← home

privacy & cookies

We're a small marketing agency, not an ad network. We collect very little, we don't sell or share anything, and we don't run advertising cookies. This page says plainly what we hold, why we're allowed to hold it, and how to make us delete it.

who we are

p.a. marketing hq is a remote marketing agency run by Patrick Angeles, serving small businesses in Canada, the UK, Australia and New Zealand. For anything on this page — access, deletion, complaints — email patrick@pamarketinghq.com. We're the data controller for everything described here.

cookies on this site

No analytics cookies are set until you press Accept analytics on the banner. Until then Google Analytics runs in a consent-denied mode: it reports an anonymous, cookieless signal that a page was viewed and nothing is stored on your device. If you decline, it stays that way. We don't use advertising, marketing or profiling cookies at all, and we don't run third-party trackers beyond the one analytics tag below.

cookieset bypurposelasts
_ga, _ga_* Google Analytics 4 Tells repeat visits apart so we know which pages are worth keeping. Only set if you accept. up to 2 years
pa-consent us Remembers your answer to the banner. It's browser storage, not a cookie, and it never leaves your device. until you clear it

Changed your mind either way? and choose again. Withdrawing is as easy as giving — that's the point.

what analytics actually tells us

If you accept, Google Analytics 4 gives us aggregate numbers: pages viewed, roughly where in the world visitors came from (city-level at best), which site or search sent them, and what kind of device they used. Google collects your IP address to work that out but does not store it, and we never see it. We can't identify you from any of it, and we've turned off Google's advertising features, so nothing here feeds ad targeting.

the enquiry form

If you fill in the form on our home page, we get your name, email, business name and your message, emailed straight to our inbox so we can reply. That's the whole purpose — we use it to answer you and, if we end up working together, to run the engagement. There's a hidden anti-spam field bots tend to fill in; if it's filled, we bin the submission and send nothing. The lawful basis is your consent in sending it, and taking steps at your request before a contract.

cold outreach — how we got your email

If we emailed you out of the blue, this is the part that matters. We find business contact addresses that are published publicly by the business itself — the contact page of your website, your public business listing, your social profile. We don't buy lists, we don't scrape personal inboxes, and we don't guess addresses. We keep a note of where we found it, so if you ask, we can tell you exactly which page it came from.

We hold your name, business, role, that public email address, your website, and our notes about whether you're a fit and what we've sent. Our lawful basis is legitimate interest — offering a relevant business service to a business — balanced against a hard limit on how often we contact anyone. In the UK and EU we treat this as B2B corporate contact under PECR; sole traders and partnerships get the stricter treatment.

One reply stops everything. Every email we send carries an opt-out line, and "no thanks", "unsubscribe" or "remove me" all do the same thing: we mark you opted out, stop the follow-up sequence, and never email you again. If you'd rather we delete the record outright rather than keep a do-not-contact note, say so and we will — but be aware the note is what stops you being re-added later from the same public page.

booking a call

Calls are booked through Calendly, which collects your name, email and time zone and puts the meeting in our Google Calendar with a Google Meet link. Their handling is covered by Calendly's own privacy policy. We don't record calls.

who else touches your data

We keep the supplier list short, and none of them are allowed to use your data for their own purposes:

We never sell, rent or trade your data, and we don't share it for anyone else's marketing. We'd only ever hand something over if the law actually required it.

where your data goes

The agency is run from the Philippines and our suppliers are largely US-based, so data about you may be handled outside your own country. Where UK or EU data protection law applies, those transfers rely on the standard contractual clauses our suppliers publish, plus the supplier terms we sign.

how long we keep things

your rights

Wherever you're reading this from, you can ask us for a copy of what we hold on you, ask us to correct it, ask us to delete it, or tell us to stop using it — including objecting to our cold outreach, which we'll always honour without argument. Email patrick@pamarketinghq.com and we'll deal with it within 30 days. There's no charge, and you don't have to explain why.

These rights come from the UK and EU GDPR, PIPEDA in Canada, the Privacy Act 1988 in Australia and the Privacy Act 2020 in New Zealand. We apply the same standard to everyone rather than sorting people by jurisdiction. If we've handled something badly you can complain to your own regulator — the ICO in the UK, the OPC in Canada, the OAIC in Australia, or the Privacy Commissioner in New Zealand — but please give us the chance to fix it first.

changes

If this policy changes we'll update the date at the top of the page. If a change is significant — a new supplier, a new kind of data — we'll reset the cookie banner so you get asked again rather than quietly carried over.

still want to talk?

Nothing above is a trap. If you're curious about the work, the call is free and there's no deck.

Book a call