Privacy Policy of North Harbor Marketing B.V.
This Privacy Policy explains how North Harbor Marketing B.V. collects, uses, discloses, stores, and protects personal data when you visit our website, contact us, or otherwise interact with our product-marketing services. We are committed to handling personal data in a lawful, fair, transparent, and secure manner in accordance with applicable privacy laws.
1. Introduction and company information
The data controller responsible for the processing of your personal data is:
- Company name: North Harbor Marketing B.V.
- Address: Keurenplein 41, 1069 CD Amsterdam, Netherlands
- Email: [email protected]
- Phone: +31 20 794 8627
North Harbor Marketing B.V. provides product-marketing services, which may include marketing strategy, campaign planning, brand messaging, content creation, lead generation support, analytics, and related advisory and operational services. In doing so, we may process personal data of website visitors, prospective clients, business contacts, vendors, and other individuals who interact with us.
2. Data collection and processing
We may collect and process the following categories of personal data:
- Identity data: name, job title, employer, and business contact details.
- Contact data: email address, phone number, postal address, and communication preferences.
- Professional data: information relating to your role, company, industry, and business requirements.
- Communication data: contents of emails, inquiry forms, meeting notes, and correspondence.
- Technical data: IP address, browser type, device information, operating system, referral source, and website usage data.
- Marketing and analytics data: interaction with emails, advertisements, website pages, and campaign materials.
- Contractual and billing data: invoicing details, payment-related information, and service records, where applicable.
We generally collect personal data directly from you, from your organization, from our website and digital tools, from public professional sources, and from third-party service providers or partners where permitted by law.
3. Purpose of data processing
We process personal data for the following purposes:
- to provide and manage our product-marketing services;
- to respond to inquiries, requests, and communications;
- to establish and manage business relationships;
- to prepare proposals, contracts, and service agreements;
- to perform analytics, reporting, and service optimization;
- to send marketing communications where permitted and/or consented to;
- to maintain and improve our website, content, and user experience;
- to detect, prevent, and investigate fraud, misuse, or security incidents;
- to comply with legal and regulatory obligations;
- to assert, exercise, or defend legal claims.
4. Legal basis for processing
We process personal data only where we have a valid legal basis. Depending on the context, our legal bases may include:
- Performance of a contract: where processing is necessary to enter into or perform a contract with you or your organization;
- Legitimate interests: where processing is necessary for our legitimate business interests, such as providing services, managing client relationships, improving our offerings, securing our systems, and conducting business development, provided these interests are not overridden by your rights and freedoms;
- Consent: where you have given clear consent, for example for certain marketing communications or optional cookies/tools where required;
- Legal obligation: where processing is necessary to comply with applicable law, tax, accounting, or other regulatory requirements;
- Vital interests: in rare cases, where necessary to protect someone’s life or physical safety.
Where processing is based on consent, you may withdraw that consent at any time without affecting the lawfulness of processing before withdrawal.
5. Data sharing and third parties
We may share personal data with third parties only where necessary for the purposes described in this Policy and in accordance with applicable law. These third parties may include:
- Service providers: hosting providers, cloud services, CRM tools, email delivery services, analytics providers, document management tools, and IT support providers;
- Professional advisors: lawyers, accountants, auditors, insurers, and consultants;
- Business partners and subcontractors: where necessary to deliver marketing projects or related services;
- Authorities: public authorities, regulators, courts, or law enforcement where required by law or necessary to protect rights and safety.
We require third parties processing personal data on our behalf to implement appropriate confidentiality, security, and data protection measures. Where a third party acts as an independent controller, their own privacy notice may also apply.
6. Data transfer to third countries
In some cases, personal data may be transferred to or accessed from countries outside the European Economic Area (EEA) or outside your country of residence. If such transfers occur, we will take appropriate safeguards to protect your personal data, which may include:
- an adequacy decision by the relevant authority;
- standard contractual clauses or equivalent contractual safeguards;
- supplementary technical and organizational measures where needed;
- other lawful transfer mechanisms recognized under applicable privacy law.
Where required, you may request further information about the safeguards used for international transfers by contacting us using the details below.
7. Storage duration
We retain personal data only for as long as necessary to fulfill the purposes for which it was collected, including for legal, accounting, tax, reporting, or dispute-resolution purposes.
- Inquiry and contact data are typically retained for the period necessary to respond and maintain business records.
- Contract and client-related data are retained for the duration of the relationship and thereafter for the period required by law or legitimate business needs.
- Marketing data are retained until you object, withdraw consent, unsubscribe, or until they are no longer needed for the relevant purpose.
- Technical and analytics data are retained for a limited period appropriate to the purpose for which they were collected.
When personal data is no longer required, we will delete, anonymize, or securely archive it in accordance with applicable legal requirements.
8. User rights
Subject to applicable law, you may have the following rights regarding your personal data:
- Right of access: to obtain confirmation whether we process your personal data and receive a copy of it;
- Right to rectification: to request correction of inaccurate or incomplete personal data;
- Right to erasure: to request deletion of personal data in certain circumstances;
- Right to restriction: to request that we limit the processing of your personal data in certain circumstances;
- Right to data portability: to receive personal data you have provided to us in a structured, commonly used, machine-readable format and, where technically feasible, to have it transmitted to another controller;
- Right to object: to object to processing based on legitimate interests and to object at any time to processing for direct marketing purposes;
- Right not to be subject to certain automated decisions: where applicable under law.
To exercise your rights, please contact us using the details in Section 12. We may need to verify your identity before responding. We will respond within the time period required by applicable law.
9. Withdrawal of consent
Where we rely on your consent for processing personal data, you may withdraw that consent at any time. Withdrawal does not affect the lawfulness of processing carried out before the withdrawal.
You can withdraw consent by using any unsubscribe mechanism provided in communications, adjusting your preferences where available, or contacting us directly at [email protected].
10. Right to complain
If you believe that our processing of your personal data does not comply with applicable privacy laws, you have the right to lodge a complaint with a supervisory authority, particularly in the country where you live, work, or where the alleged infringement occurred.
We encourage you to contact us first so that we can address your concerns directly. However, you remain entitled to contact the competent authority at any time.
11. Data security
We implement appropriate technical and organizational measures designed to protect personal data against unauthorized access, alteration, disclosure, loss, destruction, or misuse. These measures may include:
- access controls and role-based permissions;
- encryption where appropriate;
- secure storage and transmission methods;
- regular review of systems and security practices;
- staff confidentiality obligations and training;
- incident response and backup procedures.
Although we take reasonable steps to safeguard personal data, no method of transmission or storage is completely secure. Therefore, we cannot guarantee absolute security.
12. Contact information
If you have any questions about this Privacy Policy, our data practices, or wish to exercise your rights, please contact:
- North Harbor Marketing B.V.
- Address: Keurenplein 41, 1069 CD Amsterdam, Netherlands
- Email: [email protected]
- Phone: +31 20 794 8627
13. Changes to privacy policy
We may update this Privacy Policy from time to time to reflect changes in our practices, legal requirements, or operational needs. Any revised version will be posted with an updated effective date, if applicable.
We encourage you to review this Privacy Policy periodically to stay informed about how North Harbor Marketing B.V. protects your personal data.
Last updated: 17 July 2026