top of page

Privacy Policy

Information about us


Hay Hill Wealth Management Limited is a private limited company incorporated in England and Wales under company number 05416229 with its registered office located at 24 Upper Brook Street, London, England, W1K 7QB.
This Privacy Policy describes how your personal information is collected, used, and shared when you visit or make a purchase from (the “Site”). If you have any queries about the Website, Privacy or any information contained on it, please contact us by email at
This site is neither directed at nor intended for US residents.
  1. Our Privacy Policy applies to use of our Website, and its terms are made a part of the Terms of Use by this reference
  2. Additionally, by using our Website, you acknowledge and agree that internet transmissions are never completely private or secure. You understand that any message or information you send to our Website may be read or intercepted by others, notwithstanding our efforts to protect such transmissions. We are not responsible for any messages which are lost, altered by third parties or intercepted and we will not be liable to you or anyone else for any damages or otherwise in connection with any message sent by you to us or by us to you via the internet
  3. Our Website makes use of cookies. Cookies are files which our server uses to identify your computer. Cookies cannot identify which person is using the computer. The cookies we use record which parts of our Site are being visited and for how long
  4. The Privacy and Electronic Communications (EC Directive) (Amendment) Regulations 2011 requires that cookies can only be placed on a computer where the user has given their express consent. You can choose to accept or decline cookies when you first access our Site. We require you to indicate your choice via an automated “pop-up” box, which explains the cookies we use and what we use them for. Most web browsers automatically accept cookies, but you can also usually modify your browser setting to decline cookies if you prefer. If you decline to accept our use of cookies or set your web browser to decline their use, you will have only limited functionality in the use of our Site. Our Privacy Policy contains further guidance on our use of cookies.
Hay Hill Wealth Management Limited is committed to ensuring that your privacy is protected, and all data collected by us will be processed in accordance with this Data Protection Privacy & Cookies Policy. Please read this statement carefully to ensure you understand our views and practices regarding your personal data and how we will treat it.
By visiting our Site or by providing us with information you are accepting the practices described in this Data Protection Privacy Statement.
Personal information (or ‘personal data’) means any information that can identify a living person, whether directly or indirectly. We collect and process a variety of personal information about individuals, as detailed below.
1.1 As an investment management firm, we process the personal information of our clients and the individuals who work for our clients. As such, if we act as principal for you (or the entity you work for) we will process your:
  1. personal demographics such as your title name, date of birth, residential and employment details;
  2. financial information, such as income and expenditure and your financial history;
  3. other customer due diligence information, which may include criminal convictions data; and
  4. contact details and records of all correspondence with you.
1.2 This information will primarily be collected from you directly, but may also be collected from third parties whom we contact to obtain information about you, such as the entity you work for which is applying to become a client, previous employers if references are being sought, corporate search engines such as Linked In, credit reference agencies (CRAs) and the Disclosure and Barring Service (DBS).
1.3 We may also obtain personal data belonging to members of your family. Where we do that, you must notify them that you are providing their information to us and draw their attention to this statement.
1.4 We will process personal information about you that we have collected from our website (our Website). We collect information when you submit information to us directly using the contact form on our Website. We also collect information automatically when you use the Website. This includes technical information including the internet protocol (IP) address used to connect to the internet, information about your visit including the full uniform resource locators (URL) clickstream and your search history on our Website.
Where we process personal data for the above purposes, we rely on the following lawful bases:


  1. Where it is necessary for performance of contractual obligations;
  2. Where it is necessary for our performance of legal obligations;
  3. Where it is in our, or a third party’s, legitimate interests, provided that:
    • the processing is necessary to pursue the legitimate interests;
    • the data subject’s interests do not override the legitimate interests; and
    • the data subjects have the right to:
  4. a request deletion of their personal data, provided they object to our processing and their interests override our own or a third party’s;
  5. restrict processing of their personal data, provided they object to the necessity of the processing. In such circumstances, processing may be restricted for such time as to allow us to investigate their objections; and
  6. object to the processing of their personal data in circumstances where such processing is necessary for a legitimate interest, or where processing is used for marketing purposes.
3.1 When you provide us with your information in making an enquiry we will use it for the purpose of administering your query and responding to you. We have legitimate interests in processing your personal data in this way, since if we do not process your data we will be unable to do this.
3.2 When we collect information from you (or the entity you work for) in the provision of our services as an advisory firm, we use it in order to consider your application (which will include verifying your identity) and to provide services if we are engaged to do so. We have legitimate interests in processing your personal data in this way, namely in order to assure ourselves that we are able to conduct business with you (or the entity you work for) and tailor our services as may be necessary. If we contract with you directly, the processing may be necessary for the performance of the contract that we have in place with you, or to take steps at your request before entering into the contract. Where we process criminal convictions data in the application process, this processing is necessary for reasons of substantial public interest, namely in order to comply with our regulatory requirements relating to unlawful acts and dishonesty (Data Protection Act 2018, Part 2, Paragraph 12).
3.3 If you are a client we will process the customer due diligence information that was collected by. This processing is necessary to ensure compliance with our legal obligations and for the purposes of our legitimate interests in ensuring that you have acted diligently and clients are treated appropriately. If criminal convictions data was collected about you in the customer due diligence process, this information will be held by us on the basis that the processing is necessary for reasons of substantial public interest, namely in order to comply with our regulatory requirements relating to unlawful acts and dishonesty
3.4 Unless you provide your consent by ticking the opt-in box provided on the contact form, we will not send you marketing information that you have not requested. Any consent that you provide can be withdrawn at any time by clicking “unsubscribe” on any marketing email we send to you, or by emailing us at email. Withdrawing your consent does not affect the lawfulness of any processing which occurred prior to the withdrawal of consent.
3.5 We may also process your personal information collected on our Website on the basis of our legitimate interests in providing you with the best possible service:
  • to ensure that the content from our Website is presented in the most effective manner for you and your computer; as part of our efforts to keep our Website safe and secure; and
  • for internal analytical and statistical purposes.
Such data processing will normally be conducted on an anonymous basis.
4.1 We will only supply your personal information to a third party:
4.2 where we need to share the information to provide a product or a service requested by you;
4.3 where we need to send the information to persons or organisations who work on our behalf to provide a product or service to you, in which case such persons or organisations may only use this information in order to provide such product or service and not for any other purpose;
4.4 companies which perform marketing services on our behalf or with whom we have joint marketing agreements, where we have your consent to share the information;
4.5 if we are under a duty to disclose or share your personal data in order to comply with any legal obligation, or in order to enforce or apply our terms of use and other agreements, or to protect the rights, property or safety of our company, our clients or others, including exchanging information with other companies and organisations for the purposes of fraud protection and credit risk reduction.



5.1 The data that we collect from you may be transferred to and stored at a destination outside the European Economic Area (EEA). If the date is stored in a server in the USA, we protect such transfers through reliance on the EU-US Privacy Shield framework. Data may also be processed by staff operating outside the EEA who work for us or for one of our suppliers for the purposes set out above only. In order to ensure that any third party treats your personal data in a way which is consistent with UK and EU laws on data protection, we have put in place agreements with those third parties which contain provisions approved by the EU for protecting personal data.
5.2 We will retain your information for six years, after which time it will be destroyed.


6.1 When you use our Website we may obtain information about your computer and general internet usage, including your IP address, operating system and browser type, for system administration purposes.
6.2 Cookies contain information that is transferred to your computer’s hard drive. Cookies allow us to tailor our Website to your needs by gathering and remembering information about your usage and preferences.
6.3 In particular, Cookies enable us to:
  1. to gather information on IP addresses and pages visited;
  2. to analyse trends;
  3. to administer the website;
  4. to track users’ movements on the website; and
  5. to undertake statistical analysis.
6.4 Most web browsers automatically accept cookies, but you can modify your browser setting to decline cookies if you prefer. This may prevent you from taking full advantage of our Website or accessing certain parts. Our system will issue cookies when you access our Website unless you have adjusted your browser settings so that it will refuse cookies.
6.5 A cookie is a file containing an identifier (a string of letters and numbers) that is sent by a web server to a web browser and is stored by the browser. The identifier is then sent back to the server each time the browser requests a page from the server.
6.6 Cookies may be either “persistent” cookies or “session” cookies: a persistent cookie will be stored by a web browser and will remain valid until its set expiry date, unless deleted by the user before the expiry date; a session cookie, on the other hand, will expire at the end of the user session, when the web browser is closed.
6.7 Cookies can be used by web servers to identify and track users as they navigate different pages on a website and identify users returning to a website.
6.8 The list below provides more information about the cookies we may use and why:


Google Analytics - This is a web analytics service provided by Google Inc which uses cookies to show us how visitors found and explore our site, and how we can enhance their experience. It provides us with information about the behaviour of our visitors (eg. how long they stayed on the site, the average number of pages viewed) and also tells us how many visitors we have had.
Session Cookies - To allow access to the New Enquiry Form (password protected and login required)


6.9 Most browsers allow you to refuse to accept cookies; for example: in Firefox (version 51) you can block all cookies by clicking “Tools”, “Options”, “Privacy”, selecting “Use custom settings for history” from the drop-down menu, and unticking “Accept cookies from sites”; in Chrome (version 55), you can block all cookies by accessing the “Customise and control” menu, and clicking “Settings”, “Show advanced settings” and “Content settings”, and then selecting “Block sites from setting any data” under the “Cookies” heading; and in Internet Explorer (11) you can turn “Cookies” off by opening Internet Explorer, click Internet options and select the “Privacy” tab. Under “Settings” move the slider to the top or bottom to decline or allow “Cookies” by selecting high or low and then press “apply”.
6.10 You can delete cookies already stored on your computer; for example: in Firefox (version 51), you can delete all cookies by clicking “Tools”, “Options” and “Privacy”, then selecting “Use custom settings for history” from the drop- down menu, clicking “Show Cookies”, and then clicking “Remove All Cookies”; in Chrome (version 55), you can delete all cookies by accessing the “Customise and control” menu, and clicking “Settings”, “Show advanced settings” and “Clear browsing data”, and then selecting “Cookies and other site and plug-in data” before clicking “Clear browsing data”; and
6.11 In Internet Explorer (11) you can select the safety button and then select Delete Browsing History. Then select the check box next to “Cookies”. Select the “preserve favourites” website data check box if you don’t want to delete the “Cookies” associated with the website in their favourites list. Select delete.


7.1 If you are a client or contact you should have received a privacy policy when we collected your information. This statement does not govern the use of your information and you should refer to the policy to ensure that you understand how they will use your information. The policy should also have informed you that your information would be passed to us. If you were not provided with such a privacy policy, please let us know.
7.2 This statement does not cover your use of, provision of data to and collection of your data on any website other than the Website.
7.3 Our Website may from time to time contain links to and from other websites. If you follow a link to any of these websites please note that these websites have their own privacy policies and that we do not accept any responsibility or liability for these websites or policies. You should always check these policies before you submit any personal data to any third party website.
The GDPR gives you a number of rights in respect of your personal data, including:
8.1 Right to access
  1. You have the right to access the information we hold about you. We may request proof of your identity before sharing such information.
8.2 Right to rectify your personal data
  1. If you discover that the information we hold about you is incorrect or out of date, you may ask us to correct that information.
8.3 Right to be forgotten
  1. You may ask us to delete information we hold about you in certain circumstances. It may not be possible for us to delete all of the information we hold about you where we have an ongoing relationship, however please contact us and we will do our best to assist with your request.
8.4 Other rights
  1. In addition to the above, you may also ask us to stop or restrict processing of the information we have about you. You may also ask us to transfer your personal information to a third party in certain circumstances. If you would like any other information on these aspects of your rights or would like to exercise them, please contact us using.


9.1 If you have any questions, want to exercise any of your rights or make a complaint, please contact us using the details at the beginning of this statement.
9.2 If we are unable to resolve your complaint you may contact the Information Commissioner’s Office at the Exchange Tower, Wycliffe House, Water Lane, Wilmslow, Cheshire, SK9 5AF Tel: 0303 123 1113. ICO website:


This statement may be reviewed and amended from time to time. As a result of improvements we make to our services, changes in the law or developments in technology, we may change the information we hold about you, the method and purposes for which we process such information. If we make any substantial change in the way in which we use your personal information we will notify you by email.
Your use of the Website is subject to the laws of England and Wales and the exclusive jurisdiction of the English courts regarding any disputes that may arise under it.
For more information about our privacy practices, if you have questions, or if you would like to make a complaint, please contact us by e-mail at or by mail using the details provided below:
24 Upper Brook Street, London, W1K 7QB, United Kingdom

bottom of page