1. Introduction
Zettro Studio ("Company", "we", "us", or "our") is committed to protecting your privacy and personal data. This Privacy Policy explains how we collect, use, store, and protect your personal data when you visit our website at zettrostudio.com or use our services.
We process personal data in accordance with the General Data Protection Regulation (EU) 2016/679 ("GDPR") and applicable Danish data protection legislation. Zettro Studio acts as the data controller for the personal data described in this policy.
2. Data We Collect
We may collect and process the following categories of personal data:
2.1 Information You Provide
- Contact form submissions: Name, email address, company name, phone number, and the content of your message.
- Chat widget interactions: Messages you send through our on-site chat assistant, including any personal information you voluntarily include.
- Email correspondence: Information contained in emails you send to us.
- Service engagements: Business contact details, project-related data, and billing information provided during a consulting or service engagement.
2.2 Information Collected Automatically
- Usage data: Pages visited, time spent on pages, referral source, browser type, device type, operating system, and IP address.
- Cookies and similar technologies: We use cookies to analyze website traffic and improve your experience. See Section 8 for details.
3. Legal Basis for Processing
We process your personal data on the following legal grounds under Article 6 of the GDPR:
- Consent (Art. 6(1)(a)): When you submit a contact form, use our chat widget, or subscribe to communications. You may withdraw consent at any time.
- Contract performance (Art. 6(1)(b)): When processing is necessary to perform a contract with you or to take steps at your request prior to entering into a contract.
- Legitimate interests (Art. 6(1)(f)): For website analytics, security, fraud prevention, and improving our services, where such interests are not overridden by your rights and freedoms.
- Legal obligation (Art. 6(1)(c)): When we are required to process data to comply with legal or regulatory obligations (e.g., tax and accounting requirements).
4. How We Use Your Data
We use personal data for the following purposes:
- Responding to your inquiries and contact form submissions.
- Providing and delivering our consulting and automation services.
- Processing payments and managing billing.
- Sending service-related communications (project updates, follow-ups).
- Analyzing website usage to improve our site and user experience.
- Powering our AI chat assistant to provide relevant responses to your questions.
- Complying with legal and regulatory obligations.
5. Third-Party Services
We use the following third-party services that may process your data:
5.1 Google Analytics
We use Google Analytics to analyze website traffic and usage patterns. Google Analytics collects data such as your IP address (anonymized), browser type, pages visited, and session duration. This data is processed by Google LLC in accordance with their Privacy Policy. We have enabled IP anonymization to reduce the amount of personal data collected.
5.2 AI Chat Assistant (Anthropic API)
Our website features an AI-powered chat assistant that uses the Anthropic API to process and respond to your messages. When you use the chat widget, the content of your messages is sent to Anthropic's servers for processing. Anthropic processes this data in accordance with their Privacy Policy. We do not use chat data for model training purposes. Please avoid sharing sensitive personal information through the chat widget.
5.3 Hosting and Infrastructure
Our website is hosted on infrastructure providers that may process data such as IP addresses and access logs as part of standard hosting operations.
6. Data Retention
We retain personal data only for as long as necessary to fulfill the purposes for which it was collected:
- Contact form and chat data: Retained for up to 12 months after the last interaction, unless a service engagement begins.
- Client project data: Retained for the duration of the service engagement plus 5 years for legal and accounting purposes.
- Analytics data: Aggregated and anonymized data may be retained indefinitely. Identifiable analytics data is retained for up to 26 months.
- Billing and invoicing data: Retained for 5 years in accordance with Danish bookkeeping legislation (bogforingsloven).
7. Your Rights
Under the GDPR, you have the following rights regarding your personal data:
- Right of access (Art. 15): You have the right to request a copy of the personal data we hold about you.
- Right to rectification (Art. 16): You have the right to request correction of inaccurate or incomplete personal data.
- Right to erasure (Art. 17): You have the right to request deletion of your personal data where there is no compelling reason for its continued processing.
- Right to restriction of processing (Art. 18): You have the right to request that we restrict the processing of your personal data in certain circumstances.
- Right to data portability (Art. 20): You have the right to receive your personal data in a structured, commonly used, machine-readable format.
- Right to object (Art. 21): You have the right to object to the processing of your personal data based on legitimate interests.
- Right to withdraw consent: Where processing is based on consent, you may withdraw it at any time without affecting the lawfulness of processing before withdrawal.
To exercise any of these rights, please contact us at hello@zettrostudio.com. We will respond to your request within 30 days.
You also have the right to lodge a complaint with the Danish Data Protection Agency (Datatilsynet) at datatilsynet.dk if you believe your data protection rights have been violated.
8. Cookies
Our website uses cookies and similar tracking technologies. Cookies are small text files placed on your device that help us analyze website usage and improve your experience.
Types of Cookies We Use
- Strictly necessary cookies: Essential for the website to function properly. These cannot be disabled.
- Analytics cookies: Used to collect information about how visitors use our website (e.g., Google Analytics). This helps us improve site performance and content.
- Functional cookies: Used to remember your preferences, such as language settings and dark/light mode.
You can manage your cookie preferences through your browser settings. Please note that disabling certain cookies may affect the functionality of our website.
9. Data Security
We implement appropriate technical and organizational measures to protect your personal data against unauthorized access, alteration, disclosure, or destruction. These measures include:
- Encryption of data in transit using TLS/SSL.
- Access controls limiting data access to authorized personnel only.
- Regular review of our data processing practices and security measures.
- Secure storage of credentials and API keys.
While we strive to protect your personal data, no method of transmission over the internet or electronic storage is completely secure. We cannot guarantee absolute security.
10. International Data Transfers
Some of our third-party service providers (such as Google and Anthropic) may process data outside the European Economic Area (EEA). Where such transfers occur, we ensure that appropriate safeguards are in place, such as Standard Contractual Clauses (SCCs) approved by the European Commission, or the service provider's participation in recognized data protection frameworks.
11. Children's Privacy
Our website and Services are not directed at individuals under the age of 18. We do not knowingly collect personal data from children. If we become aware that we have collected personal data from a child, we will take steps to delete it promptly.
12. Changes to This Policy
We may update this Privacy Policy from time to time to reflect changes in our practices or applicable laws. The updated policy will be posted on this page with a revised "Last updated" date. We encourage you to review this policy periodically.
13. Contact Us
If you have any questions about this Privacy Policy or wish to exercise your data protection rights, please contact us:
Zettro Studio
Christiansdal 13, 2610 Rodovre, Denmark
Email: hello@zettrostudio.com
Website: zettrostudio.com