Legal

Data Management Policy.

How SYNE Ratings handles the data that underpins every rating - from a rated entity's disclosure submission through to storage, retention and eventual deletion.

Effective 9 July 2026 Last updated 9 July 2026 Applies to all SYNE group entities
Governs data behind every SYNE Rating
ISO 27001-aligned security controls
Reviewed at least annually
Deletion requests honoured within 90 days
01 · Introduction

How SYNE Ratings handles data, end to end.

02 · Data Ownership

Who owns what moves through our systems.

03 · Data Collection & Usage

What we collect it for.

04 · Data Security

How it's protected while it's with us.

05 · Data Retention & Deletion

How long we keep it, and how it's disposed of.

06 · Data Sharing & Disclosure

When data leaves SYNE's systems.

07 · Data Privacy

Where this meets personal information.

08 · Training & Awareness

Keeping our own people accountable.

09 · Compliance Monitoring & Enforcement

How we check this policy is actually followed.

10 · Policy Review & Updates

How this policy changes over time.

Have a question about how your data is handled?

Our data protection team can walk through retention timelines, sub-processors, or a specific deletion request.