Privacy policy
Last updated: 31 July 2026
Who is responsible
The controller of personal data described in this policy is Tevind AB, Östergärde industriväg 61, 417 29 Göteborg, Sweden.
For privacy questions, contact us via the contact form on this website or write to Tevind AB at the address above.
What we collect
When you use our contact form (for example to book a call or request a sprint assessment), we collect the information you submit: name, email, company, phone number (if provided), your message, and your consent to be contacted about the request.
We do not use analytics, advertising or tracking technologies on the marketing website to profile visitors.
If you become a customer, we may also process personal data needed to deliver and administer the service (for example contract and billing contacts). Customer systems we host are covered separately in the applicable agreement and data processing terms.
Purposes and legal bases
We process contact-form data to respond to your inquiry, assess whether we can help, and follow up on the request. Legal bases may include steps prior to entering a contract, our legitimate interest in handling business inquiries, and—where you tick the consent box—consent to be contacted about that request.
We do not use your contact details for advertising by unrelated third parties.
How long we keep data
GDPR requires that personal data is not kept longer than necessary for the purpose. There is no single statutory maximum for website inquiries; we apply the following retention periods.
Contact and lead inquiries where no customer contract is formed: we keep the data for up to 24 months after the last meaningful contact, then delete or anonymise it—unless you ask us to erase it earlier where applicable.
Customer, contract and invoicing-related records: for the duration of the relationship and thereafter as required by Swedish law. Accounting material is retained for seven years after the end of the financial year under the Swedish Bookkeeping Act (Bokföringslagen).
Login and session cookies for Cartographer last for the session, until you log out, or until the cookie expires—whichever comes first.
Who we share data with
We may share personal data with direct operational partners that help us run and deliver our services—for example hosting. We do not share personal data with partners for advertising or marketing to you.
Our servers are hosted by OVHCloud in France (EU).
Where data is processed
Personal data for the website and hosted services described here is processed within the EU/EEA (including France). We do not transfer this data to countries outside the EU/EEA for hosting.
Security
We take appropriate technical and organisational measures to protect personal data against unauthorised access, loss and misuse, considering the nature of the data and the risks involved.
Your rights
Under GDPR you may have the right to request access, rectification, erasure, restriction of processing, data portability, and to object to certain processing. Where processing is based on consent, you may withdraw consent at any time without affecting prior lawful processing.
You also have the right to lodge a complaint with the Swedish Authority for Privacy Protection (Integritetsskyddsmyndigheten, IMY) or another competent supervisory authority in the EU/EEA.
Cookies
The marketing site does not use analytics or advertising cookies. Cartographer uses login and session cookies that are strictly necessary to keep you signed in. Details are in our Cookies policy.
Changes
We may update this policy when our processing or services change. The “Last updated” date at the top of this page shows the latest revision.