This policy covers personal data processed through dataone.nl and in connection with DataOne's services. The data controller is DataOne (KVK 74775855, VAT NL860022158B01), Bruynvisweg 11, 1531 AX Wormer, Netherlands. This policy supplements DataOne's Terms and Conditions; where we act as a processor on a customer's behalf, our Data Processing Agreement applies instead, as described in article 10 below.
| Purpose | What we collect | Legal basis |
|---|---|---|
| Responding to a contact-form enquiry | Name, email, phone (optional), message | Consent (submitting the form) and our legitimate interest in handling enquiries about our services |
| Website security and abuse prevention | IP address, date/time, requested page (server access logs) | Legitimate interest in keeping the website secure and operational |
| Showing a map on request | IP address (shared with Google only once you click "Show map") | Consent (your click) |
| Facility access and physical security | Name, employer, photo ID details and photograph, badge data, visitor/access logs | Legitimate interest in protecting customer equipment and the physical security of our facilities |
Contact form. When you submit the form on our Contact page, we use the details you provide solely to respond to your enquiry.
Server and access logs. Like any website, our web server automatically records basic technical information for each request. This is not used to build marketing profiles.
Google Maps. Our Contact page can show an embedded Google Map of our location. This is not loaded automatically — it only loads after you click "Show map". Once loaded, your IP address is shared with Google under Google's own privacy policy.
If you visit a DataOne facility, we process your name, employer, a government-issued photo ID and photograph for badge issuance, and you are recorded by our on-site CCTV and access-control systems, as described in our Facility Guide. This is necessary for the physical security of the facility and of the equipment located there.
If you are a named site-access, billing or technical contact for one of our customers, we typically receive your name, work email, phone number and role from that customer, not from you directly. We use this information to administer the customer relationship and facility access. Where this applies to you, DataOne relies on this published Privacy Policy, referenced in the customer's contract and onboarding paperwork, to meet its information obligations towards you, rather than notifying each contact individually, given the routine and low-risk nature of this data. Our customers agree, as part of their contract with us, to make their own named contacts aware that their data is processed as described here.
DataOne processes personal data on its own infrastructure, located in the Netherlands. We do not transfer personal data outside the European Economic Area.
This website does not use tracking, advertising or analytics cookies. We use your browser's local storage (not a cookie) to remember that you've dismissed the privacy notice banner; this value stays on your device and is never sent to our servers.
Contact form submissions and any resulting correspondence are kept only for as long as reasonably necessary to handle your enquiry and any follow-up, and no longer than required by applicable law. Server access logs are retained for a limited period for security purposes and then deleted or anonymised. Facility access and visitor logs are retained for the period required for security and legal purposes, as described in our Facility Guide.
We do not sell or rent personal data. We only share it with service providers who help us run this website or respond to enquiries (for example our email provider), each bound to protect it appropriately, or where required by law or a lawful request from a competent authority.
DataOne does not use automated decision-making, including profiling, that produces legal effects concerning you or similarly significantly affects you.
Under the GDPR/AVG, you have the right to access, correct, or request deletion of your personal data, to restrict or object to our processing of it, and to data portability. To exercise any of these rights, contact us at support@dataone.nl. You also have the right to lodge a complaint with the Dutch Data Protection Authority (Autoriteit Persoonsgegevens).
If, as a colocation or management & support customer, you process personal data on equipment housed with us, DataOne can act as a processor on your behalf. Our model data processing agreement (DPA) is available to download here — questions can be sent to support@dataone.nl.
We may update this policy from time to time to reflect changes in our practices or in the law. The version in force is always the one published on this page.
Questions about this policy? Please contact us.