Privacy policy
I think it matters that you know what I do with your data. This page explains how I handle it.
Version 2.0, updated 29 August 2026
This is a translation for convenience. The Dutch version is the binding one.
HitzDigital builds and hosts websites for small businesses in the Netherlands and abroad, and helps with computer problems. That involves personal data: yours when you get in touch, and your visitors’ if I host your website. I handle it carefully and keep as little as possible. I follow the GDPR (the EU General Data Protection Regulation) and the Dutch implementing act.
Who is responsible for your data?
That depends on which data it is:
- For your own data (your name, email address, phone number, what you send me and your billing details once you become a client) I am responsible.
- For the data of your visitors and customers on a website I host for you, you are responsible. I process that data on your instructions. How that works is explained below under “Websites I host for you”.
What data do I keep about you?
Only what I really need in order to help you. Specifically:
- Who you are. Your name, email address and, if you give them, your phone number, company and town.
- What you need me for. A website, hosting, help or something else, plus your explanation and, if there is one, the link to your current website.
- Billing details. Only once you become a client: your name, address and what you bought.
- Technical data from this website. Anonymous visitor numbers and loading times, without cookies and without storing IP addresses. Dull, but useful for keeping the site fast and working.
I don’t ask for sensitive data, such as health or religious beliefs, and I don’t want it.
Why do I use your data?
- To answer your enquiry and get in touch with you.
- To make a demo, a quote or an appointment at your request.
- To carry out and invoice the job or the plan.
- To keep this website safe and fast. I do that with anonymous statistics.
- To meet my legal obligations, such as the retention period for the Dutch tax office.
The legal basis for that is the agreement with you (or the steps leading up to it, at your request), my legitimate interest in being able to answer a question and run the site, and the law where it requires something of me. I don’t use your data for advertising.
Who do I share your data with?
With as few parties as possible, and only where it’s needed.
The suppliers I use. These are the suppliers that work for me: the provider that hosts this website, the service that sends the contact form to me as an email, the provider that hosts my business email and my accounting package. I have agreements with all of them: they may only use your data to work for me, and they process it within the EU. Want to know exactly which suppliers those are? Send me an email at info@hitzdigital.nl.
WhatsApp. If you choose to reach me via WhatsApp, that conversation runs through WhatsApp (Meta Platforms Ireland) and WhatsApp’s privacy policy applies to it.
I never sell your data to third parties. Full stop.
How long do I keep your data?
No longer than necessary. What “necessary” means depends on the kind of data:
- Enquiries that don’t become a job. 12 months at most, then I delete them.
- Client details. For as long as the job or the plan runs, plus the time needed to wrap everything up properly.
- Invoices and accounts. 7 years. That’s a legal requirement.
- Our email exchange. For as long as it takes to help you properly, including when you come back later.
Websites I host for you
If I host your website, data about your visitors and customers passes through my systems too. Think of what someone fills in on your contact form, your business email and visitor statistics. You are the controller for that data; I am the processor and work on your instructions.
What that means in practice:
- I only use that data to keep your site and email working. Nothing else.
- I don’t share it with anyone, apart from the hosting provider your site runs on.
- The servers are in the Netherlands. Everything is sent encrypted and backed up daily.
- If you stop, or if you ask me to, I delete the data.
Together with the terms and conditions, these arrangements serve as the data processing agreement between us.
Where is your data stored?
In Europe, on well-secured servers. The websites I host are in the Netherlands.
How do I protect your data?
The connection to this website is encrypted (HTTPS). The contact form checks input on the server side and has a simple spam filter that records no personal data. Only I have access to the mailbox where enquiries arrive, and it’s protected with a strong password and two-step verification.
If something does go wrong with your data (a data breach), I report it within 72 hours to the Autoriteit Persoonsgegevens (the Dutch data protection authority) where that’s required. And if it affects you, I let you know personally as well.
Are decisions about you made by computers alone?
No. I read and answer every enquiry myself. There’s always a person involved: me.
Cookies
This website places no tracking or marketing cookies. The visitor statistics are cookieless and anonymous, so a cookie banner isn’t needed. If you pick the light or dark appearance yourself, your browser remembers that locally. That choice never leaves your device.
Your privacy rights
It’s your data. It’s only right that you have a say over it. You can:
- See what I have stored about you.
- Correct anything that isn’t right.
- Ask me to delete what I hold about you (apart from what I have to keep by law).
- Restrict what I may do with it.
- Take it to another provider (data portability).
- Object if there’s something you disagree with.
How do you do that? Send an email to info@hitzdigital.nl. You’ll get a reply as soon as possible and within a month at the latest.
I do want to be sure that you really are you. So I reply to the email address I know you by, and if in doubt I may ask an extra question. Not to be awkward, but to protect your data.
Questions or complaints?
Email me at info@hitzdigital.nl. I’m happy to help.
Think I’m getting it wrong? Then you can always go to the Autoriteit Persoonsgegevens (the Dutch data protection authority), the regulator responsible for these rules. You’ll find them at autoriteitpersoonsgegevens.nl.
Changes to this policy
I may adjust this policy now and then, for instance when the law changes or when I add to my services. The date at the top shows when I last changed something. For important changes I give clients advance notice.
Who am I?
HitzDigital, a sole proprietorship owned by Nathaniel, based in Puttershoek. Contact: info@hitzdigital.nl.