Privacy Policy Application

Last modified: December 15th, 2024

  1. Home
  2. »
  3. Legals
  4. »
  5. Privacy Policy Application

Information

Privacy Policy for Users of the Sumixx Application: The purpose of this privacy policy is to inform you, as a user of our application, about how your personal data is processed. This privacy policy may be amended at any time, particularly to account for regulatory, legal, editorial, or technical developments. We recommend checking the latest version of the privacy policy before using our application.

Data Controller
Sumixx AG (hereinafter “we”) is the data controller for processing your personal data when you use our application.
For data protection matters, you can contact the Data Protection Officer at: compliance@sumixx.com

Sumixx AG
Alte Steinhauserstrasse 1
6330 Cham, Switzerland
Email: compliance@sumixx.com

Categories of Personal Data

We process the following categories of personal data about you:

  • Identification Data: Company, name, salutation, email address, contact details.
  • Professional Data: Job title, function, job description, employer, type, and duration of employment.
  • Login Data.
  • Usage Data: Information on your use of our application, including access to our resources or newsletters (e.g., tracking pixels, login data, log files, metadata, IP address, reports).
  • Preference Data: Preferences, interests, registrations (e.g., for newsletters).
  • Cookie Data: Information captured through cookies or embedded services, as outlined in the consent management tool displayed when you first access the application.
  • Payment Data: If you or the company add payment details
  • Other Data: Data you disclose spontaneously (e.g., in email correspondence).

Purposes of Data Processing

We process your personal data for the following purposes:

  • Account creation.
  • Operating our application.
  • Commercial activities: surveys, marketing, advertising, etc.
  • Understanding your use of our application, website, preferences, and habits.
  • Payment transactions

Legal Bases:

  • Contractual Necessity: To perform a contract with you or take steps prior to entering into a contract (Art. 31(2)(a) Swiss DPA, Art. 6(1)(b) GDPR for EU users).
  • Legal Obligations: For compliance with legal requirements such as tax obligations and retention periods (Art. 31(1) Swiss DPA, Art. 6(1)(c) GDPR for EU users).
  • Legitimate Interests: Including anonymisation, statistics, IT security, training, fraud monitoring, defending rights, improving applications, IT development/testing, managing consent tracking, and communications monitoring (Art. 31(2) Swiss DPA, Art. 6(1)(f) GDPR for EU users).
  • Consent: For activities such as surveys, marketing, and advertising (Art. 31(1) Swiss DPA, Art. 6(1)(a) GDPR for EU users). In Switzerland, we may process personal data for marketing unless you opt out.

Disclosure of Personal Data to Third Parties

Your personal data may be disclosed to the following recipients:

  • Audit firms and law firms.
  • Authorities where legally required and courts for rights enforcement.
  • Banks, wallets and payment processors.
  • KYC Processors. 
  • Cookie providers, as specified in the consent management tool displayed when you first access the application.
  • Support, if you use that platform.

We do not control how these recipients process your data; please consult their privacy policies.

Data is also shared with:

  • IT service providers for maintenance, hosting, software, or AI.
  • Marketing and advertising agencies.
  • Accounting firms and other standard service providers.

Data Retention Periods

We process your personal data for up to five years after you request account closure or after our contract ends. Log files and metadata are stored for two years. If your data is included in a report, it will be retained as long as the report remains stored in the application.

International Data Transfers

Your personal data is processed in Switzerland, the EU, the EEA, UAE and the United Kingdom. These jurisdictions are recognised as providing adequate data protection levels by the Swiss Federal Council and the European Commission.

Your data may also be processed in countries specified in the consent management tool displayed when you first access the application.

Your Rights as a Data Subject

You have the following rights:

  • Right of Access: To know whether your data is processed and to request information about it.
  • Right to Data Portability: To receive and transfer certain personal data (under certain conditions).
  • Right to Rectification: To request corrections to inaccurate data.
  • Right to Object: To object to data processing based on your particular situation (under certain conditions).
  • Right to Erasure: To request the deletion of your personal data (under certain conditions).
  • Right to Restrict Processing: To request restrictions on processing (under certain conditions).
  • Right to Withdraw Consent: To withdraw consent at any time.

To exercise these rights, please contact us at the address listed in Section 1.

For complaints, you can contact the supervisory authority:

  • In Switzerland: Federal Data Protection and Information Commissioner (FDPIC), Feldeggweg 1, 3003 Bern.

If you have any questions about this Privacy Policy, please contact us. compliance@sumixx.com

Changes

This Privacy Policy will remain in effect except with respect to any changes in its provisions in the future, which will be in effect immediately after being posted on this page.

We reserve the right to update or change our Privacy Policy at any time, and you should check this Privacy Policy periodically. Your continued use of the Service after we post any modifications to the Privacy Policy on this page will constitute your acknowledgment of the modifications and your consent to abide and be bound by the modified Privacy Policy.