Privacy Notice
Last updated: 19 June 2026
1. Who we are
Steel Deals ("we", "us") is the data controller for personal data processed through our website and app.
2. Data we collect
- Account data: email address, password hash, sign-in metadata.
- Profile & preferences: notification settings, saved searches, alert preferences.
- Usage data: in-app activity, deal queries, AI estimate requests, device and browser metadata, IP address.
- Support data: messages you send us.
- Payment data: processed by Paddle as Merchant of Record; we receive limited metadata such as plan, status, country and last four digits of payment card. We do not store full card details.
3. How we use it
- To create and operate your account (contract).
- To provide the AI pricing and alerts service (contract).
- To send transactional and service emails (contract / legitimate interests).
- To detect fraud, abuse and secure the Service (legitimate interests, legal obligation).
- To improve the product and our AI models in aggregate (legitimate interests).
- To send marketing emails — only with your consent, and you can opt out at any time.
4. Who we share it with
- Paddle — Merchant of Record handling payments, subscriptions, tax and invoicing.
- Hosting & infrastructure providers — to run the Service.
- AI model providers — to generate price estimates and deal scores.
- Email & messaging providers — for notifications you opt into.
- Professional advisers and authorities where required by law.
5. International transfers
Some recipients are located outside the UK / EEA. Where this happens we rely on adequacy decisions or Standard Contractual Clauses with appropriate safeguards.
6. Retention
We keep account data while your account is active and for a reasonable period afterwards to comply with legal, tax and accounting requirements. You can request deletion at any time (see Your Rights).
7. Your rights
Under UK GDPR you have the right to access, rectify, erase, restrict or object to processing, withdraw consent, port your data, and complain to a supervisory authority (in the UK, the ICO at ico.org.uk). We aim to respond within one month.
8. Security
We apply appropriate technical and organisational measures, including encryption in transit, access controls and audit logging. No method is 100% secure but we work hard to protect your data.
9. Cookies
We use essential cookies to keep you signed in and the Service functioning. We do not use third-party advertising cookies. You can control cookies in your browser settings.
10. Contact
Privacy enquiries: privacy@steeldeals.app