Your information
Privacy notice
Last updated 23 July 2026
the adviser firm that invited you is the data controller for information entered in this service. Financial Snapshot provides the secure technology the firm uses to prepare for an adviser meeting.
This service is for pre-meeting discovery. It does not provide financial advice, make recommendations, or make automated decisions about you.
Information we collect
The adviser firm may enter your name and email address to send an invitation. You can then provide approximate information about your household, employment, income, spending, assets, pensions, protection and borrowing. You may skip questions and should not enter account numbers, policy numbers, passwords, identity documents or bank statements.
The service also records limited operational information needed for security and accountability, such as invitation and submission times, adviser actions, failed sign-in attempts, and a one-way protected representation of the connecting IP address. It does not use advertising trackers, behavioural analytics or social-media sign-in.
Why the information is used
The controller uses the information to invite you, let you prepare a financial snapshot, review it before a meeting, create a summary report, keep adviser notes, and protect and administer the service. The applicable legal basis is normally taking steps connected with the advisory relationship and the controller’s legitimate interests in preparing for the meeting, keeping appropriate records and securing the service. The firm’s own privacy notice may explain an additional or different basis that applies to its services.
The confirmation at the start of the journey records that you understand this use and choose to share the information with the adviser firm. It is not used to permit unrelated marketing.
Who can see it
Authorised advisers and administrators at the controller’s firm can see the information. It may also be processed by the organisations that host and support the service, and by Microsoft when the firm sends an invitation through Microsoft Graph. Those organisations act under the controller’s instructions or their applicable service terms. Information is not sold, made public or shared between adviser firms.
The controller is responsible for explaining any international transfers and the safeguards it uses. Ask the firm if you need details for its particular hosting and Microsoft 365 arrangements.
How long it is kept
The controller decides and documents the retention period according to the advisory relationship, its legal and regulatory duties, and its records policy. Invitations have an expiry date chosen by the firm. The secure client session expires after two hours of inactivity. Ask the controller for its specific retention schedule or to close an unfinished snapshot.
Your choices and rights
You can leave any financial answer blank and can stop before submitting. Depending on the legal basis and circumstances, you may have rights to receive a copy of your personal information, correct it, ask for deletion or restriction, object to processing, or receive portable information. You can also ask how a decision about your request was reached.
Contact the controller first to exercise a right or raise a concern. You may also complain to the Information Commissioner’s Office.
Contact
Contact the adviser firm that invited you using the details in your invitation email or the firm’s main privacy notice.
Each adviser firm should supplement this service notice with its legal identity, contact details, lawful bases, retention schedule, processors and transfer arrangements. If its notice conflicts with this general description, ask the firm to clarify before entering information.