PRIVACY POLICY
Last updated: January 2026
1. DATA CONTROLLER
ByteHarborSolutions, with registered office at Østerbrogade 85, 2100 København Ø, Danmark, is the data controller responsible for the processing of personal data collected through this website and the provision of IT services. For all data protection inquiries, contact us at [email protected] or +45 50 18 63 92.
2. CATEGORIES OF DATA COLLECTED
We collect and process the following categories of personal data:
- Identity Data: Full name, company name, job title.
- Contact Data: Email address, phone number, postal address.
- Technical Data: IP address, browser type and version, operating system, device identifiers.
- Usage Data: Pages visited, session duration, click patterns, referral source.
- Communication Data: Content of messages sent via contact forms, email correspondence.
3. PURPOSE & LEGAL BASIS
Personal data is processed on the following legal bases under Article 6(1) GDPR:
- Contract Performance (Art. 6(1)(b)): To deliver requested IT services, manage client relationships, and fulfill contractual obligations.
- Legitimate Interest (Art. 6(1)(f)): To improve service quality, conduct analytics, prevent fraud, and ensure network security.
- Consent (Art. 6(1)(a)): For non-essential cookies and marketing communications, where explicit consent has been obtained.
- Legal Obligation (Art. 6(1)(c)): To comply with Danish tax, accounting, and regulatory requirements.
4. DATA RETENTION
Personal data is retained only for as long as necessary to fulfill the purposes for which it was collected. Client data is retained for the duration of the service relationship plus 5 years in accordance with Danish bookkeeping legislation. Contact form submissions are retained for 24 months. Technical logs are retained for 12 months.
5. DATA SHARING & TRANSFERS
We may share personal data with:
- Sub-processors engaged in service delivery (cloud infrastructure providers, monitoring tools), all bound by Data Processing Agreements.
- Legal and regulatory authorities when required by applicable law.
- Professional advisors (legal, accounting, insurance) under duty of confidentiality.
Transfers outside the EEA are conducted only with adequate safeguards under Chapter V GDPR, including Standard Contractual Clauses (SCCs) approved by the European Commission.
6. YOUR RIGHTS UNDER GDPR
Under the General Data Protection Regulation, you have the right to:
- Access (Art. 15): Request a copy of your personal data.
- Rectification (Art. 16): Request correction of inaccurate data.
- Erasure (Art. 17): Request deletion of your data ("right to be forgotten").
- Restriction (Art. 18): Request limitation of processing.
- Portability (Art. 20): Receive your data in a structured, machine-readable format.
- Objection (Art. 21): Object to processing based on legitimate interest.
- Withdraw Consent (Art. 7(3)): Withdraw consent at any time without affecting prior lawful processing.
To exercise these rights, contact [email protected]. You may also lodge a complaint with Datatilsynet (Danish Data Protection Agency) at datatilsynet.dk.
7. SECURITY MEASURES
ByteHarborSolutions implements appropriate technical and organizational measures under Art. 32 GDPR, including encryption in transit (TLS 1.3), access controls, regular security audits, and employee data protection training. All infrastructure is hosted within the European Economic Area.