Privacy statement
RocketCode values your privacy. Below we explain which personal data we process, why, with whom we share it and what rights you have. We process data in accordance with the GDPR.
1. Who we are
The controller for the processing of personal data is RocketCode B.V., Gouwzee 3B, 3891 GH Zeewolde, the Netherlands, Chamber of Commerce number 81418574, email [email protected], phone +31 85 212 77 14. For privacy questions contact [email protected].
2. No cookies or tracking
This privacy statement applies to our entire website, including rocketcode.io and the subdomain ai.rocketcode.io. Our website does not place cookies and contains no tracking scripts or analytics tags in your browser. We do not track your behaviour and therefore show no cookie banner.
Forms are processed exclusively server-side. Only when you submit a form do we receive and process the data you entered on our own server.
3. What data we process
Data you enter in a form. When you fill in a contact or request form, we process the data you provide: name, company name, website, email address, phone number and the content of your question or message.
Data via LinkedIn ads (Lead Gen Forms). If you respond to one of our LinkedIn ads via an embedded form, we receive the data you submit through that form, typically your name, business email, company, job title, possibly a phone number and your answer to our question. LinkedIn is the controller for those forms.
Campaign and source data. To measure which ad or campaign led to a request, we read a click identifier from the URL server-side when a form is submitted, where present: the Google click id (gclid), the LinkedIn click id (li_fat_id) and any UTM campaign labels. No cookies are placed for this.
4. Purposes and legal bases
- Handling your request and contacting you. Basis: performance of or preparation for a contract, and our legitimate interest in responding to your request.
- Delivering the agreed services. Basis: performance of the contract.
- Measuring and improving the effectiveness of our advertising. Basis: legitimate interest.
- Complying with legal obligations. Basis: legal obligation.
5. Who we share data with
We do not sell your data. We do use service providers (processors) who process data on our behalf under a data processing agreement: hosting (servers and data within the EU by default), Notion (our CRM), Slack (internal notification of a new request), Google Ads (only click id, conversion name and timestamp for conversion measurement, no name or email) and LinkedIn (advertising and Lead Gen Forms). Some of these parties are established outside the EEA, notably in the United States. For those transfers we rely on appropriate safeguards such as the European Commission's Standard Contractual Clauses and, where applicable, the EU-US Data Privacy Framework.
6. How long we keep data
Requests that do not lead to a collaboration are kept for a maximum of 24 months after the last contact. Data related to an assignment or our administration is kept as long as necessary and as long as statutory retention periods require (7 years for financial records).
7. Security
Traffic with our website is encrypted via HTTPS, access to data is limited to those who need it, and sensitive settings and keys are stored securely.
8. Your rights
You have the right to access, correct or delete your personal data. You may also object to processing, ask us to restrict processing, and receive the data you provided in a common format. Send your request to [email protected]; we respond within one month. If you disagree with how we handle your data, you can lodge a complaint with the Dutch Data Protection Authority (Autoriteit Persoonsgegevens).
9. Changes
We may update this privacy statement. The most recent version is always on this page, with the date of the last change at the top.