Skip to Content

PRIVACY POLICY

Effective Date: June 20, 2026
Last Updated: June 20, 20261. I

  1. ​1. INTRODUCTION AND CONTROLLER DETAILS

1.1. Purpose of this Policy

This Privacy Policy describes how Quantexim s.r.o. ("we", "us", or "our") collects, uses, processes, and protects your personal data when you visit our website quantexim.com (the "Site"), purchase our products, or use our services.

1.2. Data Controller

For the purposes of the General Data Protection Regulation (GDPR) (EU) 2016/679, the data controller responsible for your personal data is:

  • Company Name: Quantexim
  • Legal Form: s.r.o.
  • Registered Address: Nové sady 988/2, 602 00 Brno, Czech Republic
  • Registration Number: 
  • Contact Email: info@quantexim.com

​2. DATA WE COLLECT AND HOW WE COLLECT IT

We collect and process personal data only when necessary to provide a functional website, process your requests, execute contracts, or pursue our legitimate business operations.

2.1. Information You Provide Directly to Us
  • Account Registration: When you create an account on our platform, we collect your name, email address, password, and account preferences.
  • Purchases and Billing: When you buy products/services, we collect your billing address, shipping address, phone number, and payment preferences.
  • Contact Forms and Communication: If you contact us via our contact forms, live chat, or email, we collect your name, email address, phone number, and the content of your message.
2.2. Information Collected Automatically

When you navigate the Site, certain technical data is transmitted from your browser to our server automatically via architecture:

  • Log Data: IP address, browser type and version, operating system, referring URL, time and date of your visit, and pages viewed.
  • Cookies and Tracking: Detailed in Section 7 of this policy.

​3. LEGAL BASES AND PURPOSES OF PROCESSING

Under GDPR, we must have a valid legal basis to process your personal data. We rely on the following grounds:

3.1. Performance of a Contract (Art. 6(1)(b) GDPR)
  • To create and manage your customer account.
  • To process orders, deliver products, handle returns, and provide customer support.
3.2. Compliance with Legal Obligations (Art. 6(1)(c) GDPR)
  • To comply with tax, accounting, and anti-money laundering regulations.
  • To satisfy legal data retention requirements for commercial transactions.
3.3. Legitimate Interests (Art. 6(1)(f) GDPR)
  • To ensure the security, stability, and optimal technical performance of our platform.
  • To prevent fraud, abuse, or unauthorized access to our systems.
  • To conduct basic web analytics to improve user experience.
  • To assert, exercise, or defend against legal claims.
3.4. Consent (Art. 6(1)(a) GDPR)
  • To send marketing newsletters, promotional offers, or behavioral advertisements (where legally required or opted-in).
  • To deploy non-essential cookies (such as advanced analytics or marketing trackers).
3.5. Processing Corporate Representation Data

We process corporate contact details (names of company representatives, corporate emails, phone numbers, job titles) based on Art. 6(1)(f) GDPR (Legitimate Interest) to communicate effectively, negotiate contracts, and manage long-term commercial relationships between our enterprises.

4. ​OUR PLATFORM AND DATA ARCHITECTURE

Our website is hosted and managed using enterprise resource planning (ERP) system.

4.1. Integrated Data Processing

ERP acts as an integrated database. This means that data collected via the website (e.g., a contact form submission or an e-commerce sale) is instantly synchronized with our internal modules (CRM, Sales, Invoicing, and Invoicing/Accounting). This integration is carried out strictly to optimize contract execution and streamline operations based on our legitimate interest.

4.2. Hosting Infrastructure

Our ERP databases are hosted on cloud servers located in the European Union. If hosted within the EU, your data remains within the European Economic Area (EEA).

​5. DATA SHARING AND THIRD-PARTY RECIPIENTS

We do not sell, rent, or trade your personal data. We share data with third parties only when necessary to fulfill contracts, comply with the law, or protect our legitimate interests.

5.1. Categories of Service Providers
  • Hosting and Infrastructure Providers: To keep our instance running securely.
  • Payment Gateways: To process your credit card or bank transfers safely (e.g., Stripe , PayPal). We do not store full raw financial data on our servers.
  • Logistics and Shipping Companies: To deliver physical products to your address.
  • Communication Tools: To send transactional emails or marketing newsletters.
5.2. International Data Transfers

If any third-party provider processes data outside the EEA, we ensure a lawful transfer mechanism is in place, such as an EU Adequacy Decision or the execution of Standard Contractual Clauses (SCCs) approved by the European Commission.

​6. DATA RETENTION PERIODS

We store your personal data only as long as necessary to fulfill the purposes outlined in this policy, unless a longer retention period is required or permitted by law.

  • Customer Accounts: Maintained as long as your account is active, or until you request its deletion.
  • Order and Invoicing History: Retained for [e.g., 7 to 10 years] to comply with statutory tax, commercial, and financial record-keeping laws.
  • Contact Queries: Retained for [e.g., 1 year] after the final response to ensure proper follow-up, unless it transitions into a contract.

​7. COOKIES AND TRACKING TECHNOLOGIES

Our site uses cookies to ensure basic functionality and optimize your browsing experience.

7.1. Essential Cookies

These are strictly necessary to allow you to move around the website and use its features, such as managing your shopping cart sessions or staying logged into your secure portal. These do not require user consent.

7.2. Non-Essential Cookies (Analytics and Marketing)

We use tools like Google Analytics built-in lead tracking to analyze traffic patterns and user behavior. These cookies are disabled by default and will only fire if you give explicit, active consent through our cookie consent banner.

8. ​YOUR RIGHTS UNDER THE GDPR

You possess comprehensive statutory rights regarding your personal data. You can exercise these rights at any time by contacting us at info@quantexim.com.

  • Right of Access (Art. 15 GDPR): You can request a copy of the personal data we hold about you.
  • Right to Rectification (Art. 16 GDPR): You can update or correct inaccurate data directly inside your portal or request us to do so.
  • Right to Erasure / "Right to be Forgotten" (Art. 17 GDPR): You can request the deletion of your data, provided it is no longer required for legal compliance or contract execution.
  • Right to Restriction of Processing (Art. 18 GDPR): You can ask us to pause processing your data under certain legal conditions.
  • Right to Data Portability (Art. 20 GDPR): You can request your data in a structured, commonly used, machine-readable format.
  • Right to Object (Art. 21 GDPR): You have the right to object to processing based on legitimate interests or direct marketing.
  • Right to Withdraw Consent: Where processing is based on consent, you may withdraw it at any time without affecting prior lawfulness.

​9. PROTECTION OF OUR BUSINESS INTERESTS AND LIMITATION OF LIABILITY

To protect our operational security and business integrity, the following rules apply to all interactions with our Privacy Policy:

9.1. Strict Identity Verification

To protect customer data from unauthorized disclosure, we reserve the right to request reasonable proof of identity before processing any GDPR data rights request. If you cannot conclusively prove your identity, we reserve the right to deny the request to prevent malicious data breaches.

9.2. Limitation of Liability for Third-Party Links

Our website may contain links to external third-party websites or third-party apps/modules. We do not control and are not responsible for the privacy practices, code integrity, or content of external entities.

9.3. Defending Claims and Fraud Prevention

We reserve the absolute right to retain, use, and share specific personal data with legal counsel, law enforcement, or debt collection agencies if it is deemed strictly necessary to detect fraud, prevent cyberattacks on our infrastructure, or defend our business against groundless legal claims.

​10. CHANGES TO THIS PRIVACY POLICY

We may update this Privacy Policy from time to time to reflect changes in our system configuration, data processing practices, or legal obligations. Any updates will be published on this page with a revised "Last Updated" date. We encourage you to review this policy periodically.

​11. RIGHT TO LODGE A COMPLAINT

If you believe that our processing of your personal data infringes the GDPR, you have the right to lodge a complaint with a competent data protection supervisory authority. You may file this in the EU Member State of your habitual residence, place of work, or the place of the alleged infringement.