Skip to content
Back to home
Legal

Privacy Policy

Company Details

  • Legal Name: Beyond Meridian Limited
  • Company Number: 17340149 (England & Wales)
  • Registered Office: 30 First Avenue, London, England, W10 4NL
  • Incorporated: 14 July 2026
  • Contact: [email protected]
  • Effective Date: July 2026

1. Scope of This Policy

This Privacy Policy describes how Beyond Meridian Limited (“Beyond Meridian”, “we”, “us”) handles personal data when you visit our website, contact us, use our charge-lookup tool, or receive our operational and administrative services. It applies to clients, to the customers of clients whose payments we administer, and to visitors of this website.

We act as a data controller for the purposes of the UK General Data Protection Regulation (UK GDPR) and the Data Protection Act 2018, and we process personal data strictly in line with those laws.

2. The Data We Hold

Depending on how you interact with us, we may process:

  • Identification details — your name, and where relevant a client or reference number
  • Contact details — email address and postal address
  • Payment-administration data — bank account identifiers (IBAN), SEPA direct debit mandate references, transaction dates, amounts, and settlement status for charges we administer
  • Correspondence — messages you send via our contact form or by email, including billing enquiries
  • Technical data — IP address, browser and device information, and basic usage logs generated when you browse this website

Searches made through our charge-lookup tool (name and IBAN) are recorded internally for compliance and audit purposes.

3. Where the Data Comes From

  • Directly from you — enquiries, contact forms, email correspondence, and lookup requests
  • From the businesses we serve, where administering their receivables requires customer payment records
  • From banks and financial partners involved in settling SEPA direct debit collections
  • Automatically, through server logs and essential cookies when you use the website

4. Why We Process It

We use personal data to:

  • Deliver receivables management, payment administration, and related operational services
  • Identify transactions when you ask about a charge that appears on your bank statement under the descriptor BEYOND MERIDIAN
  • Respond to enquiries, clarify billing questions, and process amendment or refund requests
  • Maintain accurate, auditable administrative records
  • Meet our legal and regulatory obligations and prevent fraud or misuse
  • Operate, secure, and improve this website

5. Lawful Bases

  • Performance of a contract — administering services agreed with our clients
  • Legal obligation — record keeping, accounting, and responding to lawful requests
  • Legitimate interests — running and protecting our business, resolving payment queries efficiently
  • Consent — where you have given it, for example by submitting a lookup request; you may withdraw consent at any time

6. Who We Share Data With

We share personal data only where necessary, with:

  • Banks and financial partners involved in SEPA direct debit collection and settlement
  • The client business on whose behalf a charge was administered, when resolving a query about that charge
  • Professional advisers (legal, accounting, insurance) under confidentiality obligations
  • IT and hosting providers that support our systems, under data-processing agreements
  • Public authorities where disclosure is required by law

We do not sell personal data, and we do not share it for third-party marketing.

7. Retention

We keep personal data only as long as it is needed for the purpose it was collected. Records relating to payments and financial administration are retained for at least six years after the end of the relevant financial year, as UK law requires. Website logs and general correspondence are kept for shorter, proportionate periods.

8. Security

Personal data is protected with proportionate technical and organisational measures — encrypted transmission, access restricted to those who need it, and regular review of our systems. Bank details displayed through the charge-lookup tool are partially masked.

9. International Transfers

Data is processed primarily in the United Kingdom. Because SEPA direct debit settlement involves European banking infrastructure, some payment data is necessarily exchanged with financial partners in the European Economic Area, which the UK recognises as providing adequate protection. Any other transfer outside the UK is made only with appropriate safeguards under UK GDPR.

10. Your Rights

You may ask us at any time to access, correct, erase, or restrict the personal data we hold about you, to object to processing based on legitimate interests, to receive your data in a portable format, or to withdraw consent you have previously given. Write to [email protected] and we will respond within one month.

If you are unhappy with how we handle your data, you can complain to the Information Commissioner's Office at ico.org.uk, though we would appreciate the chance to resolve the matter first.

11. Cookies

This website uses only essential cookies needed for it to function, plus limited analytics to understand aggregate usage. You can control cookies through your browser settings; blocking essential cookies may affect site functionality.

12. Updates and Contact

We may revise this policy from time to time; the effective date above will change when we do. Questions about this policy or our data practices should be sent to [email protected] or by post to Beyond Meridian Limited, 30 First Avenue, London, England, W10 4NL.