Legal
Privacy Policy
How we collect, use and protect your personal information. This policy explains your rights and our responsibilities under UK data protection law.
Who we are
EGB Financial Limited, trading as The Review Business, is the data controller responsible for your personal data. We are authorised and regulated by the Financial Conduct Authority (FCA firm reference number 506519).
Registered address: College Business Centre, The College, Uttoxeter New Road, Derby, DE22 3WZ.
Email: enquiries@thereviewbusiness.co.uk
Phone: 01332 418 005
What data we collect
We may collect the following personal data:
- Identity data: name, date of birth, National Insurance number
- Contact data: email address, phone number, postal address
- Financial data: income, assets, pensions, investments, debts, tax position
- Technical data: IP address, browser type, pages visited (via cookies)
- Communication data: records of correspondence, call notes, meeting notes
How we collect your data
We collect data when you:
- Complete a form on our website
- Contact us by phone, email or in person
- Engage us for financial advice
- Browse our website (via cookies and analytics)
Why we use your data (lawful basis)
We process your data under the following lawful bases:
- Contract: to provide financial advice and services you have requested
- Legal obligation: to meet our FCA regulatory duties, anti-money laundering requirements and tax reporting obligations
- Legitimate interest: to improve our services, respond to enquiries, and send relevant communications
- Consent: where you have opted in to marketing communications (you may withdraw consent at any time)
Who we share your data with
We may share your data with:
- Product providers (pension companies, insurers, platform providers) to implement advice
- Our compliance and regulatory bodies (the FCA, the Financial Ombudsman Service)
- Professional indemnity insurers
- HMRC where legally required
- Technology providers who process data on our behalf (e.g. CRM, email, analytics)
We do not sell your personal data to third parties.
How long we keep your data
We retain your data for as long as necessary to fulfil the purposes for which it was collected. For financial advice records, we are required by FCA rules to retain data for a minimum of five years after the end of our relationship, and indefinitely for pension transfer advice.
Website analytics data is retained for 26 months.
Your rights
Under UK GDPR, you have the right to:
- Access the personal data we hold about you
- Correct inaccurate or incomplete data
- Delete your data (where we are not legally required to retain it)
- Restrict how we process your data
- Object to processing based on legitimate interest
- Data portability — receive your data in a structured, commonly used format
- Withdraw consent at any time where processing is based on consent
To exercise any of these rights, contact us at enquiries@thereviewbusiness.co.uk.
Cookies
Our website uses cookies. For full details, see our Cookie Policy.
Complaints
If you believe we have not handled your data properly, you can contact the Information Commissioner's Office (ICO) at ico.org.uk or call 0303 123 1113.
Changes to this policy
We may update this policy from time to time. The latest version will always be available on this page. Last updated: March 2026.