Privacy Policy
Last updated: September 1, 2026
This policy explains what personal data we collect and how we use it, covering both our marketing website (www.outcomeproof.com) and the Outcome Proof application (app.outcomeproof.com).
1. Who we are
We are Outcome Proof Ltd, a company registered in Scotland (company number SC873276).
Registered address: 3F1 Third floor, 3 Hill Street, New Town, Edinburgh, EH2 3JP
Email: support@outcomeproof.com
For the purposes of UK data protection law, we are the data controller for data collected through our website and for account/usage data in the application. When you use the application to store information about your organisation’s work (such as evidence, outcomes, and reports), your organisation is the data controller and we are the data processor acting on your behalf. A Data Processing Agreement is available on request.
2. What we collect
When you visit our website
| Data | Source | Details |
| Name, email, organisation name | Free Trial signup form | Details collected by email only |
| Name, email, organisation name, message | Contact Us form | Details collected by email only |
| Server logs | Automatic | IP address, browser type, pages visited, timestamps |
| Cookies | WordPress | A session cookie necessary for the website to function |
| Analytics data | Google Analytics (GA4) | Pages visited, time on page, approximate location (country / city level), device and browser type, referral source. Collected only if you consent via our cookie banner |
| Approximate location (country) | ipapi.co lookup | Used to suggest the right regional version of the website. If your browser settings do not already tell us which version to show, a lookup service estimates your country from your IP address. We do not store the result. |
| Video viewing | Vimeo embedded player | Only if you choose to play the video on our homepage: your IP address and device information are sent to Vimeo to deliver the video. We use Vimeo’s Do Not Track setting, so Vimeo does not set cookies or track your viewing. |
When you create an account
| Data | Details |
| Name | Your full name |
| Email address | Verified during signup |
| Password | Stored securely using one-way hashing (we cannot see your password) |
| Organisation name | Your charity or nonprofit’s name |
| Country | Used to determine your currency and locale |
| Timezone | Detected from your browser, changeable in settings |
| Terms acceptance | A timestamp recording when you agreed to our terms |
When you use the application
| Data | Details |
| Content you create | Text, files, and data you add to the application |
| Organisation data | Details about your organisation, its funding sources, and team members you invite |
| Profile information | Avatar image, locale and timezone preferences |
| Usage logs | An audit trail of actions taken in your account (who changed what, and when) |
| Session data | IP address, browser type, login times – used for session security |
| AI drafting requests (optional feature) | Only if your organisation has switched the feature on: the text of the evidence items you select for a report section, your progress notes and the outcome’s details, plus your organisation’s name and the name of the funder the report is for – sent at the moment you ask for a draft |
When you pay for a subscription
| Data | Details |
| Payment details | Processed securely by Stripe. We store your billing address but never see or store your card number; your card details are held securely by Stripe. |
| Billing history | Invoices and subscription status, managed by Stripe |
3. Why we collect it
| Purpose | Data used |
| Respond to enquiries | Contact form submissions |
| Manage early access waitlist | Signup form submissions |
| Provide the service | Account details, content you create, organisation data |
| Process payments | Payment details (via Stripe) |
| Send important emails | Email address – verification, password resets, security alerts, reporting deadline reminders |
| Keep accounts secure | Session data, login history, two-factor authentication details |
| Maintain an audit trail | Usage logs – so your team can see who changed what |
| Draft report text with AI (optional) | The evidence and progress text you select, processed solely to produce your draft. We keep a record of each request (who, when, and how much text was processed), but do not retain the text or generated draft as part of the AI request record |
| Website security and performance | Server logs |
| Improve the service | Aggregated, non-personal usage patterns |
We do not use your data for advertising, profiling, or automated decision-making.
4. Lawful basis
Under UK GDPR, we rely on the following lawful bases:
| Data | Lawful basis |
| Account and content data | Contract – necessary to provide the service you’ve signed up for |
| Payment processing | Contract – necessary to manage your subscription |
| Website form submissions | Consent – you actively choose to submit your details |
| Security and audit logs | Legitimate interest – protecting accounts and maintaining accountability |
| AI drafting (optional feature) | Contract – providing an optional part of the service that your organisation has chosen to switch on |
| Server logs and session cookies | Legitimate interest – website and application security |
| Analytics cookies (GA4) | Consent – only collected if you accept analytics cookies via our cookie banner |
| Country lookup (ipapi.co) | Legitimate interest – showing you the right regional version of the website |
| Video playback (Vimeo) | Legitimate interest – showing you a short introduction video when you choose to play it |
| Tax records | Legal obligation – UK tax law requires us to retain financial records |
5. Cookies
We use only cookies that are necessary for our website and application to function. We do not use advertising or tracking cookies.
Marketing website (www.outcomeproof.com):
| Cookie | Purpose | Duration | Requires consent? |
| WordPress session cookie | Keeps the website functioning | Browser session | No (strictly necessary) |
| ‘_ga’ | Google Analytics – distinguishes visitors | 2 years | Yes |
| ‘_ga_*’ | Google Analytics – maintains session state | 2 years | Yes |
Application (app.outcomeproof.com):
| Cookie | Purpose | Duration |
| Session cookie | Authentication and security | Expires after a period of inactivity |
| CSRF token | Protects against cross-site request forgery | Session duration |
| Remember me (optional) | Keeps you logged in if you choose this option | Persistent |
| Signup attribution (optional) | Ensures referral discounts are applied correctly | Temporary |
Because we only use strictly necessary cookies, we do not require a cookie consent banner under UK PECR.
6. Who we share data with
We do not sell your data to anyone. We share data only with the following providers, who process it on our behalf:
Marketing website (www.outcomeproof.com):
| Third party | What they process | Where they are based |
| Mailgun (Sinch) | Contact and signup form submissions, delivered to us by email | European Union |
| Google LLC | Website analytics (GA4) – only if you consent via cookie banner | United States (EU-US Data Privacy Framework certified) |
| ipapi.co (Kloudend, Inc.) | A one-off lookup of your IP address to estimate your country, so we can suggest the right regional version of the website. We do not store the result. | United States (Standard Contractual Clauses) |
| Vimeo (Vimeo.com, Inc.) | Your IP address and device information, sent to Vimeo when you choose to play the video on our homepage so it can deliver the video. We use Vimeo’s Do Not Track setting, so it does not set cookies or track your viewing. | United States (EU-US Data Privacy Framework certified) |
Application (app.outcomeproof.com):
| Third party | What they process | Where they are based |
| Stripe | Payment details, billing, invoices | United States (EU-US Data Privacy Framework certified) |
| Amazon Web Services (AWS) | Application hosting and infrastructure | United Kingdom |
| Amazon Web Services (AWS) Bedrock | AI drafting (optional) processes selected evidence, progress notes, outcome details and related report information solely to produce the requested draft. The data is not stored by the AI service, not used to train AI models, and not shared with the model’s maker. Only text is sent: photos, files, and internal notes are never sent. | Europe (processed within the European Union) |
| Mailgun (Sinch) | Transactional emails (account, billing, and product notifications) | European Union |
Your content is never shared with third parties. It is stored on servers in the UK and is only accessible to members of your organisation.
7. International transfers
Our application and database are hosted in the United Kingdom. Your data stays in the UK for hosting and storage purposes.
If your organisation switches on the optional AI drafting feature, the text selected for a draft is processed within the UK or European Economic Area (EEA) (see section 6). The AI drafting feature does not involve transfers to the US-based services listed below.
The only US-based service the application relies on is Stripe, for payment processing. The other US-based services below are used on our marketing website only.
The following services are based in the United States:
| Service | Safeguards |
| Stripe | EU-US Data Privacy Framework certified; Standard Contractual Clauses |
| Google (GA4) | EU-US Data Privacy Framework certified; Standard Contractual Clauses |
| ipapi.co | Standard Contractual Clauses |
| Vimeo | EU-US Data Privacy Framework certified (including the UK Extension) |
8. How long we keep your data
Marketing website
| Data | Retention period |
| Waitlist signups | Until product launch plus 6 months, then deleted unless you become a customer |
| Contact form messages | 12 months from submission |
| Server logs | 90 days |
Application
| Data | Retention period |
| Your content (outcomes, evidence, reports) | Kept while your account is active. Deleted 60 days after your account is closed. |
| Audit logs | 2 years, then automatically deleted. Deleted immediately if your organisation’s data is purged. |
| AI drafting usage records | A record of each draft request (who, when, and the amount of text processed, but not the text submitted to the AI service or its generated response). Kept for 2 years, then automatically deleted. |
| Deleted items | Recoverable for a short period, then permanently removed |
| Session data | Expires after a period of inactivity |
| Billing records | Retained by Stripe for 7 years (UK tax law requirement) |
When you cancel your subscription:
- You keep full access until the end of your paid billing period
- Your account then becomes inactive – your data is preserved but you can only access a limited account page
- After 60 days of inactivity, all your data is permanently and irreversibly deleted
- You can request immediate deletion at any time, or resubscribe to restore access during the 60-day window
9. Security
We take the security of your data seriously. We implement appropriate technical and organisational measures to protect your data, including:
- Encryption in transit – all connections use TLS (HTTPS)
- Encryption at rest – database and file storage are encrypted
- Password security – passwords are securely hashed; we cannot see your password
- Two-factor authentication – available for all accounts
- Access controls – permissions control who can do what within your organisation
- Audit logging – all significant actions are logged for accountability
Further details about our security practices are available on request.
10. Your rights
Under UK GDPR, you have the right to:
- Access your personal data – you can export all your data from your account settings, or email us for a copy
- Rectification – edit your profile and content at any time, or ask us to correct something
- Erasure – delete your account and all associated data. You can also ask us to delete marketing data (waitlist signup, contact form messages) at any time
- Restrict processing – ask us to limit how we use your data
- Data portability – receive a copy of your data in a machine-readable format
- Object – object to processing based on legitimate interest
- Withdraw consent – for form submissions and optional cookies, you can withdraw consent at any time
To exercise any of these rights, email support@outcomeproof.com. We will respond within one month.
If you are not satisfied with our response, you can complain to the Information Commissioner’s Office (ICO) at ico.org.uk.
11. Children’s data
Our service is designed for organisations, not individuals. We do not knowingly collect personal data from children under 16. If you believe a child has provided us with personal data, please contact us and we will delete it.
12. Changes to this policy
If we make significant changes to this policy, we will update the “Last updated” date at the top of this page. For major changes, we will notify you by email (if you have an account) or by a prominent notice on our website.
13. Contact us
For any questions about this privacy policy or how we handle your data:
Email: support@outcomeproof.com
Governing law: This policy is governed by the laws of Scotland.
