Privacy Policy of Avalanche Outbound Ltd

1. Who Are We?

We are Avalanche Outbound Ltd, a UK-based marketing agency delivering outbound lead generation and digital marketing services to clients globally. Our work often involves the identification of relevant business contacts, primarily using publicly available data, to facilitate B2B prospecting for our clients.

Your privacy is important to us. We take our data protection responsibilities seriously and aim to respond quickly and respectfully to all data-related queries.

You can contact us at:

  • Email: hello@avalancheoutbound.com
  • Post: Avalanche Outbound Ltd, Suite 2a, 83-85, 6 Floor, Cobalt Square Hagley Road, Birmingham, West Midlands, United Kingdom, B16 8QG

2. Our GDPR Policy

We are committed to safeguarding the privacy and accuracy of the personal data we process, whether it belongs to website visitors, service users, or individuals whose data is sourced from publicly available information.

This policy applies where we act as a Data Controller or Data Processor. When we collect data and determine how it is used, we act as a Controller. When processing data under a client’s instruction, we act as a Processor.

References to “we”, “us”, or “our” refer to Avalanche Outbound Ltd.
Any reference to a Data Subject means a natural person whose personal data is processed by us, either as a Data Controller or Processor.

We process personal data in compliance with the UK GDPR and EU GDPR. In case of conflict, the standard offering the most protection to individuals will prevail.

3. How We Use Your Personal Data

We may process the following categories of personal data:

3.1 Usage Data

Collected via analytics tools (e.g. Google Analytics), including IP address, browser type, visit duration, pages viewed.
Legal basis: Legitimate interests (service improvement, business analytics).

3.2 Account Data

Includes name, email, company, job title, etc.
Source: You or your employer
Legal basis: Contract performance or legitimate interest (communications, delivery).

3.3 Service Data

Data collected during use of our services.
Legal basis: Contractual necessity or legitimate interest.

3.4 Enquiry Data

Collected when you inquire about our services.
Legal basis: Consent or legitimate interest (B2B marketing).

3.5 Notification Data

Used to deliver newsletters or updates.
Legal basis: Consent (can be withdrawn at any time).

3.6 Correspondence Data

Includes messages, contact details, and metadata from communication with us.
Legal basis: Legitimate interest (record-keeping, support).

3.7 Public Data

Collected from public sources (e.g. LinkedIn, company websites).
Legal basis: Legitimate interest (prospecting, B2B communications).

3.8 Legal Claims Data

Used in legal proceedings or risk mitigation.
Legal basis: Legitimate interest (rights protection).

3.9 Professional Use Data

Used for insurance, risk management, and professional advice.
Legal basis: Legitimate interest.

3.10 Third Party Data

Licensed data from GDPR-compliant providers.
Legal basis: Legitimate interest or third-party consent assurance.

4. Our Legitimate Interest

We assess every use of data under the Legitimate Interest basis using:

  • Legitimate Interest Assessments (LIA)
  • Data Protection Impact Assessments (DPIA) 

This ensures fair processing and minimal impact on data subjects’ rights.

5. Source of Your Personal Data

We may obtain your personal data from:

  • Public domain sources
  • Social media and business websites
  • Our clients
  • Licensed third-party providers

All sources must comply with GDPR and provide assurances on data legitimacy.

6. Data Sharing

We do not sell your data.

We may share data:

  • With clients (for whom we conduct prospecting)
  • With legal and professional advisers
  • With service providers under strict confidentiality controls

Clients are responsible for their own processing and must include their contact info in communications with you.

7. International Data Transfers

We primarily process and store personal data within the UK and the European Economic Area (EEA).

In instances where our third-party service providers or cloud-based software tools process data outside the UK or EEA, we ensure that appropriate legal safeguards are in place in accordance with UK Data Protection Legislation. These safeguards include:

  • Transferring data to countries recognised by the UK government as providing an adequate level of data protection.

  • Executing UK-approved Standard Contractual Clauses (SCCs) or the UK International Data Transfer Agreement (IDTA).

  • Relying on recognised international transfer frameworks, such as the UK Extension to the EU-US Data Privacy Framework.

8. Data Retention

We retain personal data only as long as necessary for its purpose unless:

  • Required by law
  • Necessary for legal defense
  • To protect vital interests

We have defined internal retention and deletion policies in place.

9. Cookies and Similar Technologies

9.1 Introduction

We are committed to safeguarding the privacy and accuracy of the personal data of our website visitors, service users, and email recipients. This section outlines how we use cookies and similar technologies on our website.

9.2 What Are Cookies?

Cookies are small text files placed on your device when you visit a website. These often contain a unique identifier and are used to store or retrieve information about your activity. They help your browser retain information across sessions, like login status or form inputs.

Information collected may include:

  • Date and time of visit
  • Pages visited
  • Clicks, scrolls, and browser actions

9.3 Why Do We Use Cookies?

We use cookies to:

  • Maintain website functionality (e.g. login status, form inputs)
  • Ensure smooth and secure browsing
  • Analyse how our website is used so we can improve it
  • Potentially show you relevant marketing content based on your interests

9.4 Types of Cookies We Use

  • Essential Cookies
    These are necessary for the basic functionality of our website. For example, they:

    • Save your cookie preferences
    • Keep you logged in
    • Enable access to secure areas of the site

Other types of cookies (like analytics or marketing cookies) may also be used in the future, and we will update this policy accordingly.

You can adjust your cookie preferences through your browser settings at any time.

10. Automated Processing

We use limited automation to:

  • Verify contact details
  • Assess relevance for campaign targeting

No legal or significant decisions are made without human review.

11. Your Rights as a Data Subject

Under data protection laws, you have rights including:

11.1 Right to be Informed

You have the right to understand how your data is used.

11.2 Right of Access

You can request a copy of your personal data.

11.3 Right to Rectification

You can request corrections to inaccurate or incomplete data.

11.4 Right to Erasure

You can request deletion of your data under certain conditions.

11.5 Right to Restrict Processing

You can limit how we use your data in certain cases.

11.6 Right to Object

You may object to processing based on legitimate interest.

11.7 Right to Data Portability

You may request your data in a structured, machine-readable format.

11.8 Rights Related to Automated Decision-Making

You may object to decisions made entirely by automated means.

11.9 Right to Complain

You can complain to the ICO or your local supervisory authority.

12. Contacting Us

For data queries or to exercise your rights:

  • Email: hello@avalancheoutbound.com
  • Post: Avalanche Outbound Ltd, Suite 2a, 83-85, 6 Floor, Cobalt Square Hagley Road, Birmingham, West Midlands, United Kingdom, B16 8QG

If you’re unsatisfied with our response:

Information Commissioner’s Office
Wycliffe House, Water Lane
Wilmslow, Cheshire, SK9 5AF
www.ico.org.uk

13. Amendments to This Policy

We may update this Privacy Policy from time to time.

  • Updates will appear on our website.
  • You may be notified via email where appropriate.

Last updated on: 14th September 2026