Privacy notice
Last updated: 17 February 2026
This Privacy Notice explains how SUPERCAR LUXE COLLECTIVE LIMITED ("SLC", "we", "us", "our") collects and uses personal data when you use our website, web app and membership services (the "Services").
We are committed to handling your information responsibly and in accordance with UK data protection laws, including the UK GDPR and the Data Protection Act 2018.
1) Who we are (Data Controller)
Data Controller: SUPERCAR LUXE COLLECTIVE LIMITED
Company number: 16693125
Registered office: 86-90 Paul Street, London, England, EC2A 4NE
Contact email (including privacy): hello@supercarluxecollective.co.uk
Postal contact: SUPERCAR LUXE COLLECTIVE LIMITED, 86-90 Paul Street, London, England, EC2A 4NE
2) Personal data we collect
We collect the minimum data needed to run the Services. Depending on what you choose to provide, we may collect:
A) Account & identity
Name, email address, phone number
Login/authentication data (managed securely via our authentication provider)
Membership verification details (e.g., verification tokens)
B) Membership profile (member-controlled)
Vehicle/garage details you choose to add (e.g., make/model/variant/year, images)
Preferences relevant to club activities (e.g., event interests, road trip preferences)
Participation records (e.g., RSVPs, attendance)
C) Insurance-related data (optional / member-controlled)
If you choose to provide it for member benefits and reminders:
Insurance renewal date
Current insurer
Insurance price/premium and related renewal details
D) Payments
Membership plan, price, payment status, timestamps, invoices/receipts
We do not store full card details; payments are handled by our payment processor.
E) Health/access needs for events (optional)
Dietary/accessibility requirements only if you choose to provide them for a specific event
F) Communications & support
Messages you send us (support requests, feedback, partner enquiries)
G) Technical & security
IP address, device information, and logs necessary for security, fraud prevention and system integrity
Cookies and similar tracking technologies are covered in a separate Cookie Policy (cookies are managed separately).
3) Member control over data
You can control what optional data you share within your membership account page. Some information is required to provide core Services (for example, an email address for account access and membership administration).
You can update or remove optional profile fields in-app. If you want your account deleted, see "Your rights" below.
4) How we use your data
We use personal data to:
- Create and manage your account and membership
- Provide member services (events, road trips, perks and partner offers)
- Operate voting/feedback features that shape club direction
- Process membership payments, renewals and receipts
- Provide member reminders and benefits (e.g., insurance renewal prompts if you've chosen to provide that data)
- Respond to enquiries and provide customer support
- Protect the community and Services (fraud prevention, security monitoring, auditing)
- Improve the Services using aggregated insights and feedback
5) Lawful bases (UK GDPR)
We process personal data under one or more lawful bases:
- Contract (to provide your membership and requested Services)
- Legitimate interests (to operate, improve and secure the Services and community, balanced against your rights)
- Consent (where you choose to provide optional data and/or opt-in to certain communications)
- Legal obligation (e.g., accounting and tax recordkeeping)
- Vital interests (rarely, where necessary for emergency safety situations at an event)
6) Marketing communications
Where permitted, we may send information about membership, events, perks and partner offers. You can opt out at any time via unsubscribe links or your account preferences.
We do not sell your personal data.
7) Who we share data with
We share data only where necessary to provide the Services, including:
- Payment processors (to take payments and manage billing)
- Hosting / infrastructure providers (cloud hosting, databases, email delivery, authentication)
- Event venues/suppliers/partners (only the minimum necessary to deliver an event or benefit)
- Professional advisers (accountants, solicitors) under confidentiality
- Regulators/law enforcement where required by law
Partner perks: If a perk requires sharing information with a partner (for example, to verify eligibility), we will share only what is necessary and/or seek your consent where appropriate.
8) International transfers
If any service providers process data outside the UK, we ensure appropriate safeguards are in place (such as UK adequacy regulations or approved contractual protections).
9) Retention
We keep data only as long as needed for the purposes described:
- Account and profile data: while your account is active
- Transaction and accounting records: retained as required by UK legal/accounting obligations
- Security logs: retained for an appropriate period for security and fraud prevention
If you delete your account, we will delete or anonymise data where possible, while retaining data we must keep by law.
10) Security
We use appropriate technical and organisational measures to protect personal data (e.g., access controls, encryption in transit, security monitoring).
11) Your rights
You have rights under UK GDPR, including:
- Access, correction, deletion
- Restriction or objection to certain processing
- Data portability (in some cases)
- Withdrawal of consent (where processing is based on consent)
To exercise rights, contact: hello@supercarluxecollective.co.uk
You can also complain to the UK Information Commissioner's Office (ICO) if you believe your data has been handled unlawfully.
13) Changes to this Privacy Notice
We may update this Privacy Notice from time to time. We'll post the updated version here and, where appropriate, notify members in-app or by email.