Privacy Policy

Effective Date: 14-03-2026
Last Updated: 14-03-2026

About PenTesting4U Ltd 

PenTesting4U (“we”, “us”, “our”) is a cybersecurity company providing professional penetration testing and security assessment services to organisations worldwide. We help businesses identify vulnerabilities, strengthen their security posture, and protect critical systems and sensitive data from evolving cyber threats.
This Privacy Policy explains how Pen Testing 4U collects, uses, and protects your information in accordance with applicable data protection and privacy regulations.
 

Information We Collect 

We may collect and process the following personal data: 

a) Information You Provide to Us:

  • Name, job title, company name 
  • Email address, phone number 
  • Billing and payment details 
  • Project briefs, application forms, or service enquiries 

b) Information We Collect Automatically:

  • IP address and browser data  
  • Cookies, analytics and usage data 
  • Device information       

c) Information Related to Client Projects:

  • Sensitive data (e.g. medical, educational, or financial records) if provided for custom software or platform integration 
  • Access credentials or API tokens (where applicable) 

 

Lawful Bases for Processing 

We process your data under one or more of the following legal bases:  

Contractual necessity – to deliver services you request or purchase 

Consent – for marketing emails or testimonials (you can withdraw any time) 

Legal obligation – such as tax compliance or fraud prevention 

Legitimate interests – for improving our services or securing our platform 

 

How We Use Your Data 

We use your information to: 

  • Deliver services and fulfil contracts 
  • Respond to enquiries and support requests 
  • Send proposals, invoices, or updates 
  • Run marketing campaigns (only with your consent) 
  • Meet legal or regulatory obligations 
  • Improve our services and website 

 

International Data Transfers 

Some personal data may be processed by our team in Lahore, Pakistan. In such cases, we implement: 

  • Standard Contractual Clauses (SCCs) approved by the UK government 
  • Strict internal access and security protocols 
  • Limited access to sensitive or regulated data 

 

Sharing Your Data 

We do not sell personal data. We may share it with: 

  • Cloud or hosting providers (e.g. AWS, Microsoft Azure) 
  • Payment processors or email tools (e.g. Stripe, MailerLite) 
  • Legal authorities (if required by law)
  • All processors are contractually bound to safeguard your data. 

 

Data Retention 

We retain data only as long as necessary: 

  • Client contracts and communication: 6–7 years 
  • Enquiries or analytics data: 12 months 
  • Marketing records (with consent): until withdrawn 
  • Financial records: 6 years (HMRC requirement) 

 

Your Rights (Under UK GDPR) 

You may:  

  • Request access to your data 
  • Request correction or deletion 
  • Withdraw consent 
  • Object to processing 
  • Lodge a complaint with the ICO: ico.org.uk
  • To exercise your rights, email us at info@pentesting4u.com. 

 

Cookies and Tracking 

Our website uses cookies to: 

  • Analyse website usage 
  • Improve content and UX 
  • Personalise user experience
  • See our [Cookie Policy] for full details. You can disable cookies in your browser. 

 

Contact Information 

SAH IT Solutions Ltd – Head Office
13 Bridge Street, Northampton, England, NN1 1NH
info@pentesting4u.com