1. Identity, roles and contact
UONE SMC, established in the United Arab Emirates, operates the UONE service at www.uone.uk.
- Privacy, rights and controller inquiries may be sent to support@uone.uk .
- Approved client organizations generally decide why records are submitted and act as controllers for those records.
- UONE processes those submitted records on their documented instructions and may act as controller for account administration, security, billing, support, and legal-compliance information.
2. Information processed
UONE may process organization and authorized-user details; uploaded review fields; public-evidence results and source links; review, export and feedback records; order, wallet and reconciliation records; support communications; and security, audit, device, network and session events.
- Apply this guidance within your organization’s approved review process.
3. Why information is processed
Processing supports authentication, authorized public-source reviews, review recovery, result delivery, billing, usage limits, fraud and abuse prevention, auditability, support, service improvement, legal obligations, and enforcement of the Terms and Acceptable Use requirements.
- Apply this guidance within your organization’s approved review process.
4. Cookies and browser storage
UONE uses strictly necessary session and security cookies, together with temporary browser-session information, to protect signed-in areas, prepare authorized review records, reconnect results, and confirm authorized actions.
- Browser-held working information is intended for the active session and should be removed when it is no longer needed.
- Downloaded files remain under the client organization’s control.
- These technologies are not used for advertising or cross-site tracking.
5. Service providers and international and cross-border processing
UONE may use carefully selected service providers for hosting, email delivery, public-information review, and related service support.
- Only information reasonably required to provide the relevant service should be shared.
- Processing may occur in more than one country and must be governed by contractual, security, and transfer safeguards appropriate to the applicable law.
6. Retention
Retention depends on the category and purpose of the record.
- Temporary execution information is generally removed within 24 hours after it is no longer needed for active processing or recovery.
- Operational review metadata is generally retained for up to 30 days, while security and audit records may be retained for up to 365 days unless law or an applicable agreement requires otherwise.
- Finalized review results, including matched contact details and reviewer feedback, are retained for up to 365 days from completion; after that period the underlying content is cleared and only a non-identifying operational summary (such as counts and status) is kept for reporting and billing history.
- Financial and contractual records may be retained for the period required by applicable accounting, tax, contractual, or legal obligations.
- Session information expires or is removed when access ends or is revoked.
- Client organizations remain responsible for controlling, retaining, and deleting downloaded exports.
7. Data lifecycle and secure deletion
Information is collected or received for an authorized purpose, used only as needed to provide and protect the service, retained according to its category and applicable obligations, and removed or anonymized when no longer required.
- Deletion processes are intended to cover active records, associated temporary information, and recoverable copies as they reach the end of their applicable retention cycle.
- Where a verified deletion request applies, UONE follows a controlled process that confirms authority, records the action, and preserves only the minimum information required to demonstrate compliance.
8. Accuracy, minimization and authorized use
Client organizations must submit only relevant, accurate and lawfully obtained data for an approved business purpose.
- UONE results are evidence-assisted findings, not guaranteed facts, and should be reviewed by an authorized person before consequential decisions are made.
9. Security
UONE uses layered access controls, secure sessions, activity records, restricted administration, and review-recovery safeguards.
- No online service can guarantee absolute security.
10. Individual rights and organization requests
Depending on applicable law, individuals may have rights to access, correct, delete, restrict, object to, or obtain information about processing.
- Requests concerning a submitted record should normally be directed first to the organization that submitted it.
- UONE will support verified controller requests and will respond directly where UONE is the responsible controller.
11. Requests, deletion and complaints
Send privacy or deletion inquiries to support@uone.uk .
- Each request is entered into a controlled case process, assigned to the responsible privacy owner, identity and authority are verified, and the applicable response deadline is tracked.
- State the organization involved and the nature of the request, but do not send passwords, verification codes, or unnecessary submitted data.
- Unresolved concerns may be raised with the competent data-protection authority for the relevant jurisdiction.
12. Policy changes
Material changes will be reflected on this page and, where appropriate, communicated through the service or contractual channel.
- Last reviewed: 1 August 2026.
- This policy should be read together with the applicable client agreement.
Related public guidance
Review the related notices and terms that govern data handling and authorized use.
Contact support