Legal
Privacy Statement
This page explains what personal data we process, why we process it, which parties may receive it, and how you can exercise your rights under the GDPR.
In short
- We only collect personal data when you share it with us (for example via forms or email).
- We do not sell personal data.
- Analytics and marketing cookies are only used after consent, if enabled.
Contents
Contact details
If you have questions about this privacy statement or want to exercise your rights, contact us:
Personal data we process
We process personal data when you contact us, request information, schedule a meeting, or use our website.
- Name (first and last name)
- Email address
- Any information you include in a message or form submission
- Technical data needed to run and secure the website (for example IP address in server logs)
Special categories of data
We do not intentionally process special categories of personal data (such as health data). Please avoid sharing such information with us.
Legal bases for processing
Under the GDPR, we process personal data only when we have a valid legal basis.
Consent
When you accept optional cookies (analytics or marketing) or explicitly subscribe to communications.
Legitimate interest
To respond to your request and to keep the website secure and reliable.
Contractual necessity
To perform an agreement with you or take steps requested by you before entering into an agreement.
Automated decision-making
We do not make decisions that have legal or similarly significant effects on individuals based solely on automated processing.
Retention periods
We keep personal data only as long as necessary for the purpose it was collected for, unless we must retain it longer by law.
To follow up on requests and maintain commercial correspondence history.
To deliver services, handle support, and meet legal obligations.
Security monitoring and incident investigation.
Your GDPR rights
You can exercise the following rights, depending on the situation:
- Access: request a copy of your personal data.
- Rectification: correct inaccurate or incomplete data.
- Erasure: request deletion where applicable.
- Restriction: request restricted processing in certain cases.
- Objection: object to processing based on legitimate interest.
- Data portability: receive your data in a structured, commonly used format.
- Withdraw consent: withdraw consent at any time where processing is based on consent.
Complaints
You can also file a complaint with the supervisory authority: Dutch Data Protection Authority (Autoriteit Persoonsgegevens).
Security and incidents
Security
We apply appropriate technical and organizational measures to protect personal data against loss, misuse, unauthorized access, and disclosure. If you suspect misuse or a security issue, contact us via the email address above.
Data breach notification
If a personal data breach creates a risk to your rights and freedoms, we will notify the relevant supervisory authority and affected individuals when required under the GDPR.