Legal

Privacy Policy

Covers this website, the client portal, and the Get Solar Clients Portal mobile app.

Last updated: 9 August 2026

This is the full privacy policy for Get Solar Clients Limited. It covers three places your data can reach us: this website, the client portal you sign into, and the Get Solar Clients Portal mobile app.

It is written to be read, not to be survived. If anything here is unclear, email contact@getsolarclients.com and we will explain it in plain terms.

Cookies and similar tracking on this website are covered in more detail in our Cookie Policy. Our Terms and Conditions sit alongside this policy.

1. Who we are

Get Solar Clients Limited is the data controller for the personal data described here. We are registered in England and Wales and based in London.

Get Solar Clients Limited
Email: contact@getsolarclients.com
Flat 4 Warnford House
Tunworth Crescent
London SW15 4PE
United Kingdom

2. The short version

  • We collect what we need to run your account and deliver appointments. Nothing is sold.
  • We do not share your data with anyone for their own advertising.
  • The app collects no location data and carries no advertising identifier and no ad software.
  • Card numbers go straight to Stripe. We never see them and never store them.
  • Face and fingerprint data used by the app's App Lock never leaves your device.
  • Everything we send or receive travels over an encrypted connection.
  • You can ask us to delete your account and data at any time: see getsolarclients.com/delete-account.

3. What this policy covers

  • This website, getsolarclients.com, including our enquiry forms, newsletter signup and call booking.
  • The client portal, where clients sign in at portal.getsolarclients.com/login and are then taken to the dashboard at dashboard.getsolarclients.com, where they see leads, appointments, reporting and billing.
  • The Get Solar Clients Portal mobile app for Android and iOS, which is the same client portal in an app.

4. Data we collect on the website

  • What you send us. Your name, email address, phone number, company name and anything you type into an enquiry form, the newsletter signup, or a booking request.
  • Booking details. When you book a call, your name, email address and any notes go to Cal.com so the call can be scheduled.
  • Cookies and advertising measurement. Essential cookies keep the site working. Marketing and analytics cookies, including the Meta Pixel, only run once you have accepted them in the cookie banner. Where you have accepted, matching website events are also sent from our server to Meta so we can measure our own advertising. Full detail is in the Cookie Policy, and you can change your choice at any time through Cookie Preferences in the footer.
  • Product analytics. With your permission we use PostHog to see which pages and features get used and where people get stuck. It is the same tool described in section 5, processed in the European Union and kept for one year. We do not use session replay.
  • Campaign tags. If you arrive from an advert or a link with campaign tags in the URL, we record those tags so we know which campaign brought you.
  • Server logs. Our hosting provider processes standard request data, including IP address, to serve the site and keep it secure.

5. Data we collect in the client portal and the app

The portal and the app hold the same account, so they collect the same things.

  • Identity and account data. Your name, email address, company, and an optional profile photo. Stored in our database with Supabase.
  • Sign-in and security data. Your password, two-factor codes if you use them, and session tokens. Passwords are never stored in readable form.
  • Files you upload. Documents and images you choose to send us, for example an energy bill or a logo. The app asks for camera or photo access only at the moment you use it, and you can refuse.
  • Push notification data. If you allow notifications, a push token plus your device name and platform are created by the Expo push service and stored against your account so we can send you hot lead alerts. Turn notifications off and this stops.
  • Crash reports. If the app crashes we record the error message, the technical stack trace, whether it was fatal, the screen you were on, timestamps, and a device block covering app version, build number, commit reference, update identifier, device model, and operating system name and version. These go to our own backend, not to a third-party crash service.
  • Product analytics. We use PostHog, processed in the European Union and kept for one year, to see which screens and features get used so we can improve them. It receives your account identifier, the screens you open, and your email address when you sign in, so that a support problem can be traced to the right account. We do not use session replay, and we do not intentionally send lead details, messages, form content, phone numbers or authentication data. You can turn analytics off at any time: through Cookie Preferences on the website, Usage analytics in portal Settings, or Settings in the mobile app. Your analytics identifiers are removed when your account is deleted.
  • App update checks. The app asks our update service, run by Expo, whether a newer release exists. That request carries the app's runtime version and release channel.

6. What never leaves your device

  • Face and fingerprint data. The app's optional App Lock asks your phone to confirm it is you. The check happens inside the phone's own secure hardware. We never receive, see or store any biometric data. All we store is a flag saying App Lock is switched on.
  • Your signed-in session. Held in the device's encrypted storage, backed by the Android Keystore or the iOS Keychain.

7. Payments

Billing runs on Stripe. When you save a card, the card details are entered into Stripe's own payment sheet and go straight to Stripe. Get Solar Clients never receives, handles or stores your card number.

We hold the record of what you were invoiced and whether it was paid. Nothing in the app is unlocked by paying: we invoice for qualified appointments and for the retainer, which are services delivered by people, off the phone.

8. What we do not do

  • We do not sell your personal data. Ever.
  • We do not share your data with third parties for their own advertising.
  • The mobile app collects no location data. It has no location permission.
  • The mobile app has no advertising identifier, no advertising software, and shows no adverts.
  • The app does not record audio and does not read your contacts, messages or call history.

9. Who processes data for us

These companies process data on our instructions so we can run the service. They are not free to use it for their own purposes.

  • Supabase. Database, sign-in and file storage for the portal and app.
  • PostHog (EU hosting). Product analytics for the portal and app.
  • Expo. Push notification delivery and app update delivery.
  • Stripe. Card payments and invoicing.
  • Vercel. Hosting for this website and the portal.
  • Resend. Sending our emails, including account emails and the newsletter.
  • Cal.com. Scheduling discovery calls booked from this website.
  • Meta. Advertising measurement on this website only, and only where you have accepted marketing cookies.

We also disclose data where the law requires it, or to professional advisers under a duty of confidence.

10. Lead data we hold for our clients

If you are a homeowner who filled in one of our clients' enquiry forms, your details sit in that client's account in our portal. In that case the solar company is responsible for how your details are used, and we act on their instructions. Email us and we will pass your request to them, or you can contact them directly.

11. Why we are allowed to use your data

  • To perform our contract with you: running your account, delivering appointments, invoicing.
  • Our legitimate interests: keeping the service secure, diagnosing crashes, and marketing our services to solar businesses.
  • Your consent: analytics and marketing cookies on this website, product analytics on the website, in the portal, and in the mobile app, push notifications in the app, and marketing emails where consent is required.
  • Legal obligation: accounting and tax records.

Where we rely on consent you can withdraw it at any time, and where we rely on legitimate interests you can object.

12. How long we keep it

  • Your account data is kept while your account is active, and deleted when you ask us to delete it.
  • Identity, Contact, Financial and Transaction Data is kept for 6 years for legal and tax purposes. This survives a deletion request, because we are required to keep it.
  • Product analytics are kept for one year and then deleted by PostHog. Crash reports are kept while they are useful for fixing the problem. Your analytics identifiers are removed when your account is deleted.
  • Push tokens are removed when you turn notifications off, sign out, or delete your account.

13. How we protect it

Every connection between your browser or app and us is encrypted in transit over HTTPS. That is true of every destination we send data to, without exception.

Sensitive credentials are encrypted at rest. Access is limited to the people who need it to do their job, protected by two-factor authentication. We will notify you and the regulator of any breach that the law requires us to report.

14. International transfers

Some of the companies above process data outside the UK. Where that happens we rely on an adequacy decision or on appropriate safeguards such as Standard Contractual Clauses. Our product analytics are hosted in the EU.

15. Your rights

Under UK GDPR you have the right to:

  • Access the personal data we hold about you
  • Have inaccurate data corrected
  • Have your data erased
  • Restrict how we process it
  • Object to processing, including direct marketing
  • Receive your data in a portable format
  • Withdraw consent you have given

Email contact@getsolarclients.com to exercise any of these. We respond within 30 days, and we will tell you if a complex request needs longer.

16. Deleting your account

Any client can ask us to delete their account and the data we hold for them, without installing or opening the app. The page that explains exactly what goes and what we have to keep is here: getsolarclients.com/delete-account.

The mobile app offers the same request under Settings, and it sends the same email to the same address.

17. Children

Our services are sold to businesses and are not aimed at anyone under 18. We do not knowingly collect data from children.

18. Changes to this policy

We update this policy when what we do changes. The date at the top of this page tells you when it last moved. Material changes affecting clients will be flagged in the portal or by email.

19. Complaints

If you are unhappy with how we have handled your data, tell us first at contact@getsolarclients.com and we will try to put it right.

You can also complain to the Information Commissioner's Office, the UK regulator, at www.ico.org.uk.