 

1.1 This notice (Privacy Notice) tells you how we look after your personal data when you visit our website at lief.care (Website), where you are a prospective customer of our business, or where you are another type of business contact, such as a supplier or service provider to our business. 

1.2 This notice sets out what information we collect about you, what we use it for and whom we share it with. It also explains your rights under data protection laws and what to do if you have any concerns about your personal data. 

1.3 We may sometimes need to update this Privacy Notice to comply with new business practices or legal requirements. You should check this Privacy Notice regularly to see whether any changes have occurred. 

2. WHO WE ARE AND OTHER IMPORTANT INFORMATION

2.1 We are YERADO LIMITED, registered in England and Wales with company number 14008556 with our registered address at 16 Croftdown Road, Birmingham, B17 8RB (we, us or our). 

2.2 For all visitors to our Website we are the controller of your information (which means we decide what information we collect and how it is used). 

2.3 We are registered with the Information Commissioner’s Office (ICO), the UK regulator for data protection matters, under number C1275628. 

3. CONTACT DETAILS

3.1 If you have any questions about this Privacy Notice or the way that we use information, please get in touch using the following details: 

Data Protection Officer 

Name: Prior Analytics Ltd 

Email address: [email protected]

4. THE INFORMATION WE COLLECT ABOUT YOU

4.1 Personal data means any information which does (or could be used to) identify a living person. We have grouped together the types of personal data that we collect, and where we receive it from, below. 

4.2 Type of personal data: 

Identity Data: your name and your company’s name. 

Contact Data: your email address and telephone numbers. 

Technical Data: internet protocol (IP) address, browser type and version, time zone setting and generic location, browser plug-in types and versions, operating system and platform on the devices you use to access our systems. 

Usage Data: information about how you use our systems. 

Marketing and Communication Data: includes your preferences in receiving marketing from us and our third parties and your communication preferences. 

4.3 Please note that we do not collect any payment card data or similar data relating to your method of payment. You provide this data directly to Stripe who processes payments on our behalf. We only receive and process information about the timing and amount of your payment. 

5. HOW WE USE YOUR INFORMATION

5.1 We are required to identify a legal justification (also known as a lawful basis) for collecting and using your personal data. There are six legal justifications which organisations can rely on. The most relevant of these to us are where we use your personal data to: 

– do something for which you have given your consent

5.2 Below is set out the lawful basis we rely on when we use your personal data. If we intend to use your personal data for a new reason that is not listed below, we will update our Privacy Notice. 

5.2.1 Consent 

– Where you have provided your consent to providing us with information or allowing us to use or share your information. 

– Where you have consented to receive marketing material from us. 

5.3 Where we need to collect your personal data (for example, in order to fulfil a contract we have with you), failure to provide us with your personal data may mean that we are not able to provide you with the services. Where we do not have the information required about you to fulfil an order, we may have to cancel the service ordered. 

6. WHO WE SHARE YOUR INFORMATION WITH

6.1 We share (or may share) your personal data with: 

  • Our personnel: our employees (or other types of workers) who have contracts containing 

confidentiality and data protection obligations. 

  • Our supply chain: other organisations that help us provide our goods. We ensure these 

organisations only have access to the information required to provide the support we use them and have a contract with them that contains confidentiality and data protection obligations. Here is list of our supply chain organisations (subprocessors):

Supplier Purpose Data processed Location
Auth0 User authentication Email address and authentication credentials EU
AWS Hosting and storage All customer data UK
OpenAI AI-assisted report and summary generation Pseudonymised/de-identified data only US
Microsoft Speech-to-text functionality Audio submitted for transcription UK
Grammarly Grammar and spell checking User-entered text US
Mailgun User invitation emails User email address and account information EU
Trainin Product training services Name and email address US
Airtable Demo and sales enquiry management Contact details US

International transfers are protected through appropriate contractual safeguards and Data Processing Agreements where required.

6.2 If we were asked to provide personal data in response to a court order or legal request (e.g. from the police), we would seek legal advice before disclosing any information and carefully consider the impact on your rights when providing a response. 

7. WHERE YOUR INFORMATION IS LOCATED OR TRANSFERRED TO

7.1 We store your personal data on our servers in the UK. 

7.2 We will only transfer information outside of the UK or EEA where we have a valid legal mechanism in place (to make sure that your personal data is guaranteed a level of protection, regardless of where in the world it is located, e.g. by using contracts approved by the ICO or the UK Secretary of State). 

7.3 If you access our Website whilst abroad then your personal data may be stored on servers located in the same country as you or your organisation.

8. HOW WE KEEP YOUR INFORMATION SAFE

8.1 We have implemented security measures to prevent your personal data from being accidentally or illegally lost, used or accessed by those who do not have permission. These measures include: 

– access controls and user authentication

– internal IT and network security

8.2 If there is an incident which has affected your personal data and we are the controller, we will notify the regulator and keep you informed (where required under data protection law). Where we act as the processor for the affected personal data, we notify the controller and support them with investigating and responding to the incident. 

8.3 If you notice any unusual activity on the Website, please contact us [email protected]

9. HOW LONG WE KEEP YOUR INFORMATION

9.1 Where we act as the controller, we will only retain your personal data for as long as necessary to fulfil the purposes we collected it for. 

9.2 To decide how long to keep personal data (also known as its retention period), we consider the volume, nature, and sensitivity of the personal data, the potential risk of harm to you if an incident were to happen, whether we require the personal data to achieve the purposes we have identified or 

whether we can achieve those purposes through other means (e.g. by using aggregated data instead), and any applicable legal requirements (e.g. minimum accounting records for HM Revenue & Customs). 

9.3 We may keep Identity Data, Contact Data and certain other data (specifically, any exchanges between us by email or any other means) for up to seven years after the end of our contractual relationship with you. 

9.4 If you browse our Website, we keep personal data collected through our analytics tools for only as long as necessary to fulfil the purposes we collected it for. 

9.5 If you have asked for information from us or you have subscribed to our mailing list, we keep your details until you ask us to stop contacting you. 

10. YOUR LEGAL RIGHTS

10.1 You have specific legal rights in relation to your personal data. 

10.2 We can decide not to take any action in relation to a request where we have been unable to confirm your identity (this is one of our security processes to make sure we keep information safe) or if we feel the request is unfounded or excessive. Usually there is no cost for exercising your data protection rights, but we may charge a fee where we decide to proceed with a request that we believe is unfounded or excessive. If this happens, we will always inform you in writing. 

10.3 We will respond to your legal rights request without undue delay, but within one month of us receiving your request or confirming your identity (whichever is later). We may extend this deadline by two months if your request is complex or we have received multiple requests at once. If we need to extend the deadline, we will let you know and explain why we need the extension. 

10.4 We do not respond directly to requests which relate to personal data for which we act as the processor. In this situation, we forward your request to the relevant controller and await their instruction before we take any action. 

10.5 If you wish to make any of the right requests listed below, you can reach us at [email protected]

10.6 Your rights include: 

Access: You must be told if your personal data is being used and you can ask for a copy of your 

personal data as well as information about how we are using it to make sure we are abiding by the law. 

Correction: You can ask us to correct your personal data if it is inaccurate or incomplete. We 

might need to verify the new information before we make any changes. 

Deletion: You can ask us to delete or remove your personal data if there is no good reason for us 

to continue holding it or if you have asked us to stop using it (see below). If we think there is a good reason to keep the information you have asked us to delete (e.g. to comply with regulatory requirements), we will let you know and explain our decision. 

Restriction: You can ask us to restrict how we use your personal data and temporarily limit the 

way we use it. 

Objection: You can object to us using your personal data if you want us to stop using it. If we 

think there is a good reason for us to keep using the information, we will let you know and explain our decision. 

Portability: You can ask us to send you or another organisation an electronic copy of your personal data.


How to make a data protection complaint
We are committed to protecting your personal information and responding promptly to any concerns about how it is used.

If you are unhappy with the way we have collected, used, shared, stored or otherwise processed your personal information, you have the right to make a complaint directly to us.

You can submit a complaint by contacting:

Yerado Ltd
Email: [email protected]

When making a complaint, please provide as much information as possible about your concern so that we can investigate it fully.

We will:

  • acknowledge receipt of your complaint within 30 days of receiving it;
  • investigate the matter without undue delay;
  • keep you informed of the progress of our investigation where appropriate; and
  • provide you with the outcome of our investigation without undue delay.

If we need additional information to investigate your complaint, we may contact you for further details. Where a complaint is submitted on behalf of another person, we may request evidence that the individual is authorised to act on that person’s behalf.

If you remain dissatisfied with our response, or if you believe we have not handled your complaint appropriately, you have the right to complain to the Information Commissioner’s Office (ICO), the UK’s independent authority for data protection matters.

Information about how to make a complaint to the ICO can be found at www.ico.org.uk/make-a-complaint, by calling 0303 123 1113, or by writing to:

Information Commissioner’s Office
Wycliffe House
Water Lane
Wilmslow
Cheshire
SK9 5AF

 

11. WHEN WE SEND YOU MARKETING MESSAGES

11.7 We market to prospective and existing business customers; this is known as Business-to Business Marketing (B2B Marketing). We may send marketing communications to their staff via work contact details. If you are a member of staff and do not wish to receive B2B Marketing, please let us know at [email protected]

11.8 Opting out of marketing will not affect our processing of your personal data in relation to any order you have with us and where we are required to use your personal data to fulfil that order or provide you with certain information.

Please share a few details with us so that we can take you to the demo that’s right for you.

Selected Plan:
Supported Accommodation Standard

Please share a few details with us so that we can take you to the demo that’s right for you.

Selected Plan:
Supported Accommodation Flexible

Please share a few details with us so that we can take you to the demo that’s right for you.

Selected Plan:
Children’s Care Home Flexible

Please share a few details with us so that we can take you to the demo that’s right for you.

Selected Plan:
Children’s Care Home Standard

Please share a few details with us so that we can take you to the demo that’s right for you.