Privacy Policy
Version: 1.0
Last Updated: May 23, 2025
Note: Only the English version of the Terms of Service is legally binding.
This Privacy Policy outlines how Kroemtech GmbH, located at Christoph Merian-Ring 11, CH-4153 Reinach/BL, Switzerland (hereinafter referred to as "Kroemtech"), collects, uses, and shares personal data when you interact with our web-based platforms and mobile applications associated with our Industrial Internet of Things (IIoT) solutions (collectively referred to as the "Service").
It explains the types of information we collect about you, the legal grounds on which we process your data, the purposes for doing so, and your rights as a data subject.
This policy complies with applicable data protection laws, including the EU General Data Protection Regulation (GDPR) and the Swiss Data Protection Act (DPA). Kroemtech adheres to the high standards set by the GDPR, which serve as our global benchmark for protecting personal information.
By using or accessing our Service, you acknowledge and accept this Privacy Policy and agree to the terms outlined in our Terms of Service.
This privacy policy apply to the following Kroemtech domains:
kroemtech.chdathascy.com
portal.dathascy.com
General Information
Introduction & Scope of This Privacy Policy
This Privacy Policy governs the way Kroemtech GmbH handles personal data collected through the following digital services:
•
The IIoT website and associated platforms;
•
Web-based services that are part of our IIoT ecosystem;
•
Mobile applications ("Apps") that function as components of our service offering;
•
Any other digital service or application that references or links directly to this Privacy Policy.
Kroemtech is committed to protecting your personal data. ("Personal data") refers to any details that relate to an identified or identifiable individual, such as your name, email address, or phone number. Whenever you provide such information, we handle it in accordance with all relevant data protection legislation, including the Swiss Federal Act on Data Protection (FADP) and the European General Data Protection Regulation (GDPR). Collectively, these are referred to in this document as the ("Data Protection Laws.")
Please note that our IIoT platforms may include links to third-party websites. These external sites are not governed by this policy and typically maintain their own privacy notices and may use cookies or other tracking methods. We encourage you to review those third-party policies directly, as Kroemtech is not responsible for their data practices.
Who is Responsible for Data Processing?
The legal entity responsible for the collection and processing of personal data under this policy ("controller" as defined by Article 4(7) of the GDPR) is:
Kroemtech GmbH
Christoph Merian-Ring 11
CH-4153 Reinach/BL
Switzerland
If you have questions, feedback, or concerns about how we manage your data, please contact under: info@kroemtech.com
What Information Does Kroemtech Collect?
Registration Information
When you express interest in learning more about our Services or register to use them, Kroemtech GmbH may ask you to provide personal contact details. This may include, but is not limited to, your email address, first name, last name, phone number, and physical address. If you choose to purchase Services, we may also request financial or billing information. This data may be shared with our payment service providers solely for the purpose of processing transactions, under a data processing agreement compliant with Art. 28 GDPR. Collectively, this is referred to as ("Customer Data").
E-Commerce Functionality
When placing orders through our website, we collect and process the personal data required to fulfill your order. Mandatory data, such as your name and address, is clearly marked; other fields are optional.
During account registration (a prerequisite for purchasing through our site), we collect:
•
Your email address
•
A password created by you
Your customer account can be deleted at any time upon request—simply email us or use the contact details listed in this policy.
When you complete a purchase, we collect additional details such as:
•
Full name
•
Company name (if applicable)
•
Contact information
•
Billing and delivery addresses
Payments by credit card are handled securely via third-party payment processors, as detailed earlier.
Your billing, payment, and order data are stored for a mandatory ten-year retention period in accordance with commercial and tax regulations, after which it is deleted—unless longer storage is legally justified or explicitly authorized by you.
Log Files
When using our Services, certain data is automatically collected and logged. These server logs may include:
•
Web requests
•
Anonymized IP addresses
•
Browser type
•
Referrer and exit pages
•
Click behavior and link interaction
•
Domain names
•
Pages viewed
•
Mobile carrier information
These logs help us monitor system health, improve performance, analyze trends, and resolve technical issues.
Device Identifiers
When accessing the Services on a mobile device, we collect your device’s unique identifier. This may include information such as device type, operating system, network provider, and—if enabled—your phone number. This data is used to optimize the service experience and address device-specific issues.
Location Data
We may collect information regarding your device’s geographic location during your interaction with our Services. This data helps enhance certain features. Location services can be disabled in your device settings; however, doing so may impact the availability of some location-dependent functions.
Cookies and Tracking Technologies
We use cookies and similar tracking tools to enhance functionality and gather usage statistics. For further information, please refer to Sections 9 and 10 of this policy. Additionally, we collect anonymized IP addresses and device information from users who visit our websites.
Categories of Individuals Affected
•
Visitors and users of our websites and digital services
•
Customers, prospective customers, and business partners
•
Other individuals engaged in communication with Kroemtech GmbH
Your Content
Uploading Content
By using the Service, you may upload or input various types of content—such as assets, values, specifications, attachments, and data structures. Collectively, this is referred to as ("Your Content"). You retain ownership of Your Content.
Use of Content
You control how your Content is shared through the settings within the Service.
Kroemtech GmbH will only access your Content when necessary for the following purposes:
•
To maintain, improve, and provide the Service.
•
To respond to a support request submitted by you.
•
If we have reason to believe, or receive a complaint alleging, that the Content violates laws, regulations, or our Terms of Use.
•
If required to comply with applicable laws or to prevent violations.
•
To comply with a valid legal request, such as a subpoena.
We may also analyze Content in aggregated, anonymized form to improve the Service and provide you with insights.
How We Use Your Personal Data
We only use personal data for the purposes for which it was collected, or for related activities such as:
•
Delivering and supporting the Service.
•
Responding to your requests or inquiries.
•
Processing your orders.
•
Providing access to specific services or information.
Legal Basis for Processing Personal Data
Contractual Necessity (Art. 6 para 1 lit. b GDPR)
We process your personal data when it is necessary for fulfilling a contract with you, or for taking steps at your request before entering into a contract.
Typical purposes include:
•
Communication about products and services.
•
Customer support and handling inquiries.
•
Managing our contractual relationship with customers, partners, and their representatives.
Legal Obligation (Art. 6 para 1 lit. c GDPR)
We process personal data to comply with legal requirements. This includes:
•
Tax regulations and audit requirements.
•
Implementation of necessary technical and organizational measures as outlined in Art. 32 GDPR.
Legitimate Interests (Art. 6 para 1 lit. f GDPR)
Where appropriate, we process personal data to serve legitimate interests of Kroemtech or third parties. These include:
•
Ensuring IT and system security.
•
Operational planning and coordination with Kroemtech-affiliated entities.
Consent (Art. 6 para 1 lit. a GDPR)
If you provide consent—for example, subscribing to newsletters or agreeing to tracking cookies—we will process your data accordingly. You can withdraw your consent at any time, effective for future processing.
When Will Kroemtech Contact Me?
Kroemtech GmbH may contact you in the following cases:
•
To manage or administer your personal account with us.
•
To provide service and support you’ve requested, ensuring continued access and performance.
•
To send mandatory service-related notices, including those required by law.
•
To respond to correspondence you’ve sent us, or to address comments and complaints regarding our services or products.
•
To support personalized features or services you are using.
•
In connection with any contributions or submissions you have made—such as comments, messages, or uploads to Kroemtech’s platforms.
•
To invite you to participate in customer surveys (participation is always voluntary).
•
For marketing purposes—such as newsletters or service announcements—when you have explicitly agreed to receive such communications.
Will Kroemtech Share My Personal Data With Others?
Kroemtech treats your personal data with confidentiality. Your information will only be disclosed when:
•
Required or permitted by law.
•
Necessary to fulfill services or contracts as described here.
•
You have provided explicit consent.
General Use
We generally use your information internally within Kroemtech GmbH and the broader Kroemtech Group. Sharing your data externally occurs only:
•
With your permission (e.g., if you choose to share content on social media).
•
When legally required.
•
When working with contracted third-party service providers acting on our behalf.
Partner Applications
If you choose to use a Partner Application (third-party software or service) in connection with our Service, we may share certain data—such as your account, profile, or content—as directed by you.
Please be aware: Kroemtech is not responsible for the privacy practices of these third-party applications. Always ensure that any application you use has a privacy policy that meets your standards.
Trusted Service Providers and Business Partners
Kroemtech may partner with trusted third parties to help us deliver the Service. These may include:
•
Cloud hosting providers.
•
Payment processors.
•
Analytics platforms.
These service providers only have access to your data as necessary to perform their duties and are required to follow strict privacy and security standards that meet or exceed our own. We do not sell, rent, or share your data with third parties for advertising or promotional purposes unless explicitly stated and agreed upon.
Data Retention and Storage Period
We retain your personal data only as long as necessary to fulfill our legal and contractual obligations. Once the data is no longer needed for these purposes, it is securely deleted.
•
Some data may need to be retained for longer periods due to:
•
Statutory limitation periods (which can range from 3 to 30 years).
•
Legal requirements for record keeping under commercial, tax, or social security law (typically 10 years).
Data processing by third parties
Third-Party Software and Services
In order to operate and improve our Services, we may integrate and rely on third-party software or service providers to collect, process, and store data as outlined in this Privacy Policy. These third parties may perform tasks such as analytics, hosting, support, or communication services on our behalf.
The third-party tools we use may include, but are not limited to:
Twilio
Used for communications services, including SMS and email delivery, account verification, and customer messaging. Twilio may process personal identifiers (e.g., phone numbers, email addresses, message content) depending on the nature of communication. Twilio maintains GDPR-compliant practices and offers data hosting in multiple regions.
For more information: https://www.twilio.com/en-us/legal/privacy
Stripe
Used to process payments securely. Stripe collects and processes billing information, such as credit card details, names, addresses, and email addresses. All payment data is encrypted and handled directly by Stripe. We do not store credit card numbers ourselves. Stripe is certified to PCI DSS standards and complies with Swiss and European data protection laws.
For more information: https://stripe.com/en-ch/privacy
We ensure that all third-party service providers comply with applicable data protection regulations, including the Swiss Data Protection Act (nFADP) and, where applicable, the EU General Data Protection Regulation (GDPR). Data shared with these providers is limited to what is necessary for them to perform their functions and is processed in accordance with contractual obligations and appropriate safeguards.
You can refer to each provider’s individual privacy policies to learn more about how your data is handled by them.
Web Browser Cookies
A cookie is a small text file that is stored on your device (computer, tablet, or mobile phone) when you visit a website. It typically includes a unique identifier that helps recognize your browser or device on subsequent visits. Cookies serve various purposes, such as enabling essential functionality, enhancing user experience, analyzing site traffic, and supporting secure transactions.
Most web browsers automatically accept cookies, but you can usually modify your browser settings to decline cookies or to alert you when a cookie is being placed on your device. Please note that disabling cookies may affect the functionality of certain features on our website.
How We Use Cookies
We use cookies to:
•
Remember your preferences and settings (e.g., language, font size, or login state)
•
Enhance the usability and performance of our website
•
Understand user behavior and optimize our site using analytics
•
Support security features and detect fraudulent activities
•
Facilitate services such as payments or communication
Types of Cookies We Use
Session Cookies
Temporary cookies that are erased when you close your browser. They enable core functionality like navigation and session management across our website.
Persistent Cookies
These remain on your device for a set period and are used to remember your settings or track return visits. Used, for example, for preferences or analytics.
First-Party Cookies
Set by our own domain to remember your preferences and provide a consistent experience.
Third-Party Cookies
Set by external service providers we work with, such as analytics, payment, or communication tools. Used only as described below.
Third-Party Cookies and Tools
We may use third-party cookies through the following services:
•
Google Analytics 4 (GA4): For analyzing website usage and user interaction in a privacy-conscious manner. GA4 anonymizes IP addresses by default.
•
Stripe: For secure processing of online payments. Stripe may use cookies to enable transactions and enhance fraud prevention.
•
Twilio: For sending communications like SMS messages or two-factor authentication. Twilio may set cookies for session tracking or security purposes.
These service providers are contractually obligated to comply with data protection regulations, including the Swiss nFADP and GDPR, and act solely on our instructions.
Cookie Control
You have several options for managing cookies:
•
You can configure your browser to block all cookies, accept only certain types, or notify you before any cookie is placed.
•
You may delete cookies manually at any time via your browser settings.
For more detailed information on how to manage cookies in your browser, refer to your browser's help documentation or privacy settings.
Use of Web Technologies
Kroemtech GmbH utilizes standard internet technologies — such as cookies and JavaScript — to enhance your experience and ensure the smooth functionality of our web-based applications. These technologies help streamline navigation, personalize content, and support essential website features.
To improve our digital services and better understand user behavior, we also implement web analytics tools. These services collect and evaluate anonymized data on how visitors interact with our site — including pages visited, time spent on specific sections, and referral sources. This information is used exclusively to generate aggregated reports for internal purposes, allowing us to optimize and adapt our online offerings to meet user needs.
All data collected through these tools is processed in a statistical and anonymized format only. No personally identifiable information is used to track individual user behavior.
Kroemtech GmbH is committed to handling all data in accordance with applicable data protection laws, including the Swiss Federal Act on Data Protection (nFADP) and, where applicable, the EU General Data Protection Regulation (GDPR).
Rights of Data Subjects
If Kroemtech GmbH processes your personal data, you are considered a data subject under the GDPR and are entitled to the following rights:
a) Rights under Articles 15 and following of the GDPR
(1) You have the right to request confirmation from Kroemtech GmbH whether personal data relating to you is being processed. If so, you may access such data along with the information described in Article 15 GDPR. Under certain conditions, you are entitled to request correction of inaccurate data (Article 16 GDPR), restriction of processing (Article 18 GDPR), and deletion of your personal data (the “right to be forgotten,” Article 17 GDPR). Additionally, you have the right to obtain the personal data you provided in a structured, commonly used, and machine-readable format (data portability, Article 20 GDPR), provided that the data processing is automated and based on your consent (Article 6(1)(a) or Article 9(2)(a)) or a contract (Article 6(1)(b)).
b) Withdrawal of Consent under Article 7 GDPR
If your data processing is based on your consent, you may withdraw that consent at any time. Please note that withdrawal only affects future processing; any data processed prior to withdrawal remains lawful.
c) Right to File a Complaint
You have the right to lodge a complaint with Kroemtech GmbH or with a supervisory data protection authority, particularly in the EU Member State where you reside, work, or where the alleged violation occurred (Article 77 GDPR).
d) Right to Object under Article 21 GDPR
In addition to the rights above, you may object to certain types of data processing:
•
Objection on Grounds Relating to Your Particular Situation
You can object at any time to the processing of your personal data based on Article 6(1)(e) GDPR (public interest) or Article 6(1)(f) GDPR (legitimate interests), including any profiling carried out on this basis. Upon objection, Kroemtech GmbH will cease processing your data unless compelling legitimate grounds prevail or if processing is necessary for legal claims.
•
Objection on Grounds Relating to Your Particular Situation
If Kroemtech GmbH uses your data for direct advertising purposes, you may object at any time to such use, including profiling related to direct marketing. After your objection, Kroemtech GmbH will stop processing your personal data for marketing.
Final Provisions
Security
(1) Kroemtech GmbH has implemented appropriate technical and organizational measures pursuant to Articles 24 and 32 GDPR to protect your personal data from unauthorized access, loss, alteration, or destruction. All employees and third parties involved in data processing are bound to comply with GDPR requirements and to maintain confidentiality.
(2) SSL/TLS Encryption: This website uses SSL or TLS encryption to secure data transmissions, such as orders or inquiries sent to Kroemtech GmbH. You can identify a secure connection by the “https://” prefix and the lock symbol in your browser. With encryption active, your transmitted data cannot be accessed by unauthorized third parties.
Updates to Kroemtech GmbH’s Privacy Policy
Kroemtech GmbH may update this Privacy Policy periodically. We recommend reviewing it before submitting personal data. The most recent revision date will be displayed here. Any changes will be communicated at least 30 days before they take effect. If you do not accept the updated Privacy Policy, you have the right to terminate your service agreement without notice. Termination notices must be received by Kroemtech GmbH by the effective date of the updated policy. Prepaid fees will be refunded on a pro rata basis.
Questions or Requests?
Kroemtech GmbH will respond to all legitimate inquiries regarding access, correction, completion, or deletion of personal data. For questions or comments about this Privacy Policy, or to exercise your data subject rights, please contact:
info@kroemtech.com
Kroemtech GmbH
Christoph Merian-Ring 11
CH-4153 Reinach
Switzerland
info@kroemtech.com
+41 61 717 82 45