Privacy

How we handle your data

Last updated: January 13th 2026

Who We Are

Rope Office Hours is a UK-based community organisation. We are the data controller for the personal data described in this policy.


What We Collect

Booking details: Your full name and email address, both of which are collected at point of sale.

Payment details: Payments are processed by Stripe, as such we do not store card or bank information on any of our own systems.

Direct communications: Messages you send us by email, kept only as long as needed to respond or follow up.


What We Don’t Collect

We do not use tracking cookies, nor do we implement third-party analytics tools.

We do not collect behavioural data, or engage in any form of device fingerprinting.

We do not sell or share your personal data for marketing, profiling, or unrelated third-party use.


Why We Process Your Data

We will process your personal data following lawful bases under the UK's GDPR:

Contract: To manage workshop bookings, and to provide the services you sign up for.

Legitimate interests: To communicate essential event information.


Storage and Security

Data is stored on Microsoft Azure infrastructure, using their standard security and access controls.

Access is limited exclusively to the people who need the information to do their role.

No online system is completely risk-free, but we take any and all reasonable steps to protect the data we hold.


Data Retention

We keep personal data only for as long as necessary to deliver our services and meet legal requirements.

Booking and payment records may be retained for accounting and regulatory purposes. You can request deletion of your data where the law allows.

Your Rights

Access: To request a copy of any data we hold about you.

Correction: Ask us to fix inaccurate or incomplete information.

Deletion: Request erasure of your data (where legally permitted).

In the event that you do not believe we're handling your data appropriately, you have the right to raise concerns with the UK Information Commissioner’s Office (ICO).

Other Information

Third-Party Services

We use Stripe for payments and Azure Communication Services for transactional emails. These providers act as data processors under their own privacy obligations.

International Processing

Some data may be processed outside the UK. Where this happens, appropriate safeguards are in place in line with UK GDPR.

Children

Our services are intended for adults. We do not knowingly collect personal information from children.

Contact

Questions about this policy or your data can be sent to:

By using our services, you acknowledge that you have read and understood this privacy policy.