Sari la conținutul principal
Înapoi

Politica de confidențialitate

Last updated: July 19, 2026

1. Data Controller

Sertio AS (org. no. 937 286 643, Ulvenveien 123D, 0665 Oslo, Norway), operating the Sertio platform (sertio.no), is the data controller for personal data collected through this service.

Contact: martin@sertio.no

2. Personal Data We Collect

3. Purpose of Processing

4. Legal Basis

5. Sharing of Personal Data

We share personal data with:

We never sell personal data to third parties.

6. Analytics and Insights

We use PostHog (EU-based, Frankfurt) for product analytics. PostHog collects:

PostHog data is stored in the EU (Frankfurt) with a DPA (Data Processing Agreement) in place. You can withdraw consent at any time via the cookie settings.

We also use Google Analytics 4 for traffic and usage analytics. Analytics cookies are only set if you consent to statistics in the cookie banner; without consent, only anonymous, cookieless signals are sent (Google Consent Mode). Google Analytics does not store IP addresses. Data may be transferred to Google in the US under the EU-US Data Privacy Framework. Retention at Google: 14 months.

7. Customer Chat and Messaging Channels

Website chat (Crisp): The chat only loads when you open it yourself — no data is sent to Crisp during a normal visit. If you use the chat, your messages and any contact information you provide are processed by Crisp IM SAS (France, data stored in the EU, DPA in place).

WhatsApp: You can voluntarily contact us via WhatsApp. Meta (WhatsApp) then processes message data according to its own terms and privacy policies. We see your phone number and the messages you send us.

Do not share sensitive personal data (e.g. national identity numbers or health information) in chat or WhatsApp — use email if needed.

8. Retention and Deletion

9. Your Rights

You have the right to:

10. Cookies

We use necessary cookies for authentication (Supabase Auth) and for the chat feature if you open it (Crisp). Analytics cookies (Google Analytics, PostHog) and marketing cookies (Google Ads, Meta) require your consent and can be declined or withdrawn via the cookie banner.

11. Security

We use industry-standard security measures: encrypted data transfer (TLS), encrypted passwords, Row Level Security in the database, and regular security reviews.

12. Changes

We may update this privacy policy. Significant changes will be notified via email and/or in the service. Continued use after notification constitutes acceptance of the changes.