Privacy policy.
Written to be read. Bryley Ltd trading as Rogue Logic, company number 13175466, registered in England and Wales.
Last updated 14 August 2026
This policy explains how Rogue Logic collects and uses personal data, about people who visit this site, enquire or request a free visibility check, our clients and their staff, business contacts we approach, and our suppliers, why we hold it, and what you can ask us to do with it.
Who we are
Bryley Ltd, trading as Rogue Logic, company number 13175466, registered in England and Wales and based in Bristol. We are an SEO, AI-search and digital marketing agency. For the personal data described here, Bryley Ltd is the data controller, except where we act as a processor on behalf of a client (see “When we act as a processor” below). We are registered with the Information Commissioner’s Office. Contact hello@roguelogic.co.uk with any question about this policy or how we handle your data.
What this policy covers
How we handle personal data about people we deal with as a business: visitors and enquirers on this site, our clients and their staff contacts, business prospects we contact, and our suppliers and partners. Where we process data on behalf of a client, for example running their reporting or marketing-intelligence dashboard, that client is the controller and the processor section below applies.
The data we collect, and why
Website visitors and enquirers
If you contact us, complete a form or request a free teardown, we collect what you give us, typically your name, work email, website and a short description of your business, to respond and to prepare the teardown or proposal you asked for. If you accept analytics cookies, we also collect pages viewed, referring source and general location, in aggregate. Lawful basis: our legitimate interest in responding to you, and steps taken at your request before any contract; analytics only where you consent.
Free visibility check (the teardown)
If you request a free visibility check, on this site or at check.roguelogic.co.uk, we collect the details you enter: your website address, your work email, your first name and, optionally, your firm name. We use these to run the check, send you the report, and follow up about a call if you asked us to. To produce the report, our system runs an automated analysis of the website you submit, looking at publicly available signals, for example how it appears in Google and in AI answer tools, its technical setup and page performance, and how it compares with similar businesses. This looks at public information about a business and its website; it is not an analysis of your customers or their personal data. The report is generated automatically but makes no decision with legal or similarly significant effects, it is a summary a person then talks you through. If you optionally grant read-only access to your own Google Analytics or Search Console so we can include your real numbers, we use it only to prepare your report, change nothing, and you can remove access at any time. Lawful basis: steps taken at your request before any contract, our legitimate interest in introducing our services, and your consent for any follow-up.
Clients and their staff contacts
When you become a client, or are a contact at one, we hold your name, work email, phone, company details and the history of our dealings, deals, notes and correspondence, to deliver the service, manage the relationship, send reports and handle billing. Lawful basis: performance of our contract, and our legitimate interest in managing the relationship. Billing records are also kept to meet our legal accounting obligations.
Business prospects we contact
We carry out business-to-business outreach. If we have contacted you as a decision-maker at a UK business, we obtained your professional contact details, name, job role, work email and company information, from publicly available professional sources and reputable business-data providers, including Apollo, LinkedIn and DataForSEO. We process them to introduce our services, under our legitimate interest in B2B marketing and consistent with the Privacy and Electronic Communications Regulations for corporate subscribers. Every message tells you how to stop hearing from us, and you can object at any time via the unsubscribe link or by contacting us. If you object, we add you to a permanent suppression list so we do not contact you again. We keep prospecting research data for up to 180 days unless you become a client or ask us to stop.
Suppliers and partners
We hold contact and account details for our suppliers and partner agencies to manage those relationships and meet our contractual and accounting obligations.
Analytics, meetings and AI
Client website analytics
To deliver SEO and reporting we access aggregate, site-level performance data from a client’s own analytics and search tools, such as Google Analytics and Google Search Console. We do not collect the client’s own website visitors’ personal data.
Meeting recordings
We may record, transcribe and summarise calls and meetings for note-taking and follow-up, using a third-party meeting-assistant tool. Whoever is recording will make this clear at the start, and you can ask us not to. Lawful basis: legitimate interests.
AI-assisted work
We use trusted AI tools, including Anthropic’s Claude, to help draft and analyse documents such as reports and summaries. Personal data is only ever used as context for the same purpose it was collected for; our AI provider does not use our inputs to train its models; and we do not use AI to make solely automated decisions that have legal or similarly significant effects on you.
Who we share your data with
We do not sell your personal data, and we will not add you to a marketing sequence because you filled in a form. We do share it with service providers who process it on our behalf under contract, including our hosting and database providers (Vercel and Supabase), analytics, usability and site-analysis providers (Google, including PageSpeed and Places, and Microsoft Clarity), our anti-abuse provider (Cloudflare, for the bot check on our forms), our CRM and business-data providers (including HubSpot, Apollo and DataForSEO), our email and accounting providers, and our AI provider (Anthropic). Analytics and advertising providers receive nothing until you consent to the relevant cookie category; where you do consent, we may share limited measurement data with Google as described under “Advertising and measurement” below. A current list of sub-processors is available on request, and we will not add one that receives your data without updating this policy. We may also disclose data where required by law.
Where your data is processed
Our primary data storage is in the European Union. Some providers are based outside the UK and EU, including in the United States. Where personal data is transferred internationally, we rely on a UK-approved safeguard, such as the UK extension to the EU-US Data Privacy Framework, or the International Data Transfer Agreement and the UK Addendum to the Standard Contractual Clauses.
How long we keep it
- Business prospecting research: up to 180 days, unless you become a client.
- Opt-out / suppression list: kept permanently, it is the record of your opt-out.
- Enquiries that do not become clients: up to 24 months, then deleted.
- Free visibility check reports: up to 24 months, then deleted, unless you become a client.
- Visibility check request logs: 90 days.
- Client and CRM records: for the relationship, then up to 6 years (the limitation period).
- Accounting and billing records: 6 years (Companies Act / HMRC).
- Website analytics: up to 14 months.
- Backups: a 90-day rolling window.
When a retention period ends, we delete or anonymise the data.
Your rights
Under UK data protection law you can ask us to:
- give you a copy of the personal data we hold about you;
- correct data that is inaccurate or incomplete;
- delete your data, where the law allows;
- restrict or object to our processing, including objecting to direct marketing at any time;
- transfer your data (portability), where applicable;
- withdraw consent where we rely on it.
Email hello@roguelogic.co.uk and we will action it within 30 days. You can also complain to the Information Commissioner’s Office at ico.org.uk, though we would welcome the chance to resolve your concern first.
When we act as a processor
For some services we process personal data on behalf of a client, for example when we run their reporting or marketing-intelligence dashboard. There, the client is the data controller and we act as a processor under a data processing agreement, working only on their instructions. That data is held in an access-controlled, EU-hosted environment, and for regulated clients in a database dedicated to them. We do not ingest their customers’ personal data, financial data or special-category data.
Advertising and measurement
Some people reach our free visibility check by clicking one of our ads. When you arrive from an ad, and only if you have accepted advertising cookies, we store the ad click identifier (such as a Google click ID, or GCLID) and campaign tags in first-party cookies on the roguelogic.co.uk domain, so we can see which campaigns work and whether a check request resulted. If you later become a qualified lead or a client, we may send a record of that conversion back to Google Ads so the advertising is measured accurately; where we do, your email is turned into an irreversible hashed value before it is sent and matched to the original click. This runs under your consent for advertising cookies, which you can withdraw at any time through the cookie banner, and you can object by contacting us. Our forms also use Cloudflare Turnstile to tell humans from bots, which briefly processes your IP address and browser signals for that check.
Cookies and security
This site uses cookies as described in our cookie policy, and nothing non-essential loads until you agree. We take appropriate technical and organisational measures to protect personal data, including encryption in transit and at rest, access controls, anti-abuse checks on our public forms, and least-privilege connections to any systems we are given access to.
Changes to this policy
We may update this policy from time to time. The date above shows when it was last revised, and we will highlight material changes where appropriate.
A question about any of this?
hello@roguelogic.co.uk · 0330 165 8213