Your Data Subject Rights
Your rights under GDPR as an AskBiz user — including access, rectification, erasure, portability, and how to exercise each right.
Your rights under GDPR
As a user of AskBiz, you have the following rights under the UK GDPR and EU GDPR regarding your personal data:
1. Right of access: you can request a copy of all personal data AskBiz holds about you
2. Right to rectification: you can ask us to correct inaccurate personal data
3. Right to erasure ('right to be forgotten'): you can request deletion of your personal data in certain circumstances
4. Right to data portability: you can request your data in a machine-readable format for transfer to another service
5. Right to restrict processing: you can ask us to limit how we use your data in certain circumstances
6. Right to object: you can object to certain types of processing, including direct marketing
7. Rights related to automated decision-making: you can request human review of any significant automated decisions
How to exercise your rights
Most rights can be exercised directly within AskBiz:
Data access: go to Settings → Privacy → Download My Data. AskBiz generates a JSON export of your account data within 24 hours and sends a download link to your registered email.
Data deletion: go to Settings → Privacy → Delete My Account. This permanently deletes your AskBiz account and all associated data. Note: this does not affect data in your connected platforms (Shopify, Xero, etc.) — AskBiz is read-only and cannot delete data from source systems.
Data rectification: update your profile information in Settings → Account → Profile. For data that cannot be edited in-app, email privacy@askbiz.co.
Opt out of processing: go to Settings → Privacy to manage analytics, marketing communications, and optional data processing choices.
Response timelines
AskBiz is required to respond to data subject requests within 30 days under UK GDPR.
In practice:
- Data access requests: typically completed within 3–5 business days
- Erasure requests: account deletion is immediate for the account itself; backup retention may mean data persists in encrypted backups for up to 30 days before complete deletion
- Rectification requests: typically resolved within 5 business days
- Portability requests: data export available immediately via Settings → Privacy → Download My Data
For complex requests (e.g. partial erasure of specific data types), we may use the full 30-day period and will notify you of the timeline.
Complaints and escalation
If you are not satisfied with how AskBiz has handled your data subject request, you have the right to complain to the supervisory authority:
UK users: Information Commissioner's Office (ICO) — ico.org.uk
EU users: Your national data protection authority
Contact our Data Protection Officer at dpo@askbiz.co before escalating to the regulator — most issues can be resolved directly. Include your account email and a description of the concern.