Legal

Privacy Policy

Your trust is foundational to the work. This policy sets out how we handle your personal information with care, transparency, and respect.

Last updated · June 2026

  1. Who We Are

    This website and its associated programmes — including the BOSS Membership, the Throne Room, The Library, and related services — are operated by Davies K. Bamigboye (“we”, “us”, “our”). We are the data controller responsible for your personal information. This policy explains what we collect, why we collect it, and the rights you hold over it.

  2. Information We Collect

    We collect information you provide directly and information generated as you use our services:

    • Account details — your name and email address when you register, sign in, or create a membership account.
    • Application and enquiry data — responses you submit through the BOSS application, suitability briefing, and speaking enquiry forms.
    • Payment information — processed securely by our payment provider; we do not store full card numbers on our servers.
    • Communications — messages you send us and your newsletter subscription preferences.
    • Technical data — limited usage and device information collected to keep the service secure and functioning.
  3. How We Use Your Information

    We use your information to:

    • provide and administer your account, membership, and access to gated content such as The Vault;
    • process payments and manage subscriptions;
    • respond to applications, enquiries, and support requests;
    • send the Governance Memo and service-related communications you have requested;
    • maintain the security, integrity, and performance of our services; and
    • comply with our legal and regulatory obligations.
  4. Lawful Basis for Processing

    Under UK GDPR, we process your data on the basis of contract (to deliver the services and membership you sign up for), consent (for marketing communications such as the newsletter, which you may withdraw at any time), legitimate interests (to operate, secure, and improve our services), and legal obligation (where the law requires us to retain or disclose information).

  5. Service Providers

    We share information with trusted third parties only as needed to operate our services. These providers process data on our behalf under appropriate safeguards:

    • Supabase — secure account, authentication, and database hosting.
    • Stripe — payment processing and subscription billing.
    • Resend — delivery of transactional and enquiry emails.
    • Substack — distribution of the Governance Memo newsletter.
    • Vercel — website hosting and infrastructure.

    We never sell your personal information to anyone.

  6. Data Retention

    We retain your personal information for as long as your account or membership remains active, and thereafter only as long as necessary to meet legal, accounting, or reporting requirements. When data is no longer required, we delete or anonymise it.

  7. Your Rights

    Subject to applicable law, you have the right to:

    • access the personal information we hold about you;
    • request correction of inaccurate or incomplete data;
    • request deletion of your data;
    • object to or restrict certain processing;
    • withdraw consent for marketing at any time; and
    • request a copy of your data in a portable format.

    To exercise any of these rights, contact us at davies@daviesbamigboye.com. You also have the right to lodge a complaint with the UK Information Commissioner's Office (ICO).

  8. Cookies

    We use essential cookies required for authentication and to keep you signed in to member areas. We do not use these for advertising. You can control cookies through your browser settings, though disabling essential cookies may prevent parts of the service from working.

  9. Security

    We apply appropriate technical and organisational measures to protect your information, including encrypted connections and access controls. No method of transmission over the internet is entirely secure, but we work to safeguard your data and to address any incident promptly.

  10. Changes to This Policy

    We may update this policy from time to time. Material changes will be reflected here with a revised “last updated” date. Continued use of our services after an update constitutes acceptance of the revised policy.

Questions about this policy can be directed to davies@daviesbamigboye.com.

← Return Home