Noxtech AI
Back to home

Privacy Policy

noxtechai.com website and related services

1. Details of the data controller

Controller

Company name Kft.

Registered seat

address

Company registration no.

number

Tax number

tax number

Website

noxtechai.com

Data protection contact

name, e-mail address

Phone

phone number

This notice explains, in plain terms, what personal data we process when you use our website, request a quote, get in touch with us, or work with us as a client. Processing is governed by Regulation (EU) 2016/679 (the GDPR), Hungarian Act CXII of 2011 on the Right of Informational Self-Determination and Freedom of Information (the "Infotv."), and other applicable legislation.

Important: if you use our services (for example a chatbot, a voice assistant, or document processing) as the customer or partner of a business, that business processes your data as the data controller; we act on its instructions, as a data processor. In that case, that business's own privacy notice applies, and you should submit any request to it. If you send it to us instead, we will forward it on.

2. The processing activities we carry out

Purpose

Contact requests, quote requests, demo requests, and scheduling a meeting

Data processed

Name, e-mail address, phone number, company name, job title, the content of the message

Legal basis

GDPR Art. 6(1)(b) (steps prior to entering into a contract) or (f) (legitimate interest: responding to the enquiry)

Retention

1 year from the last contact; for a concluded contract, as set out under contractual processing

Recipients, processors

e-mail and CRM provider, hosting provider

Purpose

Newsletter and direct marketing

Data processed

Name, e-mail address, the time and source of sign-up

Legal basis

GDPR Art. 6(1)(a) (consent); Section 6 of Hungarian Act XLVIII of 2008 on the Essential Conditions of and Certain Limitations on Business Advertising Activity

Retention

Until consent is withdrawn

Recipients, processors

newsletter service provider

Purpose

Performance of the contract, client relationship

Data processed

Name, e-mail address, phone number and job title of contact persons, correspondence relating to the contract

Legal basis

GDPR Art. 6(1)(b) and (f)

Retention

5 years after the contract ends (limitation period)

Recipients, processors

project-management or e-mail service provider

Purpose

Invoicing, bookkeeping

Data processed

Billing name, address, tax number, invoice data

Legal basis

GDPR Art. 6(1)(c) (legal obligation); the Hungarian Accounting Act

Retention

8 years (under Section 169 of Hungarian Act C of 2000 on Accounting)

Recipients, processors

invoicing-software provider, accountant

Purpose

Bringing and defending legal claims

Data processed

Data relating to the dispute, as necessary

Legal basis

GDPR Art. 6(1)(f) (legitimate interest)

Retention

Within the limitation period, generally 5 years

Recipients, processors

legal counsel, authorities, courts

As a general rule, providing your data is voluntary. However, if you do not provide the data needed for a quote request or for getting in touch with us, we will not be able to respond to your enquiry.

3. Chatbot

The chatbot running on our website is powered by artificial intelligence; its replies are not written by a human. We process the content of your messages in order to respond to you and to ensure the quality and security of the service (legal basis: GDPR Art. 6(1)(f) or (b)). We retain conversations for X days. The chatbot does not make any decision based solely on automated processing that would produce legal effects concerning you. Please do not share special categories of data (for example health data) or passwords during the conversation. At your request, you can ask our team for a callback or to get in touch with you directly at any time.

4. Processors and recipients

We use data-processor service providers to help us handle data (for example hosting, e-mail, CRM, newsletter, invoicing and analytics providers), with whom we have entered into data processing agreements. If one of our providers also processes data outside the European Economic Area (EEA) (for example in the United States), the legal basis for that transfer is an adequacy decision (for example the EU–US Data Privacy Framework) or the European Commission's Standard Contractual Clauses (SCCs). We will provide information about the specific recipients and the safeguards that apply to them on request.

5. Data security

We protect your data with appropriate technical and organisational measures: multi-factor authentication, encrypted transmission and storage, access control, and regular backups. Our staff are bound by confidentiality and receive regular training. In the event of a personal data breach, we notify the supervisory authority within the statutory deadline and, where necessary, the affected individuals as well.

6. Your rights

Under the GDPR, you have the rights listed below. You can submit your request using the contact details given above. We respond within one month; in complex cases this may be extended by a further two months, where justified.

  • Right of access (Article 15): you can ask whether we process your data and request a copy of it.
  • Right to rectification (Article 16): you can request the correction of inaccurate data.
  • Right to erasure (Article 17): in certain cases you can request the deletion of your data (the "right to be forgotten").
  • Right to restriction of processing (Article 18): you can request that processing be restricted.
  • Right to data portability (Article 20): you can request the data you provided under consent or a contract, in a machine-readable format.
  • Right to object (Article 21): you can object at any time to processing based on legitimate interest, and to direct marketing.
  • Right to withdraw consent (Article 7(3)): withdrawal does not affect the lawfulness of processing carried out before the withdrawal.

7. Remedies

If you feel that the processing of your data infringes your rights, please contact us first so we can try to resolve the matter together. You may also lodge a complaint with the supervisory authority:

Authority

National Authority for Data Protection and Freedom of Information (NAIH)

Address

1055 Budapest, Falk Miksa utca 9-11.

Postal address

1363 Budapest, Pf.: 9.

Phone

+36 (1) 391-1400

E-mail

ugyfelszolgalat@naih.hu

Website

www.naih.hu

You may also bring proceedings before a court. Jurisdiction lies with the regional court (törvényszék), and the action may be brought before the regional court of your place of residence or habitual residence, at your choice.

8. Automated decision-making, profiling

We do not carry out any decision-making based solely on automated processing, including profiling, that would produce legal effects concerning you or would similarly significantly affect you.

9. If we did not obtain your data from you

If we do not obtain your data directly from you (for example, as the contact details of a representative provided by your company, or from a public company register), we will inform you about the source of the data and the details of the processing, in line with Article 14 of the GDPR, at the time of first contact and at the latest within one month.

10. Cookie notice

The website does not currently use cookies for measuring traffic, marketing, or tracking purposes, and there is no cookie-settings window on the site.

To keep a conversation going, the chatbot uses your browser's session storage (sessionStorage); this is not a cookie, does not track you, does not share data with other websites, and is cleared automatically when you close the browser tab.

If we introduce cookies in the future (for example, to measure traffic), we will update this notice and, where required by law, ask for your consent first.

11. Changes to this notice

We may amend this notice as necessary; the current version is always available on the website. Effective from: date.