Legal
Privacy Policy
Last updated: May 2025 · GDPR & Swiss nLPD
1. Who We Are
ALPIX SA is a company incorporated under Swiss law, operating at the intersection of enterprise software and operational intelligence infrastructure. This Privacy Policy governs the processing of personal data in connection with our corporate website (alpix.com) and our communications with prospective and existing clients.
For the purposes of EU GDPR and Swiss nLPD, ALPIX SA acts as data controller with respect to data collected through this website and our business operations.
2. Data Collected Through This Website
We collect only the data necessary to respond to enquiries and improve our communications.
Contact and inquiry data: When you submit a contact form, book a discovery call, or apply for the pilot program, we collect your name, business email address, company name, job title, and the content of your message.
Technical data: Standard web server logs including IP address, browser type, referring URL, and page visit timestamps. We do not use third-party behavioural tracking or retargeting technologies.
Communication data: Correspondence by email or phone in connection with sales, support, or partnership enquiries.
We do not use cookies beyond those strictly necessary for website functionality. We do not use advertising, analytics, or social media cookies.
3. Legal Basis for Processing
Contact and enquiry data: Processed on the basis of legitimate interest (Article 6(1)(f) GDPR) in responding to business enquiries, or on the basis of pre-contractual measures at the request of the data subject (Article 6(1)(b) GDPR).
Technical data: Processed on the basis of legitimate interest in maintaining website security and performance.
Where required by applicable law, we will request explicit consent before processing personal data for other purposes.
4. The ALPIX Product and Your Employees' Data
This section is critical for enterprise clients evaluating the ALPIX operational intelligence platform.
The ALPIX platform is deployed entirely on-premise within the client's own IT infrastructure. Workflow data captured by the ALPIX agent is encrypted using AES-256 on the endpoint before any write operation and is stored exclusively within the client's designated data store.
ALPIX SA does not receive, access, process, store, or transmit any workflow data captured by the ALPIX agent. The architecture of the product makes it technically impossible for ALPIX to access client workflow data. This is a design constraint, not a policy constraint.
The client organisation is the sole data controller with respect to any personal data processed by the ALPIX platform within their environment. ALPIX SA acts as data processor only to the extent required for platform maintenance and support, governed by a separate Data Processing Agreement.
Clients are responsible for ensuring that their deployment of the ALPIX platform complies with applicable data protection legislation, including notification obligations to employees and, where applicable, works council consultation requirements.
5. Data Retention
Contact and enquiry data: Retained for a maximum of 36 months from the date of last contact, unless a contractual relationship is established, in which case data is retained for the duration of the contract plus 7 years for legal and tax compliance purposes.
Technical log data: Retained for a maximum of 90 days.
You may request deletion of your personal data at any time by contacting us at privacy@alpix.com.
6. Data Sharing and Transfers
ALPIX does not sell personal data. We do not share personal data with third parties for marketing purposes.
We may share data with trusted service providers who process data on our behalf under appropriate data processing agreements, including email delivery infrastructure and cloud-based CRM tools. All such providers are subject to contractual obligations consistent with this policy and applicable law.
Where data is transferred outside Switzerland or the European Economic Area, we ensure appropriate safeguards are in place, including Standard Contractual Clauses approved by the European Commission.
7. Your Rights
Under EU GDPR and Swiss nLPD, you have the right to: access the personal data we hold about you; correct inaccurate data; request erasure of your data where legally permissible; object to or restrict processing; data portability in a structured, machine-readable format; and lodge a complaint with the relevant supervisory authority.
Swiss residents may also exercise rights under the revised Federal Act on Data Protection (nLPD) which came into force on 1 September 2023.
To exercise any of these rights, contact us at privacy@alpix.com. We will respond within 30 days.
8. Data Security
We implement appropriate technical and organisational measures to protect personal data against unauthorised access, accidental loss, destruction, or disclosure. These measures are reviewed and updated regularly in line with evolving best practice.
9. Changes to This Policy
We may update this Privacy Policy from time to time. The date of the most recent revision appears at the top of this page. We will notify you of material changes by email where we hold your contact details, or by a prominent notice on our website.
10. Contact
For all data protection enquiries: privacy@alpix.com
ALPIX SA, Switzerland
For urgent data protection matters, please mark your email with the subject line: DATA PROTECTION — URGENT.