1. Identity, roles and contact
UONE SMC, established in the United Arab Emirates, operates the UONE service at www.uone.uk. Privacy, rights and controller enquiries may be sent to support@uone.uk. Approved customer organisations generally decide why customer records are submitted and act as controllers for those records. UONE processes those submitted records on their documented instructions and may act as controller for account administration, security, billing, support, and legal-compliance information.
2. Information processed
UONE may process organisation and authorised-user details; uploaded campaign fields; public-evidence results and source links; campaign, export and feedback records; order, wallet and reconciliation records; support communications; and security, audit, device, network and session events.
3. Why information is processed
Processing supports authentication, authorised public-evidence searches, campaign recovery, result delivery, billing, usage limits, fraud and abuse prevention, auditability, support, service improvement, legal obligations, and enforcement of the Terms and Acceptable Use requirements.
4. Cookies and browser storage
UONE uses strictly necessary session and security cookies, together with temporary browser-session information, to protect signed-in areas, prepare authorised campaign records, reconnect results, and confirm authorised actions. Browser-held working information is intended for the active session and should be removed when it is no longer needed. Downloaded files remain under the customer organisation’s control. These technologies are not used for advertising or cross-site tracking.
5. Service providers and international and cross-border processing
UONE may use carefully selected service providers for hosting, email delivery, public-information review, and related service support. Only information reasonably required to provide the relevant service should be shared. Processing may occur in more than one country and must be governed by contractual, security, and transfer safeguards appropriate to the applicable law.
6. Retention
Retention depends on the category and purpose of the record. Temporary execution information is generally removed within 24 hours after it is no longer needed for active processing or recovery. Operational campaign metadata is generally retained for up to 30 days, while security and audit records may be retained for up to 365 days unless law or an applicable agreement requires otherwise. Financial and contractual records may be retained for the period required by applicable accounting, tax, contractual, or legal obligations. Session information expires or is removed when access ends or is revoked. Customer organisations remain responsible for controlling, retaining, and deleting downloaded exports.
7. Data lifecycle and secure deletion
Information is collected or received for an authorised purpose, used only as needed to provide and protect the service, retained according to its category and applicable obligations, and removed or anonymised when no longer required. Deletion processes are intended to cover active records, associated temporary information, and recoverable copies as they reach the end of their applicable retention cycle. Where a verified deletion request applies, UONE follows a controlled process that confirms authority, records the action, and preserves only the minimum information required to demonstrate compliance.
8. Accuracy, minimisation and authorised use
Customer organisations must submit only relevant, accurate and lawfully obtained data for an approved business purpose. UONE results are evidence-assisted findings, not guaranteed facts, and should be reviewed by an authorised person before consequential decisions are made.
9. Security
UONE uses layered access controls, secure sessions, activity records, restricted administration, and campaign-recovery safeguards. No online service can guarantee absolute security.
10. Individual rights and organisation requests
Depending on applicable law, individuals may have rights to access, correct, delete, restrict, object to, or obtain information about processing. Requests concerning a submitted customer record should normally be directed first to the organisation that submitted it. UONE will support verified controller requests and will respond directly where UONE is the responsible controller.
11. Requests, deletion and complaints
Send privacy or deletion enquiries to support@uone.uk. Each request is entered into a controlled case process, assigned to the responsible privacy owner, identity and authority are verified, and the applicable response deadline is tracked. State the organisation involved and the nature of the request, but do not send passwords, verification codes, or unnecessary customer data. Unresolved concerns may be raised with the competent data-protection authority for the relevant jurisdiction.
12. Policy changes
Material changes will be reflected on this page and, where appropriate, communicated through the service or contractual channel. Last reviewed: 1 August 2026. This policy should be read together with the applicable customer agreement.
Privacy transparency boundary
This policy explains what information is processed, why it is needed, how long it is retained, and how rights requests are handled. It does not disclose confidential security architecture, credentials, provider-routing details, or internal operational settings.
Continue exploring
Related public guidance
Review the related notices and terms that govern data handling and authorised use.