Last updated: September 13, 2026
This Privacy Policy explains how Richard Moore trading as Experi ("we," "us," or "our") collects, uses, stores, and protects your personal data when you use the Experi service (experi.co.uk).
We are committed to protecting your privacy and complying with the UK General Data Protection Regulation (UK GDPR) and the Data Protection Act 2018.
Data Controller
Name: Richard Moore (sole trader)
Trading as: Experi
Address: 6 Farm Lane, Send, Surrey, GU23 7AT, United Kingdom
ICO registration: ZC239393 (view public register)
Contact: hello@experi.co.uk
When you create an account, we collect:
When you set up your business profile, we collect:
When you add clients, we collect:
When you create invoices, we collect:
Web subscription payments are handled by Stripe. Where in-app subscriptions are available, Apple processes App Store purchases and Google processes Google Play purchases. Availability depends on the platform and app configuration; this policy does not mean purchases are enabled in every version of the app. We do not store your full credit card details. We only store:
The mobile subscription service uses RevenueCat to verify purchases, restore access and keep subscription status consistent with the web app. RevenueCat receives your Experi account identifier, purchase history and subscription transaction information, and processes these for subscription functionality and subscription analytics. We do not send your invoices, client records, password or bank details to RevenueCat. The applicable store provider (Apple or Google) and RevenueCat process this information under their respective privacy notices.
We automatically collect:
We use cookies for authentication and session management. With your consent we also use Google Analytics and New Relic Browser for usage and performance monitoring. See our Cookie Policy for details.
If you choose to connect Experi to HMRC, we process the information needed to provide the HMRC features you authorise, which may include:
You sign in and grant authority on HMRC's service. Experi does not collect or store your HMRC username, password, or HMRC two-step verification code.
If you enable MCP and connect a compatible AI agent, we process:
Experi does not store plaintext manual credentials or OAuth tokens. OAuth access tokens are short-lived and refresh tokens rotate after use. We do not store MCP request bodies in the activity log. MCP is off by default and disabling it revokes all active OAuth connections and manual credentials.
When you choose to use Experi Assistant, your question and the current conversation are sent through Vercel AI Gateway to our configured AI model provider, such as Anthropic or OpenAI, to generate a reply. This is separate from MCP agent access. The assistant does not automatically access your business records or perform business actions. Information you type is included: do not enter customer records, tax identifiers, passwords or bank/card details.
The mobile app keeps the conversation in memory. Experi's application database retains usage and security metadata, not the chat transcript. This metadata includes account and session identifiers, subscription tier, token counts, request timing, a hashed IP address and request outcomes. The gateway and model provider have their own processing and retention arrangements; clearing the conversation on your screen does not recall information already processed by them. We do not promise zero retention by those providers. You can use ordinary business features without using the assistant.
Guest invoices are stored on your device and are not backed up to Experi. Signing in does not automatically save or send them: you choose a business and review the invoice before saving it to your account. The original guest draft can remain on the device after import. Anonymous guest drafts are accessible without signing in on that device, so protect access to your phone.
Signed-in offline invoice drafts are removed when you sign out. Guest drafts and recoverable timer data can remain on the device; account-linked timer recovery requires the same account to sign in again. Save or export unfinished work before signing out or clearing app data. PDF previews and exports use temporary local files, which Experi attempts to remove after use. Files you save or share elsewhere remain under your control or the recipient's; account deletion does not recall them.
After account deletion is confirmed in the mobile app, it attempts to remove that account's local invoice drafts, imported guest copies, timers and navigation cache on that device. It shows the cleanup result and a local retry if needed. This does not remotely erase another device or remove anonymous guest drafts, another person's work or files saved outside the app. If local cleanup cannot finish, follow the device-cleanup guidance and preserve any other unfinished work first.
We process your account, business, client, and invoice data to provide the Service you signed up for. If you connect HMRC, this includes retrieving authorised HMRC information, preparing returns, and transmitting a return only when you instruct us to submit it. This processing is necessary for the performance of our contract with you.
We process usage data to:
We may process data to comply with legal requirements, such as responding to lawful requests from authorities and collecting and sending the fraud-prevention information required for relevant HMRC API requests.
For marketing communications, we will only contact you if you have given explicit consent.
We use your data to:
✓ We Do NOT :
Your data is stored with the following trusted service providers:
When data is transferred outside the UK, we ensure appropriate safeguards are in place, such as Standard Contractual Clauses (SCCs) or adequacy decisions.
We may share your data with:
When you send an invoice, we share the invoice data (business details, amounts, items) with your client via email. This is at your instruction.
When you connect HMRC, we exchange OAuth credentials and authorised information with HMRC. When you confirm a submission, we send the relevant return data, declaration, identifiers, and HMRC-required fraud-prevention information to HMRC. HMRC processes that information under its own privacy arrangements.
We may disclose data if required by law, court order, or to protect our legal rights.
If Experi is sold or merged, your data may be transferred to the new owner (you will be notified).
When you approve an MCP OAuth connection or give a manual MCP credential to an AI agent, information returned under the permissions you selected is sent to that service at your instruction. That third party controls its own processing, storage, and model-training practices. Review its privacy terms before connecting it, grant the smallest permissions needed, and revoke the connection or credential when it is no longer required.
Self-Service Deletion: You can review and confirm deletion through the account deletion page. Identity verification is required. Contact support if you cannot sign in or need help with associated provider-held data or uploaded files.
You have the following rights:
You can request a copy of all personal data we hold about you.
You can update incorrect or incomplete data via your account settings or by contacting us.
You can review and confirm deletion of your account and its owned business records through your account deletion page. This removes the following records from our active account database, subject to the retention and associated-data boundaries in section 7:
⚠️ Important: Account deletion is permanent and cannot be undone. We recommend exporting your data before deletion. Audit logs may be retained in anonymized form for security and compliance purposes.
You can export supported account and business data in JSON format through your Account Settings. The export includes:
This data is provided in machine-readable JSON format, making it easy to transfer to another service or keep as a backup. The automated export is not a complete copy of every business module or uploaded file. The export screen explains its current coverage; contact us to request personal data not included in that export.
You can request that we stop processing your data in certain circumstances.
You can object to processing based on legitimate interests or for marketing purposes.
Where processing is based on consent, you can withdraw it at any time.
How to Exercise Your Rights
To exercise any of these rights, please email us at hello@experi.co.uk. We will respond within 30 days.
We implement appropriate technical and organizational measures to protect your data:
However, no system is 100% secure. We cannot guarantee absolute security, but we take all reasonable steps to protect your data.
Experi is not intended for use by anyone under the age of 18. We do not knowingly collect data from children.
We may update this Privacy Policy from time to time. We will notify you of material changes by email or through the Service. The "Last updated" date at the top indicates the most recent revision.
If you believe we have not handled your data properly, you have the right to lodge a complaint with the UK Information Commissioner's Office (ICO):
Information Commissioner's Office (ICO)
Website: ico.org.uk
Phone: 0303 123 1113
Address: Wycliffe House, Water Lane, Wilmslow, Cheshire, SK9 5AF
If you have questions about this Privacy Policy or how we handle your data:
Data Controller: Richard Moore (sole trader)
Trading as: Experi
Email: hello@experi.co.uk
Registered business address: 6 Farm Lane, Send, Surrey, GU23 7AT, United Kingdom
© 2026 Experi. All rights reserved.