1 General
Protection of your personal data is very important to us. This Privacy Policy explains how Immero Softworks AB processes personal data, to what extent, for what purposes, and what rights you have.
We process personal data in accordance with the European General Data Protection Regulation (GDPR). Our employees and service providers are required to adhere to applicable data protection laws.
Data Controller
Immero Softworks AB
Riddarebolsvagen 11, 515 92 Kinnarumma
Email:
contact@immero.com
We will only process your personal data within the legal boundaries of GDPR and only for specified and legitimate purposes.
2 Data we collect
2.1 Scope of the data we collect when you visit our website
When you visit our website, the following data may be processed:
- Browser data such as date and time of access, referring URL, requested file, amount of data transmitted, user agent and version, operating system, IP address, and country of origin.
- Information regarding your cookie preferences.
- Web analytics data used to understand how visitors interact with the website.
We do not use this data to identify you as an individual.
2.2 Cookies
We use cookies to ensure basic website functionality and to understand how our website is used.
Cookies may include:
- Necessary cookies required for the website to function.
- Preference cookies such as remembering cookie consent.
- Analytics cookies, if enabled.
You can control or delete cookies through your browser settings. You can also withdraw your consent at any time through the cookie settings available on this website.
2.3 Cookie consent
We use Cookie Consent technology, an open source project by Silktide Ltd., to inform visitors about cookie usage. This tool does not transmit personal data to third parties.
2.4 Source of data
Data described above is automatically sent to our servers by your device as part of normal website usage.
2.5 Disclosure and use of personal data
Personal data may be shared with trusted service providers who assist us in operating our services. These providers act only on our instructions and do not use your data for their own purposes.
Examples of such providers include:
- Authentication services such as WorkOS.
- Hosting providers such as Loopia and Hetzner.
- Database providers such as PlanetScale and Convex.
- Internal tools such as Dropbox for backups.
Where personal data is transferred outside the EU or EEA, we ensure appropriate safeguards are in place, such as Standard Contractual Clauses or equivalent legal mechanisms.
We may also disclose personal data if required by law or governmental authorities.
2.6 Legal basis for processing
We process personal data on the following legal bases:
- Legitimate interest to operate, maintain, and improve our website.
- Consent for optional cookies and similar technologies.
- Legal obligation where required by law.
2.7 Obligation to provide personal data
There is no legal or contractual obligation to provide personal data when visiting our website. However, certain technical data is required for the website to function properly.
Automated decision-making, including profiling under Art. 22 GDPR, does not take place.
3 Duration of data storage
We process and store personal data only for as long as necessary.
- Technical data, such as IP addresses, is stored for a limited time to ensure website functionality and security.
- Cookies may be stored for up to two years, depending on type.
- If consent is given, data may be processed until consent is withdrawn.
In addition, we are subject to Swedish legal requirements for record retention:
- Bookkeeping records: up to 10 years.
- Contractual and tax-related records: up to 6 years.
- Legal claims: up to 3 to 30 years depending on circumstances.
After the applicable retention period, data is deleted or anonymized.
4 Your rights
You have the right to:
- Request access to your personal data under Art. 15 GDPR.
- Request correction of inaccurate data under Art. 16 GDPR.
- Request deletion of your data under Art. 17 GDPR.
- Request restriction of processing under Art. 18 GDPR.
- Receive your data in a structured, machine-readable format under Art. 20 GDPR.
- Object to processing under Art. 21 GDPR.
- Withdraw consent at any time under Art. 7 (3) GDPR.
- Lodge a complaint with a supervisory authority under Art. 77 GDPR.
To exercise your rights or for any questions regarding data processing, please contact contact@immero.com.
Exercising your rights is free of charge.
Last updated: April 2026