Privacy Policy
Effective Date: 1st June 2025
Company: Serpier ApS, registered in Denmark
Contact Email: hello@serpier.com
1. Introduction
Serpier ApS ("we", "us", "our") respects your privacy and is committed to protecting your personal data. This Privacy Policy explains how we collect, use, store, and share personal data when you use the Serpier platform ("Platform"). We process personal data in accordance with the General Data Protection Regulation (GDPR) and applicable Danish law.
2. What Data We Collect
We collect the following categories of data:
a) Account Information
- Name
- Email address
- Organization name and associated users
- User role (Owner, Admin, Member)
b) Transaction Data
- Purchase history
- Billing details (processed via Stripe)
c) Technical Data
- IP address
- Browser type and version
- Device information
- Platform usage data (e.g. clicks, logins, page visits)
d) Communication Data
- Emails and messages exchanged with us
3. How We Use Your Data
We use your personal data to:
- Provide access to and manage your account
- Process payments and orders
- Maintain Platform security and integrity
- Improve the user experience
- Send service-related notifications and updates
- Enforce our Terms of Service
- Comply with legal obligations
4. Legal Basis for Processing
We process your data under one or more of the following legal grounds:
- Contractual necessity – to provide the services you signed up for
- Legitimate interest – to improve the Platform, prevent abuse, and secure operations
- Legal obligation – to comply with Danish accounting and legal requirements
- Consent – for marketing communications (if you opt in)
5. Sharing Your Data
We only share your personal data with:
- Service providers (e.g., Stripe for payment processing, cloud hosting providers)
- Publishers when necessary to complete an order (e.g., article publishing)
- Authorities or legal bodies if required by law
We do not sell your personal data to third parties.
6. International Transfers
Where data is transferred outside the EU/EEA, we ensure adequate protection through Standard Contractual Clauses or other approved safeguards.
7. Data Retention
We retain your personal data only for as long as necessary to fulfill the purposes for which it was collected, including legal, accounting, or reporting obligations.
8. Your Rights
Under GDPR, you have the right to:
- Access your data
- Correct inaccuracies
- Request deletion ("right to be forgotten")
- Restrict processing
- Object to processing
- Data portability
- Withdraw consent (where processing is based on consent)
- Lodge a complaint with the Danish Data Protection Agency (Datatilsynet)
9. Cookies and Tracking Technologies
We use cookies and similar technologies on our website and Platform. Some cookies are strictly necessary for the site to function and ensure security; these do not require consent. Non-essential cookies (e.g., analytics) require your consent before they are set.
9.1 Cookie Consent
- On your first visit, we present a banner allowing you to choose: “Accept only required” (reject non-essential cookies) or “Accept all” (consent to non-essential cookies).
- You can change your choices at any time via the “Cookie Settings” link available on every page. Withdrawal of consent is as easy as giving it and takes effect immediately.
9.2 Categories of Cookies
- Strictly necessary: enable core functionality (e.g., security, load balancing, login). These are always active and do not require consent.
- Analytics (PostHog): help us understand usage to improve our services. These only run after you consent.
9.3 Cookies We Use
- Cloudflare: cfuvid (security and bot management; strictly necessary; session/persistent depending on challenge).
- PostHog (first-party): ph_phc* (analytics; set only after consent; typical lifespan up to 12 months), local/session storage used for product analytics features (only after consent or in privacy-preserving mode).
9.4 Managing Your Choices
- “Cookie Settings” lets you opt in/out of analytics and embedded media at any time.
- You can also clear cookies via your browser settings; doing so may reset your banner choices.
- Processors and Subprocessors
We engage third parties to process data on our behalf, including:
• Payment processing: Stripe.
• Hosting and infrastructure: cloud providers.
• Analytics: PostHog (EU).
Each processor is bound by a data processing agreement and appropriate safeguards. - Children’s Data
Our services are not directed to children under 13. If you believe a child has provided us personal data, contact privacy@serpier.com. - Security
We implement appropriate technical and organizational measures to protect personal data, including access controls, encryption in transit, and regular reviews of our security posture. - Changes to This Policy
We may update this policy from time to time. Significant changes will be communicated via the website or by email where appropriate. The latest version is always available on this page.
To exercise any of these rights, contact us at privacy@serpier.com.
To update your cookie preferences please click here.
