Privacy policy

Last updated: 12 August 2026

1. Controller

Neuronize GmbH, Heimstättenstraße 31, 9020 Klagenfurt, Austria
Additional office: Brückenkopfgasse 1, 8020 Graz, Austria
Email: office@neuronize.at
Telephone: +43 660 2104844

Further company information is available in our legal notice.

2. Principles and security

We process only data required for its stated purpose. The website is delivered over TLS/HTTPS, and access to personal data is limited to authorised persons. We do not use automated decision-making or advertising profiling.

3. Website delivery and server logs

When you access the website, technical logs may process the IP address, timestamp, requested address, transferred volume, status code, referrer, browser and operating-system information. This is necessary for secure, stable delivery and abuse detection. The legal basis is our legitimate interest under Article 6(1)(f) GDPR. Logs are normally erased after no more than 14 days unless a specific security incident requires longer retention.

4. Strictly necessary storage

NamePurposeRetention
i18nextRemembers the selected language after a language change.Browser session
neuronize_privacy_consentStores the selected privacy setting, consent-notice version, decision time, and any expiry time, without a user ID.A refusal until changed or deleted; consent for no more than six months

These entries provide explicitly requested functionality. Their legal basis is Section 165(3) Austrian TKG 2021 and Article 6(1)(f) GDPR. They contain no identifier used for advertising.

5. Optional privacy-protected session recording with OpenReplay

Only after your explicit consent, we use a self-hosted OpenReplay instance at openreplay.neuronize.at to identify interaction obstacles and technical problems on the homepage and ERP feature catalogue. The legal bases are Section 165(3) Austrian TKG 2021 and Article 6(1)(a) GDPR.

The recording is restricted as follows:

Processing may include the masked page structure, page path, click, pointer and scroll interactions, viewport, timestamps, a random session identifier, and the IP address during the technical connection to the recording server. We therefore do not describe this processing as completely anonymous. Our deployment policy requires OpenReplay infrastructure to operate exclusively within the EU/EEA. No third-country transfer is intended. Recordings are erased after no more than 14 days.

You can withdraw consent or completely delete the saved choice at any time through “Privacy settings” in the footer. Withdrawal immediately stops the current recording and applies to future processing; it does not affect the lawfulness of processing performed before withdrawal. The website remains fully usable without consent. Consent expires after no more than six months and is requested again after a material change to this notice.

6. Contact enquiries

For contact enquiries, we process your name, email address, message, and choice about receiving a copy. Data is transferred through Neuronize GmbH's internal mail infrastructure to answer your request. The legal basis is Article 6(1)(b) GDPR for pre-contractual enquiries and Article 6(1)(f) GDPR for other communication. Enquiries not subject to statutory retention are normally erased within twelve months after completion; business records subject to statutory retention may be kept for up to seven years.

7. Applications

For applications, we process your name, email address, telephone number, and message to conduct the recruitment process under Article 6(1)(b) GDPR. The application route is completely excluded from session recording. Application data is normally erased six months after the process ends unless legal claims, employment, or separate consent for longer candidate-pool retention requires otherwise.

8. Recipients and processors

Carefully selected hosting, infrastructure, email, and maintenance providers may process data as processors under Article 28 GDPR where required. They receive only necessary access and are contractually bound to confidentiality, security, and purpose limitation. Third-country transfers occur only where Articles 44 et seq. GDPR are satisfied. External links transfer data to their operator only when you actively open them.

9. Your rights

Subject to the GDPR, you may request access, rectification, erasure, restriction, portability, or object to processing. Consent may be withdrawn at any time for future processing. Contact office@neuronize.at.

You may also complain to the Austrian Data Protection Authority: Barichgasse 40–42, 1030 Vienna, dsb@dsb.gv.at, www.dsb.gv.at.

Privacy policy | Neuronize GmbH