Your data, handled with care.
Information on data protection in accordance with the General Data Protection Regulation (GDPR)
Data protection is important to us. This Privacy Policy explains how APX REVOPS LTD collects, uses, and protects your personal data when you visit our website or use our services. We are committed to complying with the EU General Data Protection Regulation (GDPR) and other applicable data protection laws.
1. Controller and Data Protection Officer
The controller responsible for data processing on this website is:
APX REVOPS LTD
Gladstonos 16
8046 Paphos
Cyprus
Registration Number: HE490307
Email: privacy@apx-revops.com
2. Collection and Storage of Personal Data
2.1 When Visiting Our Website
When you visit our website, our web server automatically collects and stores information in server log files. This data includes:
- Browser type and version
- Operating system used
- Referrer URL (previously visited page)
- Hostname of the accessing computer
- IP address
- Date and time of the request
Legal basis: Art. 6 para. 1 lit. f GDPR (legitimate interest in ensuring system security and website functionality).
Storage duration: Log files are automatically deleted after 7 days.
2.2 Contact Forms and Email Communication
When you contact us via contact form or email, the data you provide (name, email address, message content) will be stored for the purpose of processing your inquiry and for potential follow-up questions.
Legal basis: Art. 6 para. 1 lit. a GDPR (consent) or Art. 6 para. 1 lit. b GDPR (necessary for contract performance).
Storage duration: Until the purpose for storage no longer applies or you request deletion.
2.3 Cookies
Our website uses cookies to make your visit more user-friendly. Cookies are small text files that are stored on your device and allow certain information to be saved.
We use the following types of cookies:
- Strictly necessary cookies: Required for basic website functionality
- Functional cookies: Enable enhanced features and personalization
- Analytics cookies: Help us understand how visitors interact with our website (only with your consent)
- Marketing cookies: Used to measure the effectiveness of our advertising, for example the LinkedIn Insight Tag (only with your consent)
You can configure your browser to refuse all cookies or to indicate when a cookie is being sent. However, some website features may not function properly without cookies.
2.4 LinkedIn Insight Tag
Our website uses the Insight Tag of LinkedIn Ireland Unlimited Company, Wilton Place, Dublin 2, Ireland ("LinkedIn"). The Insight Tag is only activated after you have given your consent via our cookie banner (Art. 6 (1) (a) GDPR). You can withdraw your consent at any time with effect for the future.
When active, the Insight Tag creates a connection to LinkedIn and processes, among other things, the URL of the page visited, the referrer URL, your IP address (shortened or hashed), device and browser properties, and a timestamp. If you are a LinkedIn member, LinkedIn may associate these events with your LinkedIn account. We use this data for conversion measurement of our LinkedIn campaigns, for retargeting, and for aggregated demographic reports about website visitors. We do not receive any personal data of individual visitors through this; LinkedIn provides us with aggregated reports only.
LinkedIn removes direct identifiers within seven days and deletes the remaining pseudonymised data within 180 days. Data may be transferred to LinkedIn Corporation in the United States; the transfer is safeguarded by the EU Standard Contractual Clauses and LinkedIn's certification under the EU-U.S. Data Privacy Framework.
Details can be found in the LinkedIn Privacy Policy. As a LinkedIn member you can additionally object to the use of your data for advertising purposes in your LinkedIn settings.
3. Purpose of Data Processing
We process your personal data for the following purposes:
- Providing and maintaining our website
- Responding to your inquiries and requests
- Providing our consulting and engineering services
- Improving our website and services
- Complying with legal obligations
- Preventing fraud and ensuring security
4. Data Sharing and Third Parties
We do not sell your personal data to third parties. We may share your data with the following categories of recipients:
- Hosting, Netlify Inc.: 512 2nd Street, Suite 200, San Francisco, CA 94107, USA. Netlify operates this website and its content delivery network. Server log data described in section 2.1 is processed here. Legal basis: Art. 6 (1) (f) GDPR (our legitimate interest in a secure, performant website). A data processing agreement is in place and transfers to the USA are safeguarded by the EU Standard Contractual Clauses.
- Form submissions, Netlify Forms: operated by Netlify Inc. as above. When you submit the contact or waitlist form, the fields you complete are stored by Netlify, forwarded to us by email and passed into our CRM (see below). Legal basis: Art. 6 (1) (b) GDPR where you are asking about our services, otherwise Art. 6 (1) (f).
- Appointment scheduling, Cal.com, Inc.: 2261 Market Street #4382, San Francisco, CA 94114, USA. Our booking links open a scheduling page hosted by Cal.com. If you book an appointment, Cal.com processes the name, email address and any details you enter, together with your IP address and browser data. This only happens if you actively follow a booking link. Legal basis: Art. 6 (1) (b) GDPR. A data processing agreement is in place and transfers to the USA are safeguarded by the EU Standard Contractual Clauses. See the Cal.com privacy policy.
- CRM, Salesforce: Salesforce, Inc., Salesforce Tower, 415 Mission Street, San Francisco, CA 94105, USA, with EU processing on Salesforce infrastructure in the European Union. Contact and waitlist submissions are forwarded from Netlify into our own CRM so we can answer them and keep a record of the request. The data is the same you entered in the form. Legal basis: Art. 6 (1) (b) GDPR where you are asking about our services, otherwise Art. 6 (1) (f). A data processing agreement is in place and transfers outside the EU are safeguarded by the EU Standard Contractual Clauses. See the Salesforce privacy statement.
- Marketing, LinkedIn: see section 2.4. Only with your consent.
- Legal authorities: When required by law or to protect our legal rights
We do not use any other analytics, tracking or advertising services. All processors are contractually bound to comply with GDPR requirements and process data only according to our instructions.
5. International Data Transfers
Our own team works from within the European Union. Some of the processors named in section 4, specifically Netlify, Cal.com, Salesforce and LinkedIn, are based in the United States or may transfer data there. Where data is transferred outside the EU/EEA, we ensure an adequate level of protection through:
- EU Standard Contractual Clauses
- Adequacy decisions by the European Commission
- Other approved safeguards under GDPR
6. Your Rights Under GDPR
Under the GDPR, you have the following rights regarding your personal data:
Right of Access (Art. 15 GDPR)
You have the right to obtain confirmation as to whether personal data concerning you is being processed and to access such data.
Right to Rectification (Art. 16 GDPR)
You have the right to request correction of inaccurate personal data.
Right to Erasure (Art. 17 GDPR)
You have the right to request deletion of your personal data under certain circumstances.
Right to Restriction (Art. 18 GDPR)
You have the right to request restriction of processing of your personal data.
Right to Data Portability (Art. 20 GDPR)
You have the right to receive your personal data in a structured, commonly used format.
Right to Object (Art. 21 GDPR)
You have the right to object to processing of your personal data based on legitimate interests.
Right to Withdraw Consent
Where processing is based on consent, you have the right to withdraw consent at any time.
To exercise any of these rights, please contact us at privacy@apx-revops.com
7. Right to Lodge a Complaint
If you believe that the processing of your personal data violates the GDPR, you have the right to lodge a complaint with a supervisory authority, in particular in the EU member state of your habitual residence, place of work, or place of the alleged infringement.
Supervisory authority for Cyprus:
Office of the Commissioner for Personal Data Protection
1 Iasonos Street
1082 Nicosia
Cyprus
www.dataprotection.gov.cy
8. Data Security
We implement appropriate technical and organizational measures to protect your personal data against accidental or unlawful destruction, loss, alteration, unauthorized disclosure, or access. These measures include:
- SSL/TLS encryption for data transmission
- Regular security assessments and updates
- Access controls and authentication mechanisms
- Employee training on data protection
- Secure data storage and backup procedures
9. Children's Privacy
Our services are not directed to children under the age of 16. We do not knowingly collect personal data from children under 16. If you become aware that a child has provided us with personal data, please contact us, and we will take steps to delete such information.
10. Changes to This Privacy Policy
We may update this Privacy Policy from time to time to reflect changes in our practices or for other operational, legal, or regulatory reasons. We will notify you of any material changes by posting the new Privacy Policy on this page and updating the "Last updated" date below.
11. Contact Us
If you have any questions, concerns, or requests regarding this Privacy Policy or our data processing practices, please contact us:
Email: privacy@apx-revops.com
Phone: +49 402 2632 0690
Mail: APX REVOPS LTD, Gladstonos 16, 8046 Paphos, Cyprus
Last updated: April 2026