Biowest Nordic – Privacy Policy

Last updated: 1 December 2025
Company: Biowest Nordic (under establishment)
Website: https://biowest-nordic.net
Country of establishment: Denmark

Biowest Nordic (“we”, “us”, “our”) is committed to protecting the privacy and personal data of visitors, customers, and users of our website.
This Privacy Policy explains how we collect, use, store, share, and protect your personal data in accordance with the EU General Data Protection Regulation (GDPR) and the Danish Data Protection Act.

1. Data We Collect

1.1 Data You Provide Directly

We may collect and process the following personal data that you provide directly to us, for example through contact or quote request forms:

  • Name
  • Business or organisation name
  • Email address
  • Phone number
  • Any other information you choose to include in your message

1.2 Automatically Collected Data (Cookies & Tracking)

When you visit our website, cookies and similar technologies automatically collect certain information, such as:

  • IP address and approximate location (country/region)
  • Browser type and version
  • Device information and operating system
  • Pages visited, time and duration of visits, click paths
  • Referrer URL (the page that led you to our site)

This includes cookies from our analytics tools (Matomo, Microsoft Clarity), our security and performance provider (Cloudflare), and our consent management platform (CookieYes).

1.3 Data from Third Parties

We may receive limited information from the following third-party providers:

  • Matomo Analytics (self-hosted or cloud) – anonymised usage statistics
  • Microsoft Clarity – analytics and behaviour insights
  • Cloudflare – security, bot management and performance
  • CookieYes – cookie consent preferences

2. Purposes of Processing

We process personal data for the following purposes:

  • To operate, maintain and secure our website
  • To respond to enquiries and provide customer support
  • To prepare and send offers or quotes when requested
  • To analyse website traffic and improve user experience
  • To detect and prevent fraud and misuse of our services
  • To comply with legal obligations applicable in Denmark and the EU

We do not sell your personal data.

3. Legal Bases for Processing

Under GDPR, we rely on the following legal bases for processing your personal data:

  • Consent – for placing non-essential cookies (analytics, Clarity) and sending certain marketing communications.
  • Contractual necessity – when processing your data to respond to your quote request or to perform a contract with you.
  • Legitimate interests – for improving our website, maintaining IT security, and operating our business, where these interests are not overridden by your rights.
  • Legal obligation – when we need to comply with laws, e.g. bookkeeping or tax rules.

4. Sharing and Transfers of Data

We may share personal data with the following types of recipients:

  • Service providers such as hosting, analytics, and security providers (e.g. Matomo, Cloudflare, Microsoft Clarity).
  • Professional advisers (lawyers, accountants) where necessary.
  • Public authorities if required by law.

Some of these providers may be located outside the EU/EEA. In such cases, we will ensure that appropriate safeguards are in place, such as
Standard Contractual Clauses (SCCs) or equivalent mechanisms, to protect your data.

5. Data Retention

We retain personal data only for as long as necessary for the purposes described above:

  • Contact enquiries: normally up to 12 months after last interaction.
  • Analytics data: generally up to 13 months.
  • Cookies: according to their individual lifetimes, as set out in the Cookie Policy below.
  • Legal records (e.g. invoices): according to the mandatory retention periods under Danish law.

6. Your Rights under GDPR

You have the following rights regarding your personal data:

  • Right of access – to obtain a copy of your personal data we hold.
  • Right to rectification – to correct inaccurate or incomplete data.
  • Right to erasure – to request deletion of your data in certain circumstances.
  • Right to restriction of processing – to limit how we use your data in certain cases.
  • Right to object – to object to processing based on our legitimate interests or for direct marketing.
  • Right to data portability – to receive your data in a structured, commonly used format.
  • Right to withdraw consent – where processing is based on consent, you can withdraw it at any time.
  • Right to lodge a complaint – with the Danish Data Protection Agency (Datatilsynet).

To exercise any of these rights, please contact us using the details below.

7. Data Security

We take appropriate technical and organisational measures to protect your data, including:

  • Use of SSL/TLS encryption on our website.
  • Use of Cloudflare for security, DDoS protection and bot management.
  • Access control and authentication for internal systems.
  • Regular maintenance and monitoring of our infrastructure.

8. Contact Details

If you have any questions about this Privacy Policy or wish to exercise your data protection rights, please contact:

Email: info@biowest-nordic.net
Company: Biowest Nordic
Website: https://biowest-nordic.net