Privacy Policy
How we process personal data – in line with the GDPR.
Last updated: June 2026
1. Data controller
The data controller is NORMEXA – Food Safety Consulting (the "Company"). Email: info@normexa.com.
2. What data we process
- Identification and contact data submitted via the contact and training enrollment forms (name, company, email, phone).
- Information you provide in the message body of an enquiry.
- Technical data necessary for operating the website (IP address, browser type, anonymised usage data).
3. Purposes of processing
- Replying to enquiries and providing requested information.
- Contract preparation and performance.
- Compliance with legal obligations (accounting, tax).
- Legitimate interests in operating and securing the website.
4. Legal basis
We process personal data on the basis of (a) your consent, (b) contractual necessity, (c) legal obligation and (d) legitimate interest, depending on the context.
5. Retention
Enquiry data is retained for the time necessary to handle the request and any subsequent business communication, generally no longer than 3 years from the last contact unless a longer retention is required by law.
6. Your rights
You have the right to access, rectify, erase or restrict the processing of your personal data, the right to data portability and the right to object. To exercise these rights, write to info@normexa.com. You also have the right to lodge a complaint with the Office for Personal Data Protection of the Slovak Republic.
7. Recipients
We do not sell or share personal data with third parties for marketing purposes. Data may be processed by trusted IT service providers (hosting, email) who act on our behalf and under appropriate contractual safeguards.
8. International transfers
Where personal data is transferred outside the EEA, we apply standard contractual clauses or rely on adequacy decisions of the European Commission.
9. Cookies
For information on cookies used on this website, see our Cookie policy.