Privacy Policy

SecureComply GmbH, based in Männedorf (hereinafter “we” or “us”), operates this website. The protection of your personal data is very important to us. In this Privacy Policy, we provide you with transparent and clear information about what data we collect through our website and how we handle it.

We comply with the applicable provisions of the Swiss Data Protection Act (DSG) and, where applicable, the European General Data Protection Regulation (GDPR).

1. Definitions

What is personal data?

Personal data (also referred to as “personal information”) is any information relating to an identified or identifiable natural person. This includes, for example, name, address, email address, phone number, and IP address.

What does the processing of personal data mean?

"Processing" (synonymous with the term "handling") refers to any operation or set of operations performed on personal data, regardless of the means or methods used, including, in particular, the collection, storage, retention, use, alteration, disclosure, archiving, erasure, or destruction of personal data.

2. Contact

If you have any questions or concerns regarding the protection of your data, please feel free to contact us at any time:

SecureComply GmbH
Stefan Hungerbühler
Islerenweg 5A
8708 Männedorf

Stefan.Hungerbuehler@securecomply.ch
Tel. +41 79 746 35 88

3. Data Security

We will store your data securely and take all reasonable measures to protect it from loss, unauthorized access, misuse, or alteration.

Our business partners and employees who have access to your data are required to comply with data protection regulations. In some cases, as part of data processing on our behalf, we may need to forward your inquiries to our affiliated companies. Even in these cases, your data will be treated confidentially.

On our website, we use SSL (Secure Socket Layer) in conjunction with the highest level of encryption supported by your browser. We continuously update our security measures in line with technological advancements.

4. Data Subject Rights

4.1 Right of Access

You may request information about the data we have stored about you at any time (Art. 15 GDPR or Art. 25 DSG). Please send your request for information, along with credible proof of identity, to the contact address listed above.

The information will be provided in writing or in another form, including electronically if applicable. As a rule, this service is provided free of charge. Your request will be processed within the statutory 30-day timeframe.

4.2 Deletion and Correction

You have the right at any time to request the erasure, rectification, or completion of your data (Articles 16–17 of the GDPR and Article 32 of the DSG), provided that there are no legal obligations to retain the data or any legal grounds for processing that preclude such a request.

Please note that exercising your rights may conflict with contractual agreements and could have corresponding effects on the performance of the contract (e.g., early termination of the contract or financial consequences).

4.3 Restriction of processing

You have the right to request that processing be restricted (Art. 18 GDPR or Art. 32(3) DSG) if you dispute the accuracy of the data, the processing is unlawful, the data is no longer needed, or you have objected to the processing.

4.4 Right to Data Disclosure and Portability

You have the right to receive your data in a commonly used, structured, and machine-readable format or (if technically feasible) to have it transmitted to a third party (Art. 20 GDPR).

4.5 Right to Object

You have the right to object at any time to the processing of your personal data on grounds relating to your particular situation (Art. 21 GDPR or Art. 32(2) DSG). This right also applies to processing carried out for the purposes of direct marketing.

4.6 Withdrawal of Consent

If you have given us your consent to process your personal data for specific purposes, you may withdraw this consent at any time with future effect (Art. 7(3) GDPR or Art. 6(6) DSG). Data processing that has already taken place is not affected by the withdrawal and remains valid.

4.7 Legal Remedies

If you are affected by the processing of personal data, you have the right to seek legal redress or to file a complaint with the competent supervisory authority (Art. 77 GDPR or Art. 49 FADP). The competent supervisory authority in Switzerland is the Federal Data Protection and Information Commissioner (FDPIC).

5. Data Processing in General

What data do we process, and where do we get it from?

We primarily process personal data that you provide to us or that we collect while operating our website. This may include the following categories:

  • Personal master data (name, address, etc.)
  • Contact information (email address, phone number, etc.)
  • Online identifiers (cookie identifiers, IP addresses)
  • Data related to the use of the website

Under what circumstances do we process your data?

We process your data in good faith and for the purposes set out in this Privacy Policy. In doing so, we ensure that the processing is transparent and proportionate. The legal basis for this includes, in particular:

  • Your consent (Art. 6(1)(a) of the GDPR or Art. 31(1) of the DSG)
  • the performance of a contract or pre-contractual measures (Art. 6(1)(b) GDPR)
  • compliance with legal requirements (Art. 6(1)(c) of the GDPR)
  • our legitimate interests, unless your interests override them (Art. 6(1)(f) GDPR)

In what circumstances do we share your data with third parties?

We never sell your personal data to third parties or disclose it in any other way. In certain circumstances, we may need to use the services of third parties or affiliated companies and entrust them with the processing of your data (so-called “processors”). The categories of recipients are as follows:

  • IT service provider (web hosting, support, cloud services)
  • Consulting firms (legal consulting, tax services, etc.)
  • Providers of tracking and analytics services

We ensure that these third parties comply with data protection requirements and treat your personal data confidentially. We have entered into appropriate data processing agreements with these service providers. In certain circumstances, we may also be required to disclose your personal data to government authorities.

How long do we retain your data?

We retain personal data only for as long as is necessary to fulfill the specific purposes for which the data was collected.

  • Log file data is typically stored for 7–14 days.
  • Data from contact and download forms is stored for as long as necessary to process your request or fulfill contractual obligations, or until you withdraw your consent.

We retain contract data for a longer period because we are required to do so by law. In particular, we must retain business correspondence, signed contracts, and accounting documents for up to 10 years.

6. Specific Data Processing Activities

6.1 Hosting the Website and Creating Log Files

What data do we process?

When you visit our website, data is automatically collected that your browser transmits to our hosting provider, Webflow. Specifically, the following data is processed:

  • IP address of the accessing computer
  • Date and time of access
  • Name and URL of the retrieved file
  • Website from which the access originated (referrer URL)
  • The browser you are using and, if applicable, your computer's operating system
  • Name of the Internet service provider

For what purpose do we process the data?

We process log files to ensure the proper functioning of the website and to safeguard the security of our IT systems. The legal basis for this is our legitimate interest pursuant to Article 6(1)(f) of the GDPR.

Who do we share the data with?

The disclosure of data is governed by our general provisions on data disclosure (see Section 5).

How can you prevent data processing?

The storage of log files is essential for the operation of the website. Therefore, you have no option to object to this unless you do not visit our website.

6.2 Contact Forms

What data do we process?

If you submit inquiries to us via the contact forms on our website, we will store the information you provide in the form, including the contact details you enter there. Required fields are generally marked with an asterisk (*).

For what purpose do we process the data?

The purpose depends on the nature of the contact. The most common purposes are communication, providing feedback, and processing business inquiries. The legal basis is your consent (Art. 6(1)(a) GDPR) or the initiation of a contractual relationship (Art. 6(1)(b) GDPR).

How can you prevent data processing?

If you contact us, data processing cannot be avoided. Therefore, you must refrain from contacting us if you do not want your data to be processed.

6.3 White Paper Download Forms

What data do we process?

To download a white paper, we ask that you provide certain personal information (e.g., name, email address, company) in a form.

For what purpose do we process the data?

We use this data to provide you with the white paper and, if applicable, to inform you about similar offers or services. The legal basis for this is your consent (Art. 6(1)(a) GDPR). You may withdraw this consent at any time with future effect.

How can you prevent data processing?

The data processing described here only takes place if you download a white paper. If you do not fill out a form, your data will not be processed.

6.4 Cookies

What data do we process?

Our website uses cookies. Cookies are small text files that your browser automatically creates and stores on your device (laptop, tablet, smartphone, etc.) when you visit our site. Cookies do not cause any damage to your device and do not contain viruses or other malware.

For what purpose do we process the data?

We use cookies to:

  • to make it easier to use our website and to make it more user-friendly (session cookies). These are automatically deleted when you leave our site.
  • to collect statistical data on the use of our website and analyze it for the purpose of optimizing our services (performance and analytics cookies).

The legal basis for processing personal data using technically necessary cookies is our legitimate interest (Art. 6(1)(f) GDPR). For analytics and marketing cookies, we obtain your consent (Art. 6(1)(a) GDPR).

How can you prevent data processing?

Cookies are stored on your computer. You can delete them completely or disable or restrict their use by changing your browser settings. If you disable cookies, you may not be able to use all features of the website to their full extent.

You can find instructions for the most common browsers here:

6.5 Google Analytics

What data do we process?

We use Google Analytics on our website, a service provided by Google Ireland Ltd., Google Building Gordon House, Barrow St, Dublin 4, Ireland, with its headquarters at Google LLC, 1600 Amphitheatre Parkway, Mountain View, CA 94043, USA (collectively “Google”). Google Analytics is an analytics service used to collect information about website usage. In particular, the following information may be collected:

  • IP address (anonymized by default in Google Analytics 4)
  • Technical information such as browser, operating system, or screen resolution
  • Interactions on the website
  • Length of visit
  • Time and date of the website visit
  • Referrer URL

For what purpose do we process the data?

The IP address is used to determine your approximate location. The technical information is processed so that the website can be displayed properly on any device. Interactions, duration, time, and date are collected so that we can use this data to evaluate and optimize our marketing campaigns and offers. The legal basis is our legitimate interest in the analysis, optimization, and economic operation of our online offering (Art. 6(1)(f) GDPR).

Who do we share the data with?

Since Google is a multinational company, your data may be transferred by Google to locations around the world. In particular, it may be transferred to the United States, where Google’s headquarters are located.

How can you prevent data processing?

You can prevent cookies from being stored by adjusting your browser settings accordingly. You can also prevent Google from collecting the data generated by the cookie by downloading and installing the browser plugin available at the following link: Google Analytics Opt-out.

6.6 Webflow

Our website is hosted on the Webflow, Inc. platform (San Francisco, USA). Webflow is a professional web design platform that also provides hosting services. When you use our website, your data is processed on Webflow’s servers.

Webflow ensures that all websites created on the platform include the ability to integrate privacy-compliant features such as cookie banners and secure data transfers.

7. Transfer of Data Abroad

In certain circumstances, your personal data may be transferred to companies abroad as part of order processing. Please note that Webflow (hosting) and Google (Google Analytics) are companies based in the United States. Your data may therefore be transferred to the United States.

If the level of data protection does not match that of Switzerland, we conduct a preliminary risk assessment and ensure through contractual provisions that the same level of protection as in Switzerland is guaranteed. This is achieved by:

  • the adoption of the European Commission's standard contractual clauses,
  • the certification of service providers under the EU-US Data Privacy Framework,
  • and/or obtaining your consent.

8. Changes to this Privacy Policy

We may change this Privacy Policy at any time. Any changes will be posted on our website. You will not be notified separately.

As of March 30, 2026

SecureComply GmbH

‍Islerenweg 5a
8708 Männedorf

info@securecomply.ch
+41 79 746 35 88

© SecureComply, LLC