Juridisch

Privacybeleid

Laatst bijgewerkt: februari 2026

01

Inleiding

WeLink (beheerd door Adamas Group SA, Zwitserland) zet zich in voor de bescherming van de privacy van zijn gebruikers. Dit privacybeleid beschrijft hoe wij uw persoonsgegevens verzamelen, gebruiken en beschermen.

02

Verzamelde gegevens

Wij verzamelen de volgende gegevens wanneer u WeLink gebruikt:

  • Accountinformatie: voornaam, achternaam, e-mailadres
  • Organisatiegegevens: bedrijfsnaam, logo, contactgegevens
  • Medewerkersgegevens: naam, functie, professionele contactgegevens, foto
  • Gebruiksgegevens: inloggegevens, bezochte pagina's
03

Gebruik van gegevens

Uw gegevens worden uitsluitend gebruikt om:

  • De WeLink-dienst te leveren en te verbeteren
  • E-mailhandtekeningen, profielpagina's, QR-codes en VCF-kaarten te genereren
  • Met u te communiceren over uw account
  • De veiligheid en goede werking van het platform te waarborgen
05

Hosting en beveiliging

De kerngegevens worden gehost op Supabase-servers in de EU/Zwitserland-regio. Gegevens worden versleuteld in rust en tijdens verzending (TLS 1.3). Sommige verwerkers (Stripe, Vercel, Postmark) zijn gevestigd in de VS; deze doorgiften vallen onder passende waarborgen — EU-modelcontractbepalingen (SCC's) of toepasselijke adequaatheidsbesluiten.

06

Sub-processors and third parties

We share your data with the following processors: Supabase (database and file storage; EU/Swiss region), Stripe (payment processing; USA, under Standard Contractual Clauses), Vercel (hosting and edge delivery; USA, under SCCs), Sentry (error monitoring; Germany — EU residency), PostHog (product analytics; EU region), Postmark (transactional email; USA, under SCCs), Upstash (rate-limiting cache; EU region), Microsoft (Microsoft 365 integration; when enabled by your organisation), Google (Google Workspace integration; when enabled by your organisation), Shlink (URL shortening; self-hosted).

07

Microsoft 365 integration & Outlook add-in

When your organisation connects Microsoft 365, WeLink accesses only what is needed to manage and deploy your email signatures:

  • Directory data — names, email addresses and departments of your team members (Microsoft Graph: User.Read.All, Directory.Read.All), used to map signatures to the right people.
  • Signature deployment — for server-side modes, signatures are written through Microsoft Exchange (Set-MailboxMessageConfiguration or a transport rule). This requires your administrator to grant WeLink the Exchange Administrator role, which can be revoked at any time.
  • Outlook add-in — when used, the add-in inserts the chosen signature into the message you are composing, entirely on your device at compose time.
  • No access to the content of your emails — WeLink never reads, stores or processes the body of your messages.

Sub-processors for this integration are Microsoft (Graph and Exchange APIs) and our core hosting provider. You can disconnect Microsoft 365 at any time from the WeLink dashboard, which revokes WeLink's access.

08

Data retention

Account data is retained for the duration of your subscription plus 30 days after deletion. Audit logs are retained for 12 months. Error and performance monitoring data at Sentry is retained for 90 days. Analytics data at PostHog is retained for 12 months. Billing records at Stripe are retained as required by applicable financial regulations.

09

Uw rechten

In overeenstemming met de GDPR en de Zwitserse nDSG hebt u de volgende rechten:

  • Recht op inzage in uw persoonsgegevens
  • Recht op rectificatie van onjuiste gegevens
  • Recht op verwijdering van uw gegevens
  • Recht op overdraagbaarheid van gegevens
  • Recht om bezwaar te maken tegen de verwerking
10

Cookies

WeLink gebruikt alleen cookies die essentieel zijn voor de werking van de dienst (sessie, authenticatie). Wij gebruiken geen advertentiecookies of trackers van derden.

12

Contact

Voor vragen over uw persoonsgegevens kunt u contact met ons opnemen via:

privacy@wecode.swiss