1. Controller
The data controller for this website (nipel.io) is NIPEL. For privacy requests contact: hello@nipel.io.
2. Scope
This Privacy Policy explains how we process personal data when you visit our website, contact us, or use public report pages. Processing follows the EU General Data Protection Regulation (GDPR / Regulation (EU) 2016/679) and applicable national law.
3. Data we process
- Contact data — name, email address and message content you send us (e.g. via mailto / email).
- Technical data — IP address, browser type, device information, pages visited, approximate location derived from IP, and timestamps (server / security logs).
- Cookie / preference data — your cookie consent choice stored locally in your browser.
- Report access data — if you open a shared report link, technical request data may be processed to deliver the page (including Firebase / hosting infrastructure where configured).
4. Purposes and legal bases
- Provide and secure the website — Art. 6(1)(f) GDPR (legitimate interest in operating a secure service).
- Respond to enquiries — Art. 6(1)(b) or (f) GDPR (pre-contractual steps / legitimate interest).
- Optional analytics cookies — Art. 6(1)(a) GDPR (consent), only if you accept non-essential cookies.
- Legal obligations — Art. 6(1)(c) GDPR where we must retain or disclose data.
5. Cookies
We use necessary cookies / local storage to remember cookie preferences and run core site functions. Optional cookies are used only with your consent. See the Cookie Policy for details and how to change your choice.
6. Recipients and processors
We may use infrastructure providers (hosting, CDN, database / Firebase, email) acting as processors under Art. 28 GDPR. Data may be processed in the EU/EEA or in third countries with appropriate safeguards (e.g. SCCs) where required.
7. Retention
We keep personal data only as long as needed for the purposes above: enquiry emails for the duration of the conversation and related follow-up; security logs for a limited period; consent records in your browser until you clear them or update your choice.
8. Your rights
Under the GDPR you may have the right to:
- access your personal data;
- rectify inaccurate data;
- erase data (“right to be forgotten”);
- restrict or object to processing;
- data portability;
- withdraw consent at any time (without affecting prior lawful processing);
- lodge a complaint with a supervisory authority in the EU/EEA.
To exercise these rights, email hello@nipel.io.
9. Children
The site is not directed at children under 16. We do not knowingly collect personal data from children.
10. Changes
We may update this Policy. The “Last updated” date at the top will change when we do. Continued use of the site after updates means you should review the revised Policy.