Compliance
CONNETIC processes publicly available planning data under a documented UK GDPR legitimate interests framework. Every technical control, every process, and every contractual obligation is designed around one principle: the correct party holds the correct responsibility.
How it works
When a homeowner receives a CONNETIC brochure, the data controller for that communication is CONNETIC — not you. You never receive, store, or process homeowner personal data. Your GDPR exposure in connection with our outreach is zero. This is not a contractual workaround. It is the structural model.
Overview
Data we process
| Data | Source | What we never store |
|---|---|---|
| Property street address and postcode | PlanWire API (council portal — public register) | Buyer name — never stored |
| Planning work description | PlanWire API (council portal — public register) | Applicant name — never stored |
| Approved architectural drawings | Local authority portal (public — LGA 1972) | Personal identity from drawings |
Data minimisation is technical, not procedural. Names are excluded at the point of ingestion by the pipeline — they are never in our system.
Channels
| Channel | CONNETIC position |
|---|---|
| Physical post to 'The Homeowner' | Used — most compliant channel |
| Email to homeowner | Not used |
| SMS to homeowner | Not used |
| Cold calling homeowner | Not used |
Every brochure is addressed to 'The Homeowner' — not by personal name. Every brochure includes our contact details and a clear opt-out instruction referencing the Mailing Preference Service.
Suppression
Every address list screened against the Mailing Preference Service before upload to our print provider. Opted-out addresses removed automatically. Over 5.4 million UK consumers are registered — we screen them all on every send.
Any homeowner who contacts us directly to opt out is added to our suppression list within 5 working days. That address is permanently excluded from all future mailings across all clients and all councils.
Our fulfilment partner maintains a platform-level blocklist. Opted-out addresses are suppressed at the print provider level, independently of our own list.
This opt-out covers unaddressed mail only — leaflets with no postal address. It does not apply to CONNETIC's addressed brochures. Royal Mail is legally obliged to deliver addressed mail regardless of this opt-out.
Retention
Homeowner data is automatically purged from all CONNETIC systems after 90 days. This is a technical control in the pipeline code — not a manual process.
| Data type | Retention | Basis |
|---|---|---|
| Homeowner addresses | 90 days | Automated deletion |
| Planning descriptions | 90 days | Automated deletion |
| Blueprint images | 90 days | Automated deletion |
| Client business records | Contract + 6 years | HMRC / Companies Act |
| Suppression list | Indefinitely | Legal obligation |
Infrastructure
One unified directory: how we host and secure the pipeline, and every third-party processor that touches data on our behalf.
Your obligations
Because CONNETIC is the Data Controller for all homeowner data, your obligations in connection with our outreach are minimal:
Security
In the event of a suspected data breach:
Internal assessment within 24 hours
ICO notified within 72 hours where required under UK GDPR Article 33
Affected individuals notified where required under Article 34
Full incident log maintained
Root cause documented and remediation applied
Documents
Get in touch
We're happy to share our full LIA, ROPA, or any DPA before you commit. Most clients find the compliance model is one of the reasons they chose us — not a concern they needed to resolve.
Nexxtrade Ltd t/a CONNETIC · Leeds, UK · ICO Registered · connetic.uk