Privacy and cookie policy

Privacy policy

Data controller

We are the data controller for the personal data we process about our customers and business partners. You can find our contact details below.

VisBlue A/S
Bautavej 1A
DK-8240 Aarhus V
CVR no.: 36427957            

Our company is not required to appoint an external Data Protection Officer (DPO). However, if you have any questions regarding the processing of your personal data, you are welcome to contact us at service@visblue.com.

Data Processing Activities

As the data controller under the GDPR, we maintain records of the following processing activities in our GDPR register.

Communication with Potential Customers
If you have questions about our website or would like to learn more about our services, you can contact us via:

Sales@visblue.com (sales enquiries)

Service@visblue.com (customer support)

Tel. +45 71 99 69 96

When you contact us, we process your personal data in order to communicate with you and respond to enquiries about our services. We only process the information that you provide in connection with our communication. This will typically include:
- Name
- Email address
- Telephone number
The legal basis for this processing is Article 6(1)(f) of the General Data Protection Regulation (GDPR), based on our legitimate interest in communicating with you and responding to your enquiry.

Customers
We need to communicate with our customers to ensure that our services are delivered correctly. In this context, we may process information such as:
- Name
- Address
- Services provided
- Specific agreements
- Payment information
- Similar business-related information
The legal basis for this processing is Article 6(1)(b) of the GDPR, as the processing is necessary for the performance of a contract.

Accounting
Under Danish bookkeeping legislation, we are required to retain accounting records. This means that we store invoices and related documentation for accounting purposes. These records may contain personal data such as:
- Name
- Address
- Description of services provided
The legal basis for this processing is Article 6(1)(c) of the GDPR, as the processing is necessary for compliance with a legal obligation. We retain this information for five years after the end of the relevant financial year.

Job Applications
We welcome job applications for the purpose of assessing whether candidates match employment opportunities within our company. If you submit a job application, the legal basis for processing your personal data is Article 6(1)(f) of the GDPR, based on our legitimate interest in assessing your suitability for employment. If you submit an unsolicited application, we will immediately assess whether your profile is relevant to any current or foreseeable recruitment needs. If there is no relevant match, your personal data will be deleted without undue delay. If you apply for an advertised position and are not selected, your application and related personal data will be deleted six months after the position has been filled. If you participate in a recruitment process and/or are offered employment, you will receive separate information explaining how your personal data will be processed in that context.

Data processors

We cannot do everything ourselves, and the same applies to our business. We therefore work with partners and suppliers, some of whom may act as data processors on our behalf.

External suppliers may, for example, provide systems for organising our work, professional services, consultancy, IT hosting, or marketing activities.

It is our responsibility to ensure that your personal data is processed properly. For this reason, we place high demands on our partners and require them to guarantee the protection of your personal data.

We therefore enter into agreements with companies acting as data processors on our behalf. These agreements help ensure that your personal data is handled securely and in accordance with applicable data protection legislation.

Disclosure of Personal Data

We do not share your personal data with third parties.

Profiling and Automated Decision-Making

We do not engage in profiling or automated decision-making.

Transfers to Third Countries

As a general rule, we use data processors located within the EU/EEA, or data processors that store and process data within the EU/EEA.

In certain cases, this may not be possible. In such situations, we may use data processors located outside the EU/EEA, provided that they ensure an adequate level of protection for your personal data and comply with applicable data protection legislation.

Processing Security

We keep the processing of personal data secure by implementing appropriate technical and organisational measures.

We have carried out risk assessments of our processing of personal data and have subsequently implemented appropriate technical and organisational measures to strengthen data security, such as GDPR awareness training.

One of our most important measures is ensuring that our employees remain up to date on GDPR requirements through ongoing awareness training, GDPR courses, and regular reviews of our GDPR procedures.

The Rights of Data Subjects

Under the General Data Protection Regulation (GDPR), you have a number of rights in relation to our processing of your personal data. If you wish to exercise any of your rights, please contact us and we will assist you.

Right of Access
You have the right to obtain access to the personal data we process about you, as well as certain additional information.

Right to Rectification
You have the right to have inaccurate personal data concerning you corrected.

Right to Erasure
In certain circumstances, you have the right to have your personal data erased before our general retention period expires.

Right to Restriction of Processing
In certain circumstances, you have the right to request that the processing of your personal data be restricted. If processing is restricted, we may only process your data, apart from storing it, with your consent or for the establishment, exercise, or defence of legal claims, to protect the rights of another person, or for reasons of important public interest.

Right to Object
In certain circumstances, you have the right to object to our otherwise lawful processing of your personal data. You also have the right to object to the processing of your personal data for direct marketing purposes.

Right to Data Portability
In certain circumstances, you have the right to receive your personal data in a structured, commonly used, and machine-readable format and to have that data transmitted from one data controller to another without hindrance. You can read more about your rights in the Danish Data Protection Agency’s guidance on the rights of data subjects, available at www.datatilsynet.dk.

Withdrawal of Consent
Where our processing of your personal data is based on your consent, you have the right to withdraw that consent at any time.

Complaint to the Danish Data Protection Agency
You have the right to lodge a complaint with the Danish Data Protection Agency if you are dissatisfied with the way we process your personal data. Contact details for the Danish Data Protection Agency can be found at www.datatilsynet.dk.

We generally encourage you to learn more about the GDPR to stay informed about the applicable rules and your rights.

Cookie policy