VoltAmpix — Privacy Policy / Privacyverklaring

🇳🇱 Nederlands hieronder · 🇬🇧 English below

————————————————————————————————————————————

🇳🇱 PRIVACYVERKLARING VOLTAMPIX

Versie 1.1 · Laatst bijgewerkt: 1 september 2026

  1. Wie wij zijn

Irina Jurāne (zelfstandig ondernemer / saimnieciskās darbības veicējs, geregistreerd bij VID), ingeschreven onder nummer 30098812186, gevestigd te Ošu krasti, Tīnūžu pagasts, Ogres novads, LV-5015, Letland, handelend onder de naam VoltAmpix, is verwerkingsverantwoordelijke voor de in deze verklaring beschreven verwerkingen.

Contact voor privacyvragen: info@voltampix.com

Wij hebben geen functionaris voor gegevensbescherming aangesteld; dat is voor een organisatie en verwerkingsomvang als de onze niet verplicht. Privacyvragen worden rechtstreeks door de eigenaar behandeld.

  1. Twee rollen

Voor uw accountgegevens (uw e-mailadres, uw bedrijfsnaam, uw abonnement) zijn wij verwerkingsverantwoordelijke.

Voor de gegevens die u in de applicatie invoert — met name gegevens over uw medewerkers en over contactpersonen van aannemers — bent ú verwerkingsverantwoordelijke en zijn wij verwerker. Daarop is onze Verwerkersovereenkomst van toepassing, die op verzoek beschikbaar is via info@voltampix.com.

  1. Welke gegevens wij verwerken

Accountgegevens — e-mailadres, bedrijfsnaam, versleuteld wachtwoord, abonnementsstatus. Grondslag: uitvoering overeenkomst (art. 6 lid 1 sub b AVG).
Installatiegegevens — activa, typeplaatjes, foto’s, schema’s, locaties, onderhouds- en servicedata. Grondslag: uitvoering overeenkomst.
Documenten — certificaten, keuringsrapporten, handleidingen, verzekeringsbrieven die u uploadt. Grondslag: uitvoering overeenkomst.
Personeelsgegevens — naam, functie, NEN 3140-kwalificatie, geldigheidsdatum van uw medewerkers. Grondslag: u bent verantwoordelijke; wij verwerken in uw opdracht.
Contactgegevens derden — naam en telefoonnummer van aannemers die u vastlegt. Grondslag: u bent verantwoordelijke; wij verwerken in uw opdracht.
Gebruiks- en technische gegevens — IP-adres, sessietoken, tijdstempels, tellers voor gebruikslimieten, foutlogs. Grondslag: gerechtvaardigd belang (art. 6 lid 1 sub f AVG): beveiliging, misbruikpreventie, kostenbeheersing.
Betaalgegevens — naam, factuuradres, transactiestatus. Wij ontvangen en bewaren geen volledige kaartgegevens. Grondslag: uitvoering overeenkomst + wettelijke administratieplicht.
Aanmeldgegevens — e-mailadres en land bij aanmelding voor de wachtlijst of de nieuwsbrief. Grondslag: toestemming (art. 6 lid 1 sub a AVG).
Supportcorrespondentie — inhoud van uw e-mails aan ons. Grondslag: uitvoering overeenkomst / gerechtvaardigd belang.

Wij vragen niet om bijzondere categorieën van persoonsgegevens en de Dienst is daar niet voor bedoeld. Upload geen medische gegevens, kopieën van identiteitsbewijzen of burgerservicenummers.

Foto’s van installaties kunnen onbedoeld personen in beeld brengen. Wij verwerken deze uitsluitend als onderdeel van de foto; wij passen geen gezichtsherkenning of identificatie van personen toe.

  1. Waarvoor wij uw gegevens gebruiken

— het leveren, onderhouden en beveiligen van de Dienst;
— het genereren van AI-uitvoer op uw verzoek (herkenning, diagnose, rapportages);
— het versturen van functionele e-mails: vervaldatummeldingen, maandrapporten, wachtwoordherstel, servicemededelingen;
— facturatie en administratie;
— het beantwoorden van supportvragen;
— het opsporen en tegengaan van misbruik en overbelasting;
— het verbeteren van de Dienst.

Wij verkopen uw gegevens niet en gebruiken ze niet voor advertentiedoeleinden of profilering ten behoeve van derden.Kunstmatige intelligentie

Wanneer u een foto of een vraag indient, wordt de betreffende invoer verzonden naar onze AI-leverancier (Anthropic) om de uitvoer te genereren. Uw invoer wordt niet gebruikt om de modellen van die leverancier te trainen. Verwerking vindt plaats op grond van de uitvoering van de overeenkomst.

De Dienst neemt geen geautomatiseerde besluiten met rechtsgevolg of van vergelijkbaar aanmerkelijk belang in de zin van artikel 22 AVG. Alle uitvoer is adviserend; een mens beslist.

  1. Met wie wij gegevens delen (verwerkers)

Wij schakelen de volgende dienstverleners in. Met elk van hen is een verwerkersovereenkomst gesloten of gelden hun standaard-verwerkersvoorwaarden.

Bubble (Bubble Group, Inc.) — applicatiedatabase en backend. Locatie: Verenigde Staten (AWS); doorgifte op basis van de standaardcontractbepalingen, opgenomen in de verwerkersovereenkomst van Bubble.
Cloudflare, Inc. — API-laag, hosting van de website, sessiebeveiliging, gebruikslimieten. Locatie: wereldwijd netwerk; EER-verwerking waar mogelijk; standaardcontractbepalingen.
Anthropic PBC — AI-analyse van foto’s en vragen. Locatie: VS; standaardcontractbepalingen; geen training op klantinvoer.
PDFMonkey — genereren van PDF-rapportages. Locatie: EU.
Framer B.V. — hosting van de applicatie-interface. Locatie: EU (Nederland).
Stripe — betalingsverwerking. Locatie: EU/VS; eigen verantwoordelijke voor betaalgegevens.

Daarnaast kunnen wij gegevens delen met onze accountant of adviseurs, en met bevoegde autoriteiten wanneer wij daartoe wettelijk verplicht zijn.

Bij doorgifte buiten de Europese Economische Ruimte baseren wij ons op de standaardcontractbepalingen van de Europese Commissie of op een geldig adequaatheidsbesluit. Een overzicht van de actuele verwerkers is op verzoek verkrijgbaar.

  1. Geanonimiseerde statistieken

Geanonimiseerde, geaggregeerde technische gegevens kunnen worden gebruikt om de Dienst te verbeteren en om branchestatistieken te produceren. Het gaat daarbij uitsluitend om technische kenmerken van installaties en apparatuur — bijvoorbeeld hoe vaak een bepaald componenttype uitvalt. Deze gegevens bevatten geen persoonsgegevens en zijn niet herleidbaar tot u, uw bedrijf, uw locaties of uw installaties.

  1. Hoe lang wij gegevens bewaren

Account- en installatiegegevens — zolang uw account actief is.
Na beëindiging van het account — 30 dagen beschikbaar voor export, daarna verwijderd.
Back-ups — maximaal 90 dagen, daarna overschreven.
Facturen en administratie — 7 jaar (fiscale bewaarplicht).
Technische logs en gebruikstellers — maximaal 12 maanden; gebruikstellers 24 uur.
Supportcorrespondentie — 24 maanden.
Wachtlijst- en nieuwsbriefaanmeldingen — tot u zich afmeldt.

  1. Beveiliging

Wij passen onder meer de volgende maatregelen toe: versleutelde verbindingen (TLS), versleutelde opslag van wachtwoorden, ondertekende sessietokens met beperkte geldigheidsduur, server-side afscherming zodat elk account uitsluitend zijn eigen gegevens kan opvragen, gebruikslimieten tegen misbruik, versleutelde opslag van sleutels en geheimen, en beperkte toegang tot productiesystemen.

Geen enkele dienst is volledig risicovrij. Constateert u een kwetsbaarheid, meld deze dan aan info@voltampix.com; wij reageren en verhelpen deze zo snel als redelijkerwijs mogelijk is en zullen geen juridische stappen ondernemen tegen melders die zorgvuldig en te goeder trouw handelen.Cookies en lokale opslag

De applicatie plaatst geen tracking- of advertentiecookies. Voor het functioneren van de Dienst wordt uitsluitend een functioneel sessietoken opgeslagen in de lokale opslag van uw browser, zodat u ingelogd blijft. Verwijderen van dit token logt u uit. Voor strikt functionele opslag is geen toestemming vereist.

Wijzigt dit — bijvoorbeeld doordat wij statistiek- of analysesoftware gaan gebruiken — dan passen wij deze verklaring aan en vragen wij waar vereist vooraf uw toestemming.

  1. Uw rechten

U heeft het recht op inzage, rectificatie, verwijdering, beperking van de verwerking, overdraagbaarheid van gegevens, en het recht van bezwaar tegen verwerking op grond van een gerechtvaardigd belang. Toestemming die u heeft gegeven, kunt u te allen tijde intrekken; dat raakt de rechtmatigheid van de verwerking vóór de intrekking niet.

Een verzoek stuurt u naar info@voltampix.com. Wij reageren binnen één maand. Om misbruik te voorkomen kunnen wij vragen uw verzoek te doen vanaf het e-mailadres van het betreffende account.

Bent u niet tevreden over hoe wij met uw gegevens omgaan, dan kunt u een klacht indienen bij de Autoriteit Persoonsgegevens (autoriteitpersoonsgegevens.nl). Wij stellen het op prijs als u eerst contact met ons opneemt.

Betreft uw verzoek gegevens die een zakelijke klant in de Dienst heeft ingevoerd — bijvoorbeeld uw kwalificatiegegevens als medewerker — dan verwijzen wij u naar die klant; deze is daarvoor de verantwoordelijke. Wij zullen die klant daarbij ondersteunen.

  1. Wijzigingen

Wij kunnen deze verklaring aanpassen. Wezenlijke wijzigingen kondigen wij ten minste 30 dagen vooraf per e-mail of in de Dienst aan. De actuele versie staat altijd op voltampix.com.

Bij verschil tussen de Nederlandse en de Engelse tekst prevaleert de Nederlandse tekst.

————————————————————————————————————————————

🇬🇧 VOLTAMPIX PRIVACY POLICY

Version 1.1 · Last updated: 1 September 2026

This English text is a translation provided for convenience. In the event of any discrepancy, the Dutch version prevails.

  1. Who we are

Irina Jurāne (self-employed individual, registered with the Latvian State Revenue Service VID as saimnieciskās darbības veicējs), registered under number 30098812186, with its registered office at Ošu krasti, Tīnūžu pagasts, Ogres novads, LV-5015, Latvia, trading as VoltAmpix, is the controller for the processing described in this policy.

Privacy contact: info@voltampix.com

We have not appointed a data protection officer; this is not required for an organisation and processing scale such as ours. Privacy queries are handled directly by the owner.Two roles

For your account data (your email address, your company name, your subscription) we are the controller.

For the data you enter into the application — in particular data about your employees and about contractor contact persons — you are the controller and we are the processor. Our Data Processing Agreement applies to that data and is available on request via info@voltampix.com.

  1. What data we process

Account data — email address, company name, hashed password, subscription status. Legal basis: performance of contract (art. 6(1)(b) GDPR).
Installation data — assets, nameplates, photographs, schematics, locations, service dates. Legal basis: performance of contract.
Documents — certificates, inspection reports, manuals, insurer letters you upload. Legal basis: performance of contract.
Personnel data — name, role, NEN 3140 qualification and expiry date of your employees. Legal basis: you are controller; we process on your instructions.
Third-party contacts — names and phone numbers of contractors you record. Legal basis: you are controller; we process on your instructions.
Usage and technical data — IP address, session token, timestamps, rate-limit counters, error logs. Legal basis: legitimate interest (art. 6(1)(f) GDPR): security, abuse prevention, cost control.
Payment data — name, billing address, transaction status. We do not receive or store full card details. Legal basis: performance of contract + statutory bookkeeping duty.
Sign-up data — email address and country when joining the waiting list or newsletter. Legal basis: consent (art. 6(1)(a) GDPR).
Support correspondence — the content of your emails to us. Legal basis: performance of contract / legitimate interest.

We do not ask for special categories of personal data and the Service is not designed for them. Do not upload medical data, copies of identity documents or national identification numbers.

Photographs of installations may incidentally capture people. We process these only as part of the photograph; we apply no facial recognition or identification of individuals.

  1. What we use your data for

— providing, maintaining and securing the Service;
— generating AI output at your request (recognition, diagnosis, reporting);
— sending functional emails: expiry alerts, monthly reports, password resets, service notices;
— invoicing and administration;
— answering support queries;
— detecting and preventing abuse and overload;
— improving the Service.

We do not sell your data and do not use it for advertising or for profiling on behalf of third parties.Artificial intelligence

When you submit a photograph or a question, that input is sent to our AI provider (Anthropic) to generate the output. Your input is not used to train that provider’s models. Processing takes place on the basis of performance of the contract.

The Service makes no automated decisions producing legal effects or similarly significant effects within the meaning of article 22 GDPR. All output is advisory; a human decides.

  1. Who we share data with (processors)

We engage the following service providers. A data processing agreement is in place with each, or their standard processing terms apply.

Bubble (Bubble Group, Inc.) — application database and backend. Location: United States (AWS); transfers based on the Standard Contractual Clauses incorporated in Bubble’s data processing agreement.
Cloudflare, Inc. — API layer, website hosting, session security, rate limiting. Location: global network; EEA processing where possible; Standard Contractual Clauses.
Anthropic PBC — AI analysis of photographs and questions. Location: USA; Standard Contractual Clauses; no training on customer input.
PDFMonkey — generation of PDF reports. Location: EU.
Framer B.V. — hosting of the application interface. Location: EU (Netherlands).
Stripe — payment processing. Location: EU/USA; independent controller for payment data.

We may also share data with our accountant or advisers, and with competent authorities where legally required.

For transfers outside the European Economic Area we rely on the European Commission’s Standard Contractual Clauses or on a valid adequacy decision. A current list of processors is available on request.

  1. Anonymised statistics

Anonymised, aggregated technical data may be used to improve the Service and to produce industry statistics. This concerns only technical characteristics of installations and equipment — for example, how often a given component type fails. Such data contains no personal data and is not traceable to you, your company, your sites or your installations.How long we keep data

Account and installation data — for as long as your account is active.
After account termination — available for export for 30 days, then deleted.
Backups — maximum 90 days, then overwritten.
Invoices and accounting records — 7 years (statutory retention).
Technical logs and usage counters — maximum 12 months; usage counters 24 hours.
Support correspondence — 24 months.
Waiting-list and newsletter sign-ups — until you unsubscribe.

  1. Security

Measures we apply include: encrypted connections (TLS), hashed password storage, signed session tokens with limited validity, server-side isolation ensuring each account can retrieve only its own data, rate limiting against abuse, encrypted storage of keys and secrets, and restricted access to production systems.

No service is entirely risk-free. If you discover a vulnerability, please report it to info@voltampix.com; we will respond and remediate as quickly as reasonably possible, and will not take legal action against reporters acting carefully and in good faith.

  1. Cookies and local storage

The application sets no tracking or advertising cookies. For the Service to function, only a functional session token is stored in your browser’s local storage so that you remain logged in. Deleting it logs you out. Strictly functional storage does not require consent.

Should this change — for example if we introduce analytics software — we will update this policy and, where required, obtain your consent in advance.

  1. Your rights

You have the right of access, rectification, erasure, restriction of processing, data portability, and the right to object to processing based on legitimate interest. Where you have given consent, you may withdraw it at any time; this does not affect the lawfulness of processing before withdrawal.

Send requests to info@voltampix.com. We respond within one month. To prevent misuse, we may ask you to send your request from the email address of the account concerned.

If you are dissatisfied with how we handle your data, you may lodge a complaint with the Dutch Data Protection Authority, the Autoriteit Persoonsgegevens (autoriteitpersoonsgegevens.nl). We would appreciate the chance to address it first.

If your request concerns data entered into the Service by a business customer — for example your qualification records as an employee — we will refer you to that customer, who is the controller for it. We will support them in handling your request.

  1. Changes

We may update this policy. Material changes will be announced by email or in the Service at least 30 days in advance. The current version is always available at voltampix.com.

In the event of any discrepancy between the Dutch and English texts, the Dutch text prevails.

————————————————————————————————————————————

← Back to app.voltampix.com