This Privacy Policy explains how IONOX Group B.V. ("IONOX", "we", "us", "our") collects, uses and protects your personal data when you visit our website or engage with us as a prospect, customer or partner. We are committed to processing personal data in accordance with the General Data Protection Regulation (EU) 2016/679 ("GDPR") and all applicable Dutch and European privacy law.
IONOX Group B.V. is a company incorporated under the laws of the Netherlands, with its registered office at Beethovenstraat 505, Amsterdam, The Netherlands. For all matters relating to this Privacy Policy or the processing of your personal data, you can contact us at info@ionoxgroup.com.
IONOX acts as the data controller for personal data collected through this website and through direct interactions with prospects and customers. For personal data processed within the IONOX platform on behalf of our customers, IONOX acts as a data processor under a separate Data Processing Agreement (DPA).
We collect personal data in the following categories:
We do not knowingly collect personal data from children under 16. If you believe we have collected such data, please contact us immediately.
Under Article 6(1) GDPR we process your personal data on the following legal bases:
We only share your personal data with the minimum number of third parties necessary to operate our business. Current categories of recipients include:
A current list of sub-processors used in the IONOX platform is available on request to existing customers. We do not sell personal data. We do not use personal data to train third-party AI models.
We aim to keep all personal data within the European Economic Area (EEA). Where a processor has a non-EEA parent company or minor supporting operations outside the EEA, we rely on Standard Contractual Clauses (Commission Implementing Decision 2021/914) and supplementary safeguards assessed on a case-by-case basis. Our sovereignty-first architecture is specifically designed to minimise non-EEA exposure.
IONOX implements appropriate technical and organizational measures under Article 32 GDPR, including encryption in transit and at rest, access controls with multi-factor authentication, principle of least privilege, audit logging, regular backups, and an incident response procedure aligned with the 72-hour breach notification requirement.
Under GDPR you have the following rights in relation to your personal data:
To exercise any of these rights, contact us at info@ionoxgroup.com. We will respond within 30 days. You also have the right to lodge a complaint with the Dutch Data Protection Authority (Autoriteit Persoonsgegevens) or the supervisory authority in your country of residence.
This website uses only strictly necessary cookies required for the site to function. We do not use advertising, analytics profiling or cross-site tracking cookies. As we expand, we will update this policy and add an appropriate cookie consent mechanism before any non-essential cookies are deployed.
We may update this Privacy Policy from time to time to reflect changes in our practices, services or the regulatory environment. The "Last updated" date at the top of this page indicates when the most recent changes were made. Material changes will be communicated via email to active customers and design partners.
For questions about this Privacy Policy or to exercise any of your rights:
IONOX Group B.V.
Beethovenstraat 505
Amsterdam, The Netherlands
info@ionoxgroup.com