Privacy Policy
Effective date: 2nd of June, 2026
20Rev LTD ("20Rev", "we", "us", "our") is committed to protecting personal data. This Privacy Policy explains how we collect, use, disclose, and protect personal data in connection with this website, enquiries made through it, meetings booked through linked scheduling tools, and email sign-ups for our AI-First Finance Team as a Service. It should be read alongside our Cookie Policy.
1. Who we are
20Rev LTD
Company number: 17198641
Registered in England and Wales
Email: contact@20rev.com
20Rev LTD is the controller of the personal data described in this Privacy Policy where applicable under UK data protection law. We do not have a designated Data Protection Officer.
2. Scope
This Privacy Policy applies to:
- Visitors to this website.
- Individuals who contact us directly by email, form, or other means.
- Individuals who book meetings through this website or through linked scheduling tools such as Calendly.
- Individuals who submit their email address to receive updates about our AI-First Finance Team as a Service.
3. Personal data we collect
We may collect and process the following categories of personal data:
- Identity data, such as your name.
- Contact data, such as your email address, telephone number, company name, and job title.
- Enquiry and communications data, such as the content of messages, correspondence, and details you provide when contacting us.
- Booking data, such as the information you submit when scheduling a meeting through Calendly or a similar provider.
- Technical data, such as IP address, browser type, device information, and limited usage or interaction data generated through use of the website or third-party tools.
- Cookie and preference data, such as your cookie choices and related consent settings.
- Publicly sourced business data, where we supplement contact records with information obtained from publicly available web sources for business development purposes.
4. How we collect personal data
We collect personal data:
- Directly from you, for example when you contact us, book a meeting, or submit your email address via our website form.
- Automatically, through cookies or similar technologies where they are strictly necessary or where you have given consent. This includes Cloudflare's web analytics, which operates in privacy-friendly mode and does not store cookies or retain personal IP addresses.
- From third-party providers, such as Calendly, where you use linked scheduling functionality.
- From publicly available web sources, where we supplement business contact data for legitimate business development purposes. This does not include data about individuals under 18.
5. Why we use personal data
We use personal data for the following purposes:
- To respond to enquiries and other communications.
- To arrange, manage, and follow up on calls, meetings, and demonstrations.
- To operate, secure, maintain, and improve the website.
- To keep records of commercial communications and business development activity.
- To comply with legal, regulatory, accounting, and tax obligations.
- To establish, exercise, or defend legal claims where necessary.
- To understand website usage where analytics or similar tools are enabled.
- To send marketing and sales communications about our AI-First Finance Team as a Service to individuals who have voluntarily submitted their email address.
- To manage email subscriber lists and, where consented, to use automated workflows such as welcome sequences.
6. Lawful bases
Depending on the circumstances, we rely on one or more of the following lawful bases:
- Legitimate interests, for example to respond to enquiries, manage communications, operate the website, maintain business records, conduct business development activities, and supplement contact data from publicly available sources where this does not override your rights.
- Steps prior to entering into a contract or performance of a contract, where discussions are progressing toward a commercial engagement or where services are being arranged.
- Consent, where this is required, including for optional cookies, email marketing subscriptions, and use of automated email workflows.
- Legal obligation, where we need to process personal data to comply with applicable law or regulation.
7. Third-party processors
Calendly and other scheduling providers
We use Calendly or similar scheduling providers to allow visitors to book meetings with us. When you use that functionality, relevant personal data may be processed by that provider in order to schedule and manage the meeting. Calendly publishes its own privacy notice, which should also be reviewed.
Brevo (email marketing and CRM)
We use Brevo to store email addresses submitted via our website form and to manage our subscriber list for our AI-First Finance Team as a Service. When you submit your email address:
- You consent to Brevo storing your data for this purpose.
- A link to Brevo's Privacy Policy is provided near the form.
- You consent to us using Brevo's features, including potential automated workflows such as welcome email sequences.
Brevo acts as a processor on our behalf under UK GDPR.
Hosting and infrastructure
We use Cloudflare for website hosting, content delivery, security, and web analytics. Cloudflare may process personal data on our behalf where necessary to provide these services. Cloudflare Analytics operates in privacy-friendly mode and does not store cookies or retain personal IP addresses.
We may also use other third-party providers for website hosting, content delivery, security, communications, and related business operations. Those providers may process personal data on our behalf where necessary to provide their services.
8. Sharing personal data
We may share personal data with:
- Hosting, website, and IT infrastructure providers (e.g., Cloudflare).
- Scheduling providers such as Calendly.
- Email marketing and CRM providers such as Brevo.
- Analytics or similar providers, where such tools are enabled.
- Professional advisers, such as lawyers, accountants, and other consultants.
- Courts, regulators, law-enforcement bodies, or other authorities where disclosure is required or reasonably necessary.
We do not sell personal data.
9. International transfers
Some service providers we use (including Brevo and Cloudflare) may process personal data outside the UK. Where that happens, we ensure appropriate safeguards are in place as required by UK data protection law, including reliance on UK-approved Standard Contractual Clauses or adequacy decisions.
10. Data retention
We retain personal data only for as long as reasonably necessary for the purposes for which it was collected, including for legal, regulatory, tax, accounting, and dispute-related requirements. Specific retention periods are:
- Enquiry and communications data: up to 5 years.
- Email subscriber data in Brevo: up to 5 years.
- Calendly meeting records: up to 5 years.
- Business development contact records: up to 5 years.
After these periods, we securely delete or anonymise the data unless a longer retention period is required by law.
11. Your rights
Under UK data protection law, you may have the right to:
- Request access to the personal data we hold about you.
- Request correction of inaccurate or incomplete personal data.
- Request erasure of personal data in certain circumstances.
- Request restriction of processing in certain circumstances.
- Object to processing based on legitimate interests.
- Request transfer of personal data you have provided to us, where applicable.
- Withdraw consent at any time where processing is based on consent.
You also have the right to raise a data protection concern directly with us, or to complain to the Information Commissioner's Office (ICO). You can find more information on the ICO website at ico.org.uk.
To exercise your rights or raise a concern, contact us at contact@20rev.com. We aim to respond within 30 days. We may ask for verification of identity before fulfilling requests.
To stop receiving marketing emails or have your data deleted, simply email us at contact@20rev.com and we will remove you from our list and delete your data.
12. Security
We use reasonable technical and organisational measures designed to protect personal data against unauthorised access, loss, misuse, alteration, or disclosure. However, no method of transmission over the internet or method of electronic storage is completely secure, so we cannot guarantee absolute security.
13. Third-party links
This website may include links to third-party websites or services. We are not responsible for the privacy practices of those third parties, and we encourage you to read their privacy notices before providing personal data to them.
14. Children's data
Our website and services are not intended for individuals under 18 years of age, and we do not knowingly collect personal data from children.
15. Changes to this policy
We may update this Privacy Policy from time to time. The latest version will always be available on this website. We encourage you to review it periodically.
16. Contact
For questions about this Privacy Policy, to exercise your rights, or to raise a data protection concern, contact us at contact@20rev.com.