Privacy Policy

How we collect, use, and protect your personal data

Last Updated: January 2025 | Effective Date: January 1, 2025

1. Introduction

Swiss-Graft® ("we," "our," or "us") is committed to protecting your privacy and ensuring the security of your personal data. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you visit our website swiss-graft.com (the "Website") or interact with our services.

We comply with the General Data Protection Regulation (GDPR), Swiss Federal Data Protection Act (FADP), and other applicable international data protection laws.

2. Data Controller

The data controller responsible for your personal data is:

Swiss-Graft®
Email: privacy@swiss-graft.com
Website: www.swiss-graft.com

3. Information We Collect

3.1 Information You Provide

We collect information that you voluntarily provide when you:

  • Fill out our contact form
  • Request product information or samples
  • Subscribe to our newsletter
  • Communicate with us via email

This information may include:

  • Name and professional title
  • Email address
  • Phone number
  • Company/organization name
  • Message content and inquiries

3.2 Automatically Collected Information

When you visit our Website, we may automatically collect:

  • IP address (anonymized where required)
  • Browser type and version
  • Operating system
  • Pages visited and time spent
  • Referring website
  • Device information

4. How We Use Your Information

We use your personal data for the following purposes:

  • Communication: To respond to your inquiries and provide requested information about our products
  • Service Delivery: To process sample requests and fulfill business inquiries
  • Marketing: To send newsletters and product updates (with your consent)
  • Website Improvement: To analyze usage patterns and improve our website functionality
  • Legal Compliance: To comply with legal obligations and protect our rights

5. Legal Basis for Processing (GDPR)

We process your personal data based on:

  • Consent: When you voluntarily provide information through our contact form or subscribe to communications
  • Contract Performance: When processing is necessary to fulfill a contract or respond to your request
  • Legitimate Interests: For website analytics and improving our services, provided it does not override your rights
  • Legal Obligation: When required to comply with applicable laws

6. Cookies and Analytics

Our website uses cookies and Google Analytics to improve your browsing experience and understand how visitors use our site.

6.1 Types of Cookies

  • Essential Cookies: Required for website functionality
  • Analytics Cookies: Help us understand website usage (Google Analytics)
  • Preference Cookies: Remember your settings and choices

6.2 Google Analytics

We use Google Analytics 4 (GA4) to collect anonymized information about website usage. Google Analytics uses cookies to collect non-personally identifiable information. You can opt out of Google Analytics by installing the Google Analytics Opt-out Browser Add-on.

7. Data Sharing and Disclosure

We do not sell your personal data. We may share your information with:

  • Service Providers: Third-party vendors who assist with website hosting, email services, and analytics (subject to confidentiality agreements)
  • Legal Requirements: When required by law, court order, or governmental authority
  • Business Transfers: In the event of a merger, acquisition, or sale of assets

8. International Data Transfers

Your data may be transferred to and processed in countries outside the European Economic Area (EEA). When transferring data internationally, we ensure appropriate safeguards are in place, including:

  • Standard Contractual Clauses (SCCs) approved by the European Commission
  • Adequacy decisions for countries with adequate data protection
  • Binding Corporate Rules where applicable

9. Data Retention

We retain your personal data only as long as necessary for the purposes outlined in this policy:

  • Contact Form Inquiries: 3 years after last interaction
  • Newsletter Subscriptions: Until you unsubscribe
  • Analytics Data: 26 months (Google Analytics default)
  • Legal Records: As required by applicable law

10. Your Rights (GDPR)

Under GDPR, you have the following rights regarding your personal data:

  • Right to Access: Request a copy of the personal data we hold about you
  • Right to Rectification: Request correction of inaccurate or incomplete data
  • Right to Erasure: Request deletion of your personal data ("right to be forgotten")
  • Right to Restriction: Request limitation of processing your data
  • Right to Data Portability: Receive your data in a structured, machine-readable format
  • Right to Object: Object to processing based on legitimate interests or direct marketing
  • Right to Withdraw Consent: Withdraw consent at any time (without affecting prior processing)

To exercise these rights, please contact us at privacy@swiss-graft.com. We will respond within 30 days.

11. Data Security

We implement appropriate technical and organizational measures to protect your personal data, including:

  • SSL/TLS encryption for data transmission
  • Secure server infrastructure
  • Access controls and authentication
  • Regular security assessments

However, no method of transmission over the Internet is 100% secure. While we strive to protect your data, we cannot guarantee absolute security.

12. Children's Privacy

Our Website is not intended for children under 16 years of age. We do not knowingly collect personal data from children. If you believe we have inadvertently collected information from a child, please contact us immediately.

13. Changes to This Policy

We may update this Privacy Policy periodically to reflect changes in our practices or legal requirements. We will post the updated policy on this page with a revised "Last Updated" date. Significant changes will be communicated via email or website notice.

14. Supervisory Authority

If you are not satisfied with our response to your privacy concerns, you have the right to lodge a complaint with a supervisory authority. For EU residents, you may contact your local Data Protection Authority. For Swiss residents, you may contact the Federal Data Protection and Information Commissioner (FDPIC).

Contact Us About Privacy

If you have questions about this Privacy Policy or wish to exercise your rights:

Email: privacy@swiss-graft.com

General Inquiries: info@swiss-graft.com