PRIVACY STATEMENT

Privacy statement

AEO Expert B.V. ("we", "us") respects your privacy and processes personal data in accordance with the General Data Protection Regulation (GDPR). This statement explains what data we collect, why, how long we retain it, and what rights you have.

§ 01

Data controller

AEO Expert B.V. is the data controller within the meaning of the GDPR. We are based in Amsterdam and registered with the Dutch Chamber of Commerce under number 91823740.

§ 02

Data we collect

We only collect data that is necessary to deliver or improve our service:

We do not collect special categories of personal data (such as health, religion, or political opinion).

§ 03

Legal basis and purpose

Each processing of personal data has a legal basis under Article 6 GDPR:

§ 04

Retention period

We do not retain personal data longer than necessary. Specifically:

§ 05

Third parties and processors

We only share personal data with carefully selected processors, under a data processing agreement:

We never sell personal data. Data is not processed outside the European Economic Area (EEA), except where explicitly mentioned and with appropriate safeguards (SCCs).

§ 06

Your rights

Under the GDPR you have several rights regarding your personal data:

Send a request to privacy@aeoexpert.nl with a copy of ID (BSN masked). We respond within 30 days. If unsatisfied, you have the right to file a complaint with the Dutch DPA (autoriteitpersoonsgegevens.nl).

§ 07

Cookies and tracking

We only use functional and anonymized statistical cookies. No third-party tracking, no ad networks.

§ 08

Security

We have appropriate technical and organizational measures to protect personal data: TLS 1.3 for all connections, AES-256 at rest, mandatory 2FA for employees, least-privilege access, and annual third-party penetration tests.

Data breaches are reported to the Dutch DPA within 72 hours where they pose a risk to data subjects.

§ 09

Changes

We may update this statement. Changes are published on this page, and for material updates we notify active customers by email. The date at the top of this page reflects the latest version.