Legal
Privacy Policy
Last updated: 25 August 2026
Demoura Lawson Consulting ("DMLC", "we", "us", "our") operates the SDIA™ platform, the Enterprise Management Portal (EMP™), and the Behavioural Intelligence module (together, the "Platform"). This Privacy Policy explains how we collect, use, store, and protect personal information when you use our Platform and services.
1. Information We Collect
Account & registration data: name, email, role, organisation, job title, employment type, and language preference.
Assessment data: SDIA™ responses, scenario answers, scores, and generated reports.
Organisational data: business unit, division, department, site, and hierarchy details.
Behavioural observation data: observer identity (retained for competence verification and audit), observed behaviours, Easy / Difficult / Impossible classifications, barriers, and follow-up actions — recorded on a No Name / No Blame basis. Observed individuals are never identified.
Safety climate survey data: anonymous responses and demographic metadata.
Payment data: processed by our payment provider; we do not store full card numbers.
Technical data: IP address, device, browser, and usage analytics.
2. How We Use Your Information
To deliver assessments, reports, coaching, and behavioural intelligence.
To administer your organisation's safety and leadership programmes.
To fulfil subscriptions, process payments, and manage licences.
To improve our methodology, content, and platform performance.
To meet legal, regulatory, and audit obligations.
To communicate with you about your account and relevant services.
3. Lawful Basis for Processing
We process personal data on the bases of contract performance, legitimate interests (operating and improving the Platform), legal compliance, and consent where applicable.
4. Behavioural Observations — No Name / No Blame
In line with the Lead to Inspire™ methodology, behavioural observations identify the observer only (for competence verification and audit) and never identify the persons observed. No observed-person identifiers are collected or stored.
6. International Data Transfers
Your data may be processed outside your country of residence. We apply appropriate safeguards, including standard contractual clauses and equivalent measures, for such transfers.
7. Data Retention
We retain personal data only as long as necessary for the purposes set out above, to meet legal obligations, or to resolve disputes. Assessment records and reports are typically retained for the duration of your subscription plus a defined archival period. Anonymous and aggregated data may be retained indefinitely.
8. Data Security
We use encryption, access controls, role-based permissions, and regular reviews to protect your data. Access is limited to authorised personnel on a need-to-know basis.
10. Your Rights
Subject to applicable law, you may request access to, correction of, deletion of, or restriction of processing of your personal data, and you may object to processing or request data portability. To exercise these rights, contact info@demoura-lawson.com.
11. Children's Privacy
The Platform is intended for professional and organisational use and is not directed at children under 16.
12. Changes to This Policy
We may update this policy from time to time. Material changes will be communicated through the Platform or by email.
13. Contact Us
For privacy enquiries, contact info@demoura-lawson.com. Full contact details are available on our Contact page.
