Privacy policy
Last updated: 17 April 2026
This Privacy Policy describes how AMLX (“we”, “us”) handles personal data when you use our website and the AMLX application (the “Service”).
1. Who this applies to
This policy applies to visitors and registered users of the Service. Some features may collect different categories of data; we describe the main cases below.
2. Data we process
- Account data: such as name, work email, organisation, and authentication identifiers when you register or sign in.
- Usage and technical data: such as IP address, browser type, device identifiers, approximate location derived from IP, timestamps, and diagnostic logs needed to operate and secure the Service.
- Content you submit: such as search queries, filters, notes, or support messages you send us.
- Third-party intelligence: the Service displays data from external feeds. That data may relate to individuals or entities and is processed for your compliance workflows in accordance with your instructions and applicable law.
3. Purposes and legal bases (UK / EU)
Where UK GDPR / EU GDPR applies, we rely on one or more of the following:
- Contract: providing the Service and features you request.
- Legitimate interests: securing the platform, preventing abuse, improving reliability, and understanding aggregated usage — balanced against your rights.
- Legal obligation: where we must retain or disclose information to comply with law.
- Consent: where required for specific cookies or communications, which you may withdraw.
4. Sharing
We use infrastructure and service providers (for example hosting, email delivery, and analytics) under contractual safeguards. We may disclose information if required by law or to protect the rights, safety, and integrity of users and the Service. We do not sell your personal data.
5. International transfers
If we transfer personal data outside the UK or EEA, we use appropriate safeguards such as standard contractual clauses or equivalent mechanisms, unless an exception applies.
6. Retention
We retain personal data only as long as needed for the purposes above, including legal, accounting, and security requirements. Retention periods may differ by data category and contract.
7. Security
We implement technical and organisational measures designed to protect personal data. No method of transmission or storage is completely secure; we work to reduce risk in line with industry practice.
8. Your rights
Depending on your location, you may have rights to access, rectify, erase, restrict, or port your personal data, and to object to certain processing. You may also lodge a complaint with a supervisory authority. To exercise rights, contact us using the details on our site or your account team.
9. Cookies
We use cookies and similar technologies where necessary for authentication, preferences, and security, and optionally for analytics. You can control cookies through your browser settings.
10. Children
The Service is not directed at children, and we do not knowingly collect personal data from children.
11. Changes
We may update this policy and will revise the “Last updated” date. Material changes may be communicated through the Service or by email where appropriate.
12. Contact
For privacy requests or questions, use the contact form, the channels published on amlx.io, or your organisation’s administrator.