Legal
Privacy notice
Draft – please have this reviewed by a lawyer before publishing and complete the parts marked […].
1. Data controller
The controller responsible for processing personal data via app.alignz.com is Pascal Rossi (alignz), Meierenaustrasse 5c, 9443 Widnau, Switzerland.
Contact: hello@alignz.com · +41 79 530 74 60.
2. Scope
This notice explains how we process personal data when you use our client portal, view an invoice or pay online. It applies to the application at app.alignz.com and alignz subdomains (e.g. pay.alignz.com).
3. What data we process
Master and contact data: name, company, address, email and phone, as needed for the business relationship.
Invoice and payment data: invoice numbers, line items, amounts, payment references, due dates and payment status.
For online payments: card details are processed solely by our payment provider (Stripe). We do not store full card numbers.
Usage and log data: technically necessary session data and server logs (e.g. IP address, timestamp) generated during operation.
Communication: the content of emails and messages you send us via the portal or directly.
4. Purposes and legal bases
We process this data to perform contracts (deliver services, issue invoices, process payments), to meet legal obligations (in particular accounting and retention duties) and on the basis of our legitimate interest in a secure, working service.
The Swiss Data Protection Act (revDSG) and, where applicable, the EU General Data Protection Regulation (GDPR) apply.
5. Payment processing (Stripe)
Online card payments are handled via Stripe (Stripe Payments Europe, Ltd. / Stripe, Inc.). When you pay online, your payment data is transmitted directly to Stripe and processed under their privacy policy: https://stripe.com/privacy.
Stripe may also transfer data to the United States. We receive payment confirmations from Stripe, but no full card details.
6. Hosting and technical providers
The application is operated with a hosting provider with servers in the EU/Switzerland. These providers process data on our behalf and are contractually bound to confidentiality.
Additional providers may be used to send email notifications. [Please add provider and location.]
7. Cookies
We use only technically necessary cookies to keep you signed in during a session. There is no tracking and no advertising analytics.
8. Retention
We retain invoice and business records in line with statutory retention periods (typically 10 years in Switzerland). Other data is deleted once it is no longer needed for the purposes described.
9. Disclosure and international transfers
We disclose data to third parties only where necessary for contract and payment processing (e.g. Stripe), where legally required, or where you have consented. For transfers to countries without an equivalent level of protection, we rely on appropriate safeguards (e.g. standard contractual clauses).
10. Your rights
You have the right to access, rectify, delete and restrict the processing of your personal data and, where applicable, to data portability and objection. To exercise these rights, contact us at the address above.
You may also lodge a complaint with the competent supervisory authority (in Switzerland: the Federal Data Protection and Information Commissioner, FDPIC).
11. Contact
For privacy questions, contact us at hello@alignz.com.
12. Changes
We may update this privacy notice to reflect changes in the law or our processes. The current version published here applies.