Privacy Policy
Last updated: June 2026
1. Introduction
CarFixNearMe (“we”, “us”, “our”) is committed to protecting your privacy and handling your personal data transparently. This Privacy Policy explains how we collect, use, store, and share personal data when you use our website at carfixnearme.com (the “Service”).
We are the data controller for the purposes of the UK General Data Protection Regulation (UK GDPR) and the Data Protection Act 2018.
2. Data We Collect
We collect the following categories of personal data:
- Contact enquiry data: Name, email address, phone number (optional), and message content when you submit a contact form to reach a garage.
- Garage registration data: Business name, contact name, email, phone number, and postcode when a garage owner registers interest.
- Location data:Postcode or town name you search for, or approximate coordinates if you use the “near me” geolocation feature. We do not store precise geolocation data persistently.
- Cookie and usage data: Information about how you interact with our site, collected via cookies and analytics. See our Cookie Policy for details.
3. Lawful Basis for Processing
We process your personal data under the following lawful bases:
- Legitimate interest: To provide the directory service, process search queries, and connect drivers with garages. We have assessed that our legitimate interests do not override your rights and freedoms.
- Consent: For sending your contact details and message to a garage (you explicitly consent via the contact form), for setting non-essential cookies, and for marketing communications where applicable.
- Contract: To fulfil our obligations to registered garage owners who sign up to list their business.
4. How We Use Your Data
- To process and respond to your garage search queries
- To share your contact details and message with the garage you enquire about (with your explicit consent)
- To send notification emails to garages about new leads
- To process and manage garage registration applications
- To improve and maintain our Service
- To analyse site usage patterns via privacy-focused analytics
5. Third-Party Services
We use the following third-party services to operate the platform:
- Supabase: Cloud database hosting for storing garage listings, leads, and user accounts. Data is stored in Supabase-managed infrastructure with encryption at rest.
- Resend: Transactional email delivery for sending lead notification emails to garages.
- postcodes.io: UK postcode geocoding service. We send postcode or town queries to convert them to geographic coordinates. No personal data is sent to this service.
- Google Analytics: Website analytics service. Collects anonymised usage data (page views, session duration, device type, geographic region) via cookies (_ga, _ga_*). No personally identifiable information is collected. Data is processed by Google in accordance with their privacy policy.
- Cloudflare:Website hosting, content delivery, and DDoS protection. Your requests pass through Cloudflare's global network.
6. Data Retention
We retain your personal data for the following periods:
- Contact enquiries (leads): 180 days from submission. After this period, lead records are automatically deleted.
- Garage registration data: Retained for the duration of the business relationship. Deleted upon request or account closure.
- Cookie consent records: Retained for 12 months from the date consent was granted.
- Analytics data: Plausible retains anonymised, aggregated data indefinitely. No personal data is included.
7. Your Rights
Under the UK GDPR, you have the following rights regarding your personal data:
- Right of access: You can request a copy of the personal data we hold about you.
- Right to rectification: You can ask us to correct inaccurate or incomplete data.
- Right to erasure: You can request deletion of your personal data where there is no compelling reason for continued processing.
- Right to data portability: You can request your data in a structured, machine-readable format.
- Right to restrict processing: You can ask us to limit how we use your data.
- Right to object: You can object to processing based on legitimate interest.
- Right to withdraw consent: Where processing is based on consent, you can withdraw it at any time.
To exercise any of these rights, please contact us using the details below.
8. Data Security
We implement appropriate technical and organisational measures to protect your personal data, including encryption in transit (TLS/HTTPS), encryption at rest for database storage, access controls, and regular security reviews. However, no method of transmission over the internet is 100% secure, and we cannot guarantee absolute security.
9. Children's Privacy
Our Service is not directed at children under the age of 16. We do not knowingly collect personal data from children. If you believe a child has provided us with personal data, please contact us and we will delete it promptly.
10. Changes to This Policy
We may update this Privacy Policy from time to time. We will notify you of significant changes by posting a notice on our website. The “Last updated” date at the top indicates the most recent revision.
11. Contact Us
If you have questions about this Privacy Policy or wish to exercise your data subject rights, please contact us at:
CarFixNearMe
Email: privacy@carfixnearme.com
You also have the right to lodge a complaint with the Information Commissioner's Office (ICO) at ico.org.uk if you believe your data protection rights have been violated.