Skip to content
CheckFirst

Privacy Policy

Last updated: 29 June 2026

1. Who we are

CheckFirst (“we”, “us”) is operated by Chanikul Dechpholkrang, trading as CheckFirst, a sole trader based in the United Kingdom. Chanikul Dechpholkrang, trading as CheckFirst, is the data controller for the personal data described in this policy. We are registered with the ICO (ICO registration: ZC176732).

2. What we collect

3. How and why we use it (legal bases)

4. Who we share it with (processors)

We use trusted providers who process data on our behalf: Anthropic (AI content analysis), GoHighLevel (CRM and email delivery), Stripe (payments), MongoDB Atlas (database storage), Vercel (hosting), Clerk (authentication, where applicable), and Cloudflare (bot protection and human verification via Turnstile). Some of these providers are based outside the UK; where data is transferred internationally we rely on appropriate safeguards such as the UK International Data Transfer Agreement or Standard Contractual Clauses. We do not sell your personal data.

5. How long we keep it

Your per-scan report (the findings keyed to your scan ID) is automatically deleted 30 days after the scan. We keep your email address and basic scan metadata for as long as needed to provide the service and our follow-up communications, and then delete or anonymise it. Raw scanned content is not stored at any point. You can ask us to delete your data at any time (see section 7).

6. Cookies

We use only the cookies necessary to run the site and, where applicable, authentication.

7. Your rights

Under UK data protection law you have the right to access, correct, delete, or restrict the processing of your personal data, to object to processing, and to data portability. To exercise any of these, email us at privacy@checkfirstcompliance.co.uk. You also have the right to complain to the ICO (ico.org.uk).

8. Contact

Data controller: Chanikul Dechpholkrang, trading as CheckFirst. Email: privacy@checkfirstcompliance.co.uk. ICO registration: ZC176732.