Introduction
As a controller, Wareham Financial Services @JLM (“Wareham Financial Services", “we”, “us”, “our”) comply with all applicable data protection and privacy legislation in force from time to time including the UK General Data Protection Regulation, the EU General Data Protection Regulation (where applicable) (together the “GDPR”) and the Data Protection Act 2018. (“DPA18”). This privacy notice details how we process your personal data.
Wareham Financial Services @JLM may appoint professional Registered Individuals to provide our services to you. In this instance, whilst entered into the business relationship, the Registered Individual is joint controller of the personal data they process.
Under the UK GDPR we are required to notify the Information Commissioner’s Office (“ICO”) about our use of personal data. You can view our current data notification on the ICO website.
We place great importance on ensuring the quality, confidentiality, integrity and availability of the data we hold and in meeting our data protection obligations when processing personal data. Wareham Financial Services @JLM is committed to protecting the security of your personal data. We use a variety of technical and organisational measures to help protect your personal data from unauthorised access, use or disclosure.
We collect personal data about a range of people:
If you are applying, or have applied to work with us, please refer to our job applicant privacy notice
What personal information we process
We process personal information to act as an intermediary for financial transactions; typically to advise and apply for property finance such as mortgages or similar for clients. The same applies to advising and arranging insurance policies.
To understand how any personal information other than that provided to us through this website is processed you will need to refer to any personal communications you receive from us, check any privacy documents provided when entering into a contract with us or contact us to ask about your personal circumstances.
Enquirers
When you contact us, we ask for some personal information. You are under no obligation to provide this information to us. Providing that information, enables us to give you the right information or services that you ask for, or notify you of further information required to facilitate that service.
If we would like to use your information for any other purpose than those stated above, we will contact you.
As a minimum, we will hold your name and phone number for the purposes specified above. If you do not become a client of ours, your information will be erased in line with our retention policy.
Visitors to Our Website
Our website uses cookies, which is a string of information that a website stores on a visitor’s computer, and that the visitor’s browser provides to the website each time the visitor returns.
We use cookies to help identify and track visitors and their website access preferences. Website visitors can control which types of cookies are placed on their browser by adjusting the cookie settings in the cookie controller button, which can be found at the bottom left-hand corner of our website.
The Virtual Adviser
We use your details to produce a mortgage illustration and confirm where the illustration should be sent. Mortgage products are sourced through a variety of sources, including Twenty7Tec. Upon receipt of your illustration, you will be able to choose if you want to be contacted by one of our advisers. Our advisers will discuss your eligibility for the illustrated mortgage product and confirm how you would like to proceed. We will not contact you without your prior consent.
Our Clients Views
We want to receive your views on the service you received from us and any improvements you think are necessary. We use Trustpilot® as a data processor to collect feedback from our customers on our behalf and to support our marketing activities. If this is something you agree to help us with, we will share your name and email address with Trustpilot® in order to generate a review invite and confirm you are a verified customer of Wareham Financial Services @JLM.
Regulatory Functions and Reporting
As a regulated firm we are required to retain and provide information to the FCA regularly. We must also share regulatory data with our principal firm, JLM Mortgage Network. Most of the information is provided to us under the Financial Services and Markets Act 2000. JLM Protection Ltd may contact you regarding your protection arrangements as part of the Groups regulatory functions.
Purposes & bases for using your personal data
We will only use your personal data when the law allows us to. Most commonly, we will use your personal information in the following purposes and lawful bases:
PurposeLawful Basis for Processing: Carrying out due diligence on our clients and performing risk assessments. This includes carrying out standard due diligence checks in relation to financial affordability for the mortgage and insurance products we recommend to you. Necessary to comply with legal obligations to which we are subject.
Our legitimate business interest to assess the risk associated with providing you with our services.
When processing sensitive personal data, we do so with your explicit consent.
Legal and regulatory compliance and compliance with law enforcement requests. This includes biometric facial recognition to confirm your identity, other checks and monitoring transactions for the purpose of preventing and detecting crime and to comply with laws relating to money laundering, and fraud. Also, sharing information on suspected financial crimes, fraud and threats with law enforcement and regulatory bodies.Necessary to comply with legal obligations to which we are subject.
When processing sensitive personal data, we do so with your explicit consent.
Providing our mortgage and insurance advisory and administration services to you, covering any services we provide to you as a private client.Necessary for the performance of the contract agreement to which you are a party.Maintaining a record of and monitoring clients that consider themselves to be or are considered to be vulnerable.
Necessary to comply with FCA guidance on the fair treatment of vulnerable customers. When processing sensitive personal data, we do so with your explicit consent which can be withdrawn at any time.Managing and developing our relationship with you. This includes providing account management, contacting you for feedback and inviting you to participate in customer satisfaction surveys.
Our legitimate business interest to develop our relationship, collect your feedback, assess your level of client satisfaction and to improve our services.
Sending you marketing information about our similar products and services, our news and events. This includes sending you our news emails, information about our additional services, related information which may be of interest to you and to invite you to our events.
Our legitimate business interest to send you marketing and promotional materials from time to time. This includes providing no obligation loan protection insurance quotes.
Where we have obtained your consent to send marketing, we rely on such consent as the legal basis. You can tell us to stop sending you marketing information at any time by objecting or withdrawing your consent. You can do so by contacting us at compliance@jlmms.co.uk or by using the unsubscribe link in any marketing email you receive from us.
Internal management, administrative and organisational purposes. This includes maintaining internal records and carrying out other business administration tasks.Our legitimate business interest to process your personal data to manage and improve our business processes.Statistics and other data analysis. This includes creating forecasts and business plans, improving our services and developing new services.Our legitimate business interest to process your personal data to develop and improve our business through aggregated and anonymised reporting and analysis.Sharing data with entities in our group. This includes sharing client records and results of due diligence with our Appointed Representative entities.Our legitimate business interest to identify and develop shared clients across our network of advisers and to utilise existing due diligence and risk assessment information when providing our clients with services.Sharing data with third parties, including those who process personal data on our behalf.Our legitimate business interest to share your data with trusted third parties who provide us with services relevant to our provision of services to you, including professional advisers, screening service providers and IT service providers.
Sharing your information
We sometimes need to share the personal information with other organisations. Where this is necessary, we are required to comply with all aspects of the UK GDPR.
What follows is a description of the types of organisations we may need to share some of the personal information we process with for one or more reasons. Where a joint application is made, we are not able to restrict data sharing between applicants.
Wareham Financial Services @JLM will only collect the information needed so that it can provide you with marketing and consulting services. We do not sell or broker your personal data.
Where Necessary or Legally Required We Share Information With:
Further Disclosure
We may, on occasion, pass your personal information to third parties exclusively to process work on our behalf; for example, a data destruction provider. We always require these parties to agree to process this information based on our instructions and requirements consistent with this Privacy Notice and UK GDPR.
How we protect your data
Wareham Financial Services @JLM takes the security of your data seriously. We have internal policies and controls in place to ensure that your data is not lost, accidentally destroyed, misused, or disclosed, and is not accessed except by our employees in the performance of their duties.
Where we engage third parties to process personal data on our behalf, they do so on the basis of written instructions, are under a duty of confidentiality and are obliged to implement appropriate technical and organisational measures to ensure the security of the data.
Registered Individuals
When in a business relationship with Wareham Financial Services @JLM, both the Registered Individual and Wareham Financial Services @JLM are joint controllers of the client data they process. During this time, all data subject rights requests or incidents affecting personal data security will be dealt with jointly by both Wareham Financial Services @JLM and the Registered Individual, in a transparent manner, with respective responsibilities for data protection compliance obligations agreed upon at the time of the request/incident.
Upon termination of our business relationship, both Wareham Financial Services @JLMand Registered Individuals as independent controllers assume full control of client personal data and the subsequent data protection compliance obligations.
How long we retain personal data
To ensure we meet our legal, regulatory and customer obligations, we will retain client information for the following periods.
International transfers
It is unlikely that we will ever share your personal data outside the UK or European Economic Area. (the EU member states plus Norway, Iceland and Liechtenstein) (“EEA”). If, however, it becomes necessary for the purposes of providing our services to you, we will only share it with organisations in countries benefiting from a European Commission (“EC”) adequacy decision, approved by the UK ICO, or on the basis of EC Standard Contractual Clauses, approved by the UK ICO, which when reinforced with additional supplementary measures, contractually oblige the recipient to process and protect your personal data to the standard expected within the UK and EEA.
Your rights
At any point whilst Wareham Financial Services @JLM is in possession of, or processing your personal data, all data subjects have the following rights:
You have the right to access your personal information (subject to certain exemptions). If you wish to find out what information we hold that relates to you, please contact us; details below.
You will not have to pay a fee to access your personal data (or to exercise any of the other rights). However, we may charge a reasonable fee if your request for access is clearly unfounded or excessive. Alternatively, we may refuse to comply with the request in such circumstances.
In the event we refuse your request under rights of access, we will provide you with a reason why, which you have the right to legally challenge.
Automated decision making
We do not make client or supplier decisions based solely on automated decision making.
Contact us
This privacy notice does not provide exhaustive detail of all aspects of the collection and use of personal information. However, we are happy to provide any additional information or explanation needed. If you have any questions or complaints please contact us at:
Data Protection Manager,
JLM Mortgage Services Ltd,
21a Churchyard,
Hitchin
Hertfordshire
SG5 1HP
Copyright © 2025 Wareham Financial Services - All Rights Reserved.
YOUR HOME MAY BE REPOSSESSED IF YOU DO NOT KEEP UP REPAYMENTS ON YOUR MORTGAGE OR ANY LOANS SECURED AGAINST IT.
Wareham Financial Services @JLM is a trading style of JLM Mortgage Brokers Ltd, which is an Appointed Representative of JLM Mortgage Network Ltd. authorised and regulated by the Financial Conduct Authority. Registration Numbers 953547 and 300629. Further details may be found by visiting www.fca.org.uk
Registered office: 21a Churchyard, Hitchin, Hertfordshire, England, SG5 1HP. Registered company number 13397178. Registered in England & Wales