At Neomir, we take your privacy seriously. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you visit our website and use our services. It applies to all users of the Neomir platform and is governed by the Swiss Federal Act on Data Protection (nFADP) and, where applicable, the EU General Data Protection Regulation (GDPR).
We collect information that you provide directly to us, as well as information that is collected automatically when you use our services.
We process your personal data only where we have a valid legal basis to do so. The table below sets out each purpose, the data involved, and the legal basis we rely on under the nFADP and GDPR.
Providing and maintaining the Service
Data used: Account information, usage data, log data.
Legal basis: Performance of a contract (Art. 6(1)(b) GDPR / Art. 31(2)(a) nFADP).
Processing payments
Data used: Payment and billing information.
Legal basis: Performance of a contract and compliance with legal obligations (Art. 6(1)(b) and (c) GDPR / Art. 31(2)(a) and (b) nFADP).
Sending technical notices, updates, and support messages
Data used: Account information, contact information.
Legal basis: Performance of a contract (Art. 6(1)(b) GDPR / Art. 31(2)(a) nFADP).
Responding to inquiries, demo requests, and support tickets
Data used: Contact information, account information.
Legal basis: Pre-contractual steps and legitimate interest (Art. 6(1)(b) and (f) GDPR / Art. 31(2)(a) and (c) nFADP).
Communicating about products, services, and updates offered by Neomir
Data used: Email address, name.
Legal basis: Legitimate interest in keeping existing customers informed about relevant developments (Art. 6(1)(f) GDPR / Art. 31(2)(c) nFADP). You may object to this processing at any time by contacting legal@neomir.com.
Detecting and preventing security incidents
Data used: Log data, device information, IP address.
Legal basis: Legitimate interest in protecting the security and integrity of the Service (Art. 6(1)(f) GDPR / Art. 31(2)(c) nFADP).
Analytics and error analysis via PostHog
Data used: Usage data (pages visited, features used), error and session data, device information.
Legal basis: Consent (Art. 6(1)(a) GDPR / Art. 31(1) nFADP). You may withdraw consent at any time via your account settings.
We do not sell your personal information. We may share your information in the following circumstances:
We retain your personal data only for as long as necessary for the purposes described in this policy, and in accordance with applicable legal requirements. The following specific retention periods apply:
When the applicable retention period expires, we will securely delete or irreversibly anonymize your data.
Under the Swiss nFADP and, where applicable, the EU GDPR, you have the following rights regarding your personal data:
To exercise any of the above rights, please contact us at legal@neomir.com. We will respond within 30 days.
All personal data processed by Neomir AG is stored and processed exclusively in Switzerland. We do not transfer your personal data to servers or processors located outside Switzerland. Switzerland is recognized by the European Commission as providing an adequate level of data protection, meaning your data benefits from equivalent protections to those provided under EU law.
In the event that a future business requirement necessitates a transfer of data outside Switzerland, we will update this policy accordingly and ensure that appropriate safeguards are in place before any such transfer occurs.
We implement appropriate technical and organizational measures to protect your personal information against unauthorized access, alteration, disclosure, or destruction. These measures include encryption in transit (TLS), access controls, and regular security reviews.
However, no method of transmission over the Internet or method of electronic storage is 100% secure. In the event of a personal data breach that is likely to result in a risk to your rights and freedoms, we will notify the relevant supervisory authority within 72 hours of becoming aware of the breach, in accordance with Art. 33 GDPR and Art. 24 nFADP. Where the breach is likely to result in a high risk to you personally, we will also notify you directly without undue delay.
We may update this Privacy Policy from time to time. We will notify you of any material changes by email or by posting a prominent notice on our platform, and by updating the "Last updated" date at the top of this page. We encourage you to review this Privacy Policy periodically. Continued use of the Service after changes take effect constitutes your acceptance of the revised policy.
If you have any questions about this Privacy Policy, wish to exercise your rights, or have concerns about how we handle your data, please contact us at: