PRIVACY POLICY PRIMNI
This Privacy Policy describes how Amslin, trading under the name Primni (“Primni”, “we”, “us” or “our”), Chamber of Commerce number 67909361, collects, uses, discloses, and protects personal data when you visit our website or use our SaaS platform for marketplace insights (“Service”).
We respect your privacy and are committed to protecting your personal data. This policy has been drawn up in accordance with the General Data Protection Regulation (GDPR).
- Who are we?
Primni is a SaaS platform that provides companies with insights into online marketplaces. In most cases, we act as a data controller for the personal data we collect from you as a user of our Service. When you process personal data of your own customers or employees through our Service, we act as a data processor. In that case, we will enter into a separate data processing agreement with you. - What personal data do we collect and why?
We collect various types of personal data for various purposes to provide and improve our Service to you.
2.1. Data you provide directly to us:
- Account data: When you create an account for the Service, we collect your name, email address, company name, telephone number, and contact person.
- Purposes: For creating and managing your account, providing the Service, communicating with you about the Service, billing, and customer service.
- Legal basis: Performance of the agreement with you.
- Payment data: If you take out a paid subscription, we collect payment data such as credit card information or bank account number. This data is processed by an external, certified Payment Service Provider (PSP) and is not directly stored by Primni.
- Purposes: For processing payments and invoicing our services.
- Legal basis: Performance of the agreement with you.
- Communication data: When you contact us (e.g., via email, chat, phone), we collect the content of your communication and your contact details.
- Purposes: For answering your questions, providing support, and improving our customer service.
- Legal basis: Legitimate interest (effective communication and service) or performance of the agreement.
2.2. Data collected automatically when you use the Service: - Usage data: We collect information about how you use the Service, such as the functionalities you visit, the frequency and duration of your use, and any error messages.
- Purposes: For analyzing and improving the performance and functionality of the Service, detecting and resolving technical problems, and optimizing the user experience.
- Legal basis: Legitimate interest (improvement of the Service).
- Technical data: We collect technical information about your device and browser, such as IP address, browser type, operating system, unique device identifier, and time zone settings.
- Purposes: For security purposes, diagnosing server problems, understanding geographical usage patterns, and ensuring the compatibility of the Service.
- Legal basis: Legitimate interest (security and technical optimization).
- Cookies and similar technologies: We use cookies and similar technologies to remember your preferences, maintain your login session, analyze the use of the Service, and for marketing purposes. For more information, see our Cookie Policy
- Purposes: Functional, analytical, and marketing purposes.
- Legal basis: Consent (if required) or legitimate interest (functional and analytical cookies).
2.3. Data processed via the Service (if applicable for your customers/employees): - Please note: Primni is a platform for marketplace insights. The primary focus is on analyzing market data. However, if you (as our customer) enter or generate personal data of third parties (e.g., customers, employees) via our functionalities, Primni acts as a processor. In that case, the agreements in the Data Processing Agreement that you must conclude with us apply. This data falls under your responsibility as a data controller.
- How long do we retain your personal data?
We do not retain your personal data longer than is necessary for the purposes for which it was collected, or as long as we are legally obliged to retain it.
- We retain account data as long as your account is active and for a reasonable period thereafter (e.g., for financial administration or to comply with legal obligations).
- We retain communication data for as long as necessary to handle your request or for the duration of the relevant contractual relationship.
- Data collected via cookies and technical data are retained according to the terms set out in our Cookie Policy or as long as functionally necessary.
After the retention period, we will securely delete or anonymize your personal data.
- With whom do we share your personal data?
We only share your personal data with third parties in the following cases:
- Service providers: We work with external service providers who help us deliver the Service (e.g., hosting providers, Payment Service Providers, email providers, analytics services). These service providers may only process your data on our behalf and in accordance with our instructions. We conclude data processing agreements with these parties.
- Legal obligations: We may disclose your personal data if we are legally obliged to do so, for example, in the context of a court order or a request from law enforcement authorities.
- Business transfer: In the event of a merger, acquisition, sale of assets, or bankruptcy, your personal data may be transferred to the third party involved. We will inform you if this is the case.
- With your consent: We may share your data with other third parties if you have given us explicit consent to do so.
We do not sell or rent your personal data to third parties for their marketing purposes.
- Transfer of personal data outside the EEA
Personal data may be transferred to parties outside the European Economic Area (EEA) if our service providers are located there. When this is the case, we ensure that appropriate safeguards are in place to guarantee the protection of your personal data, such as:
- Concluding the Standard Contractual Clauses (SCCs) approved by the European Commission.
- Complying with the EU-US Data Privacy Framework (if applicable).
- Guaranteeing an adequacy decision from the European Commission for the country concerned.
- Security of your personal data
We take the protection of your data seriously and have taken appropriate technical and organizational measures to prevent misuse, loss, unauthorized access, unwanted disclosure, and unauthorized modification. These measures include, but are not limited to:
- Encryption of data during transmission (SSL/TLS).
- Access control to systems where personal data is processed.
- Regular security audits and penetration tests.
- Physical security of our data centers.
- A data breach policy.
- Your rights
You have the following rights regarding your personal data:
- Right of access: You have the right to request which personal data we process about you.
- Right to rectification: You have the right to have inaccurate or incomplete personal data corrected.
- Right to erasure (right to be forgotten): You can ask us to delete your personal data unless we have a legal ground to retain it.
- Right to restriction of processing: You can ask us to restrict the processing of your personal data in certain circumstances.
- Right to data portability: You have the right to receive the personal data you have provided to us in a structured, commonly used, and machine-readable format, and to transfer it to another party.
- Right to object: You have the right to object to the processing of your personal data, particularly to processing for direct marketing purposes.
- Right to withdraw consent: If the processing is based on your consent, you have the right to withdraw this consent at any time. Withdrawal of consent does not have retroactive effect.
- Right to lodge a complaint: You have the right to lodge a complaint with the Dutch Data Protection Authority (AP) if you believe that we are not complying with privacy legislation.
To exercise your rights, please contact us using the contact details at the bottom of this policy. We will respond to your request as soon as possible, and at the latest within one month.
- Changes to this Privacy Policy
We reserve the right to change this Privacy Policy from time to time. Changes will take effect as soon as they are posted on this page. We will update the “Last updated” date at the top of this policy. For material changes, we will try to inform you (e.g., via email or a notification on the Service). We advise you to regularly consult this Privacy Policy for the most recent information about our privacy policy.