Privacy Policy of the Cryptix DORA Shop Online Store

Date of last revision: September 5, 2025

1. INTRODUCTION AND CONTROLLER'S DETAILS

This Privacy Policy (hereinafter: “Policy“) describes how the company Cryptix AG, a company incorporated under the laws of Switzerland with its registered office at Bundesstrasse 5, 6300 Zug, registration number: CHE-361.505.762, VAT identification number: CHE-361.505.762 MWST  (hereinafter: “Controller” or “we“), collects, stores, uses, and protects the personal data of users and buyers (hereinafter: “data subject” or “you“) of the Cryptix DORA Shop online store (hereinafter: “Online Store“), accessible at the web address dora.cryptix.ag.

We are committed to protecting your privacy and processing your personal data lawfully, fairly, and transparently in accordance with the General Data Protection Regulation (Regulation (EU) 2016/679, hereinafter: “GDPR“) and the applicable Slovenian legislation.

2. TYPES OF PERSONAL DATA WE COLLECT

In the course of operating the Online Store, we collect the following types of personal data:

  • Data for purchase execution and invoicing: First and last name, company name (if applicable), address, tax number or VAT ID, email address.
  • Contact data: Email address and any other information you provide to us through contact forms or direct communication.
  • Payment data: We do not collect or store your credit card details or other payment instrument data. The entire payment process is conducted through the secure servers of our external payment service providers (e.g., Stripe, PayPal). We only receive confirmation of a successful payment and basic transaction details.
  • Technical data: Information about your device, IP address, browser type, operating system, and access times. We collect this data automatically using cookies and similar technologies to ensure the functionality and security of the website.

3. LEGAL BASES AND PURPOSES OF DATA PROCESSING

We process your personal data based on the following legal bases and for the following purposes:

  • Performance of a contract (Article 6(1)(b) of the GDPR):
    • Purpose: To process your order, deliver the purchased digital products (sending download links), issue an invoice, and maintain records of purchases.
    • Data: Data for purchase execution, contact data.
  • Compliance with a legal obligation (Article 6(1)(c) of the GDPR):
    • Purpose: To store invoices and related data in accordance with tax and accounting legislation.
    • Data: Data on issued invoices.
  • Legitimate interest (Article 6(1)(f) of the GDPR):
    • Purpose: To ensure the security of the Online Store, prevent abuse and fraud, optimize the website’s performance, and respond to your inquiries submitted via contact forms.
    • Data: Technical data, contact data.
  • Consent (Article 6(1)(a) of the GDPR):
    • Purpose: To send e-newsletters about our offers, news, and special promotions, only if you have explicitly subscribed.
    • Data: Email address.
    • You can withdraw your consent at any time by clicking the unsubscribe link in the received message or by contacting us.

4. USERS AND DATA TRANSFER

We do not sell or transfer your personal data to third parties, except in the following cases:

  • External processors: We share data with our trusted partners who provide essential services for the operation of the Online Store. These include:
    • Payment service providers (e.g., Stripe, Adyen, PayPal).
    • Website and email hosting providers.
    • Accounting service providers.
    • We have concluded data processing agreements with these partners, obliging them to protect the data in accordance with the GDPR.
  • Legal authorities: We may disclose data to public authorities based on their reasoned written request for the purposes of conducting specific proceedings.

As a rule, data is not transferred to third countries (outside the EU/EEA). If such a transfer were to occur, we would ensure appropriate safeguards (e.g., standard contractual clauses).

5. DATA RETENTION PERIODS

We retain personal data only for as long as necessary to fulfill the purpose for which it was collected.

  • Data collected on the basis of a contract is kept for 5 years after the performance of the contract (general statute of limitations).
  • Invoices are kept for 10 years from the end of the year to which they relate, in accordance with tax legislation.
  • Data collected based on your consent (e-newsletters) is kept until you withdraw your consent.
  • Data collected based on legitimate interest is kept as long as the interest exists or until a potential objection is raised.

6. YOUR RIGHTS REGARDING PERSONAL DATA

In accordance with the GDPR, you have the following rights:

  • Right of access: You have the right to check whether we are processing your data and to request access to it.
  • Right to rectification: You can request the correction of inaccurate or incomplete data.
  • Right to erasure (“right to be forgotten”): You can request the erasure of your personal data under the conditions set out in the GDPR.
  • Right to restriction of processing: You can request the restriction of the processing of your data in certain cases.
  • Right to data portability: You have the right to receive your data in a structured, commonly used, and machine-readable format and to transmit it to another controller.
  • Right to object: Where we process data based on a legitimate interest, you can object to such processing.

You can exercise all the above rights by sending a written request to our email address: hello@cryptix.ag.

If you believe that your rights regarding personal data protection have been violated, you have the right to lodge a complaint with the Information Commissioner of the Republic of Slovenia (address: Dunajska cesta 22, 1000 Ljubljana, email: gp.ip@ip-rs.si).

7. DATA SECURITY

To ensure the security of your personal data, we implement appropriate technical and organizational measures, such as the use of an SSL certificate, data encryption, regular software updates, and restricted access to data.

8. COOKIES

Our Online Store uses cookies to ensure the basic functionality of the site, improve the user experience, and analyze traffic. Upon your first visit, you will be asked to consent to the use of non-essential cookies. More information is available in our Cookie Policy (if it exists) or in the cookie notice.

9. CHANGES TO THE PRIVACY POLICY

We reserve the right to update this Policy from time to time. Any changes will be published on this website along with the effective date. We recommend that you regularly review the content of this Policy.

10. CONTACT

For any questions regarding this Policy or the exercise of your rights, you can contact us at:

Cryptix AG

Bundesstrasse 5

6300 Zug, Switzerland

Email address: hello@cryptix.ag

Get the Free Checklist!

See what out templates have to offer for your business. Customize it by using your personal Agent