Privacy Policy
Last updated: April 2026
This Privacy Policy explains how Steven Mather, practising through Nexa Law, collects, uses, and protects your personal data. We're committed to protecting your privacy and complying with UK data protection law, including the UK General Data Protection Regulation (GDPR).
1. Who We Are
Data Controller: Steven Mather, practising as a solicitor through Nexa Law
Contact: steven@stevenmather.co.uk or 0116 366 7900
Regulatory Body: Solicitors Regulation Authority (SRA)
2. What Data We Collect
We collect personal data when you contact us, use our website, or engage our services. This includes:
Contact Information
Your name, email address, phone number, and postal address when you contact us or complete a contact form.
Employment & Legal Data
Details about your employment situation, settlement agreement, and any documents you share with us for review.
Communication Data
Records of our correspondence, including emails and phone calls, where relevant to providing legal advice.
Technical Data
IP address, browser type, pages visited, and other website analytics, collected via cookies and standard analytics tools.
3. Legal Basis for Processing
We process your data on the following legal bases:
- •Contract: Processing is necessary to provide you with legal services and advice on your settlement agreement.
- •Legal Obligation: We're required to keep records for SRA compliance and professional indemnity insurance purposes.
- •Legitimate Interests: We use your data to operate our website, respond to enquiries, and improve our service.
4. How We Use Your Data
- ✓To provide settlement agreement advice and legal services
- ✓To respond to your enquiries and contact requests
- ✓To maintain and comply with legal and professional obligations
- ✓To protect our legal interests and manage complaints
- ✓To improve our website and service delivery
5. Data Storage & Security
Your personal data is stored securely using industry-standard encryption and security measures. Access to your data is restricted to those who need it to provide legal services or fulfill our legal obligations.
We hold client files for a minimum of 6 years after the end of the engagement, as required by SRA rules. After this period, data is securely deleted or anonymised.
Website data and analytics are retained for up to 12 months unless a longer period is required for legal compliance.
6. Who Has Access to Your Data
Your personal data may be shared with:
- •Our IT service providers (secure cloud storage, email, website hosting)
- •Our professional indemnity insurance provider, where necessary for claims purposes
- •The SRA, where required for regulatory oversight
- •Courts, tribunals, or authorities, where required by law
We do not sell, lease, or trade your personal data to third parties for marketing purposes.
7. Your Data Rights
Under GDPR, you have the right to:
- •Access: Request a copy of your personal data at any time
- •Correction: Ask us to correct inaccurate data
- •Erasure: Request deletion of your data (subject to legal obligations to retain it)
- •Restrict Processing: Ask us to limit how we use your data
- •Data Portability: Receive your data in a structured format
- •Object: Object to certain processing of your data
To exercise any of these rights, contact us at steven@stevenmather.co.uk or 0116 366 7900. We'll respond to data requests within 30 days.
8. Cookies
Our website uses cookies to enhance your experience and gather anonymous analytics data. Cookies include:
- •Essential cookies: Required for the website to function (e.g., security tokens)
- •Analytics cookies: Help us understand how you use the site (e.g., Google Analytics)
You can control cookies via your browser settings. Disabling non-essential cookies won't affect your access to the site.
9. Links to Third-Party Websites
Our website may contain links to third-party websites. We're not responsible for their privacy practices. Always review their privacy policies before sharing your data with them.
10. Contact Us About Your Data
If you have questions about how we handle your data, or wish to exercise your rights, contact:
Steven Mather
steven@stevenmather.co.uk
0116 366 7900
If you believe we've mishandled your data, you can lodge a complaint with the Information Commissioner's Office (ICO) at ico.org.uk.
11. Changes to This Policy
We may update this Privacy Policy to reflect changes in our practices or legal requirements. We'll notify you of significant changes by posting the updated policy on our website. Your continued use of the site after changes constitute your acceptance of the updated policy.