English version ↓

Privacyverklaring

Laatste update: oktober 2026

1. Over Foundersflow en deze verklaring

Foundersflow is een klantportaal en CRM. Founders Flow gebruikt Foundersflow om samen te werken met zijn klanten. Foundersflow wordt ontwikkeld en beheerd door The Dal Industry.

In deze verklaring lees je welke persoonsgegevens via Foundersflow worden verwerkt, waarvoor, hoe lang ze worden bewaard en welke rechten je hebt. Met “wij” en “ons” bedoelen we The Dal Industry, als ontwikkelaar en beheerder van Foundersflow.

  • The Dal Industry, eenmanszaak, ingeschreven bij de Kamer van Koophandel onder nummer 92587682
  • Vestigingsadres: Curaçaostraat 109 c, 8931 CP Leeuwarden
  • Handelsnamen: The Dal Industry, ScaleFlow
  • Contact over privacy: info@thedalindustry.nl

2. Wie gebruiken Foundersflow?

  • Het team van Founders Flow. Zij beheren in het CRM leads, klanten, taken en afspraken.
  • Klanten van Founders Flow. Zij krijgen een account voor het klantportaal. Founders Flow maakt deze accounts aan. Zelf registreren kan niet.
  • Bezoekers van een boekingspagina. Zij plannen een gesprek in bij een klant van Founders Flow. Daarvoor is geen account nodig.
  • Leads. Zij laten hun gegevens achter via een formulier of funnel van Founders Flow, of plannen een gesprek in. Daarvoor is geen account nodig.

3. Welke gegevens verwerken we?

  • Accountgegevens: naam, e-mailadres, rol en taalvoorkeur. Wachtwoorden slaan we nooit leesbaar op.
  • Gegevens van zakelijke contactpersonen, leads en klanten: naam, e-mailadres, telefoonnummer, bedrijfsnaam en KvK nummer.
  • Notities en correspondentie over leads en klanten.
  • Boekingen: naam en e-mailadres van wie een gesprek boekt, het gekozen tijdstip en de antwoorden op de vragen van het boekingsformulier.
  • Formulierinzendingen: de ingevulde velden, antwoorden op vragen en de herkomst, zoals bron, campagne en landingspagina.
  • Opvolgmails: welke e-mails uit een reeks naar een lead zijn verstuurd en wanneer, en afmeldingen.
  • Agendagegevens, als je een Google of Microsoft agenda koppelt (zie hoofdstuk 5 en 6).
  • Gespreksverslagen: opnames, transcripten, samenvattingen en notities van gesprekken met Founders Flow (zie hoofdstuk 7).
  • Documenten die in het klantportaal of de kennisbank worden geplaatst.
  • Overeenkomsten: de ondertekende tekst, naam en functie van wie ondertekent, en het tijdstip, het IP adres en de browser bij het ondertekenen.
  • Abonnementen, facturen, betaalstatus en, bij automatische incasso, het incassomandaat bij Mollie.
  • Gebruiksgegevens: inlogtijden, uitgevoerde acties en systeemlogs.

4. Waarvoor gebruiken we deze gegevens?

  • Het klantportaal: onboarding, voortgang, afspraken, content en gedeelde documenten.
  • Het CRM: leads, klanten, taken en afspraken bijhouden.
  • Afspraken plannen via boekingspagina’s.
  • Een kennisbank per klant, zodat afspraken en gesprekken terug te vinden zijn.
  • Opvolging automatiseren en e-mails of berichten versturen, als de organisatie dat instelt. Elke opvolgmail bevat een afmeldlink; na afmelden gaan er geen opvolgmails meer naar dat adres.
  • Overeenkomsten digitaal laten ondertekenen.
  • Abonnementen, facturen en betalingen.
  • Beveiliging, foutopsporing en het goed laten werken van Foundersflow.

We verkopen persoonsgegevens nooit aan derden.

We verwerken persoonsgegevens op basis van:

  • Uitvoering van een overeenkomst — voor het klantportaal, het CRM, projectbeheer en facturatie.
  • Gerechtvaardigd belang — voor leadopvolging in een zakelijke (B2B) context en voor de beveiliging van Foundersflow.
  • Toestemming — voor het koppelen van je agenda of mailbox en voor directe communicatie via WhatsApp of e-mail. Je kunt je toestemming altijd intrekken.
  • Wettelijke plicht — voor het bewaren van facturen (fiscale bewaarplicht).

5. Gegevens uit je Google account

Je kunt je Google account koppelen aan Foundersflow. Dat doe je zelf. Google vraagt je eerst om toestemming en laat zien welke rechten Foundersflow vraagt. Dit zijn die rechten (scopes) en waarvoor we ze gebruiken.

https://www.googleapis.com/auth/calendar.events

  • Lezen. We lezen de begin en eindtijd en de status (bezet of vrij) van de afspraken in je agenda. Daarmee berekenen we wanneer je vrij bent, zodat je boekingspagina alleen vrije tijden toont. Het team van Founders Flow ziet op dezelfde manier alleen wanneer je bezet bent, om een gesprek met je in te plannen. Bezoekers van je boekingspagina zien nooit de inhoud van je agenda.
  • Schrijven. Een afspraak die via Foundersflow wordt geboekt of ingepland, zetten we in je agenda, met de genodigde erbij. Google stuurt de genodigde dan een uitnodiging. We wijzigen of verwijderen alleen afspraken die via Foundersflow zijn aangemaakt, bijvoorbeeld als een boeking niet doorgaat.
  • Voor teamleden van Founders Flow. We tonen je eigen afspraken in de agenda van Foundersflow en zetten taken met een deadline als afspraak in je agenda. Afspraken die we zo tonen, slaan we niet op.

https://www.googleapis.com/auth/userinfo.email

We lezen het e-mailadres van je Google account, zodat we weten en kunnen tonen welk account is gekoppeld.

E-mail versturen: https://www.googleapis.com/auth/gmail.send

Alleen voor teamleden van Founders Flow die in de instellingen een mailbox koppelen. Klanten koppelen alleen hun agenda; hen vragen we dit recht niet. Foundersflow verstuurt dan e-mails die bij het werk in Foundersflow horen vanuit die mailbox, zoals uitnodigingen, bevestigingen, herinneringen en opvolgmails aan leads. Met dit recht kan Foundersflow alleen e-mail versturen, niet lezen.

Wat we opslaan

  • De toegangstokens (OAuth tokens) van de koppeling. Zo kan Foundersflow je agenda blijven gebruiken zonder dat je steeds opnieuw inlogt.
  • Het e-mailadres van het gekoppelde Google account.
  • Van afspraken die via Foundersflow zijn geboekt: het tijdstip, de naam en het e-mailadres van de genodigde, de antwoorden op de vragen en een verwijzing naar de afspraak in je agenda.
  • De begin en eindtijden die we lezen om vrije tijden te berekenen, slaan we niet op.

Waar, en wie heeft toegang

  • Deze gegevens staan in de database van Foundersflow bij Supabase, in de EU (Frankfurt).
  • Toegang is beperkt. De tokens van een persoonlijke koppeling zijn alleen bereikbaar voor je eigen account en voor de server van Foundersflow, die er de functies hierboven mee uitvoert. Een koppeling voor de hele organisatie (ingesteld door het team van Founders Flow) is alleen bereikbaar voor teamleden van die organisatie.
  • Alle verbindingen zijn beveiligd met HTTPS (TLS).

Wat we niet doen

  • We verkopen deze gegevens niet.
  • We gebruiken ze niet voor advertenties.
  • We gebruiken ze niet om AI modellen te trainen, niet die van onszelf en niet die van anderen.
  • We delen ze met niemand, behalve met verwerkers die nodig zijn om deze functies te leveren (zie hoofdstuk 8), of als de wet ons daartoe verplicht.
  • Gegevens uit je agenda sturen we niet naar Fireflies.ai, Anthropic of Voyage AI.
  • Niemand leest deze gegevens, behalve als jij daar toestemming voor geeft, als het nodig is voor de beveiliging (bijvoorbeeld om misbruik te onderzoeken), als de wet het vereist, of als de gegevens zijn samengevoegd en anoniem gemaakt voor de interne werking van Foundersflow.

Foundersflow houdt zich bij het gebruik van informatie die het via Google API’s ontvangt, en bij het doorgeven daarvan aan een andere app, aan de Google API Services User Data Policy, inclusief de Limited Use vereisten.

Koppeling intrekken

  • In Foundersflow: kies Ontkoppelen bij de koppeling. We verwijderen de opgeslagen tokens dan direct.
  • Via Google: ga naar https://myaccount.google.com/permissions en verwijder de toegang van Foundersflow. De opgeslagen tokens werken dan niet meer.
  • Of mail naar info@thedalindustry.nl. Dan verwijderen wij de koppeling en de tokens.

6. Gegevens uit je Microsoft account

Je kunt ook je Microsoft account (Outlook of Microsoft 365) koppelen. Microsoft vraagt je eerst om toestemming. Foundersflow vraagt dan deze gedelegeerde rechten in Microsoft Graph:

  • Calendars.ReadWrite — afspraken in je agenda lezen en schrijven. We gebruiken dit voor dezelfde doelen als bij Google: vrije tijden berekenen uit begin en eindtijden, en afspraken die via Foundersflow worden geboekt in je agenda zetten, wijzigen of verwijderen.
  • User.Read — je basisprofiel lezen (naam en e-mailadres), om vast te stellen welk account is gekoppeld.
  • offline_access — de koppeling actief houden, zodat Foundersflow je agenda kan blijven gebruiken zonder dat je steeds opnieuw inlogt.
  • Mail.Send — alleen voor teamleden van Founders Flow die in de instellingen een mailbox koppelen: e-mails versturen vanuit die mailbox, zoals hierboven bij Google beschreven. Klanten vragen we dit recht niet. Foundersflow kan je e-mail niet lezen.

Voor deze gegevens gelden dezelfde regels als voor gegevens uit je Google account (hoofdstuk 5). We slaan alleen de tokens, het e-mailadres van het gekoppelde account en de gegevens van via Foundersflow geboekte afspraken op, in de EU. We verkopen niets, gebruiken niets voor advertenties of om AI modellen te trainen, en sturen agendagegevens niet naar Fireflies.ai, Anthropic of Voyage AI.

Koppeling intrekken:

7. Gespreksverslagen en AI

  • Founders Flow kan gesprekken met klanten opnemen en laten uitschrijven met Fireflies.ai. Opnames, transcripten en samenvattingen komen per klant in een kennisbank in Foundersflow. Zo zijn afspraken en gesprekken terug te vinden.
  • Om die kennisbank te laten werken, verwerken we de tekst van gespreksverslagen en geplaatste documenten met AI. Anthropic (Claude) maakt samenvattingen, deelt gesprekken in en beantwoordt vragen over de kennisbank. Voyage AI zet tekst om in zoekgegevens (embeddings), zodat je in de kennisbank op betekenis kunt zoeken.
  • We gebruiken deze aanbieders alleen voor de functies die hier staan.
  • Gegevens die Foundersflow via Google of Microsoft uit je agenda ontvangt, sturen we nooit naar Fireflies.ai, Anthropic of Voyage AI.

8. Met wie delen we gegevens?

We delen gegevens alleen met verwerkers die nodig zijn om Foundersflow te leveren. Sommige gebruiken we alleen als een gebruiker die koppeling zelf aanzet.

  • Supabase — database en bestandsopslag, in de EU (Frankfurt). We hebben met Supabase een verwerkersovereenkomst (DPA) gesloten.
  • Vercel — hosting van de webapplicatie.
  • Google en Microsoft — agendakoppelingen en e-mail versturen, alleen als je die koppeling maakt.
  • Fireflies.ai — opnames en transcripten van gesprekken.
  • Anthropic — AI voor samenvattingen, indeling en het beantwoorden van vragen.
  • Voyage AI — zoekgegevens (embeddings) voor de kennisbank.
  • TidyCal en Calendly — boekingen ophalen, alleen als die koppeling actief is.
  • Mollie — betalingen.
  • E-mailverzending (een SMTP server of Resend) — uitnodigingen, bevestigingen, meldingen en opvolgmails.
  • Make — procesautomatisering, alleen als die koppeling actief is.
  • Twilio en Meta (WhatsApp) — berichten, alleen als die koppeling actief is.
  • Slack — meldingen, alleen als die koppeling actief is.
  • Granola — gespreksnotities, alleen als die koppeling actief is.

Sommige verwerkers zitten buiten de Europese Economische Ruimte, bijvoorbeeld in de Verenigde Staten. Voor die doorgifte gebruiken we de waarborgen die de AVG vereist, zoals het Data Privacy Framework tussen de EU en de VS of de standaardcontractbepalingen van de Europese Commissie.

9. Hoe lang bewaren we gegevens?

  • Actieve klantdata, waaronder gespreksverslagen en documenten in de kennisbank: zolang de zakelijke relatie duurt.
  • Verlopen leads (geen reactie of verloren): maximaal 24 maanden na de laatste activiteit.
  • Systeemlogs (automation logs): maximaal 12 maanden.
  • Facturatiedata en ondertekende overeenkomsten: 7 jaar (fiscale bewaarplicht).
  • Formulierinzendingen en verzonden opvolgmails: net zo lang als de lead of klant waar ze bij horen.
  • Afmeldingen: zolang nodig om te voorkomen dat we je opnieuw opvolgmails sturen.
  • Tokens van een agenda of mailkoppeling: tot je de koppeling verbreekt of je account wordt verwijderd.

10. Beveiliging

  • Alle verbindingen zijn beveiligd met HTTPS (TLS).
  • Gegevens staan in de EU (Frankfurt, Supabase eu-central-1).
  • Toegang tot gegevens is per organisatie afgeschermd met Row Level Security (RLS) in de database.
  • Inloggen gaat met beveiligde tokens (JWT) die automatisch verlopen.
  • Wachtwoorden slaan we nooit leesbaar op.

11. Je rechten

Je hebt het recht op:

  • inzage in je persoonsgegevens;
  • correctie van onjuiste gegevens;
  • verwijdering van je gegevens (recht op vergetelheid);
  • bezwaar tegen verwerking;
  • overdraagbaarheid van je gegevens;
  • het intrekken van je toestemming, zonder dat dit gevolgen heeft voor verwerking die al heeft plaatsgevonden.

Stuur je verzoek naar info@thedalindustry.nl. Je kunt je verzoek ook via Founders Flow indienen. We reageren binnen 30 dagen.

12. Klachten

Heb je een klacht over hoe we met je gegevens omgaan? Neem dan eerst contact met ons op. Je kunt ook een klacht indienen bij de Autoriteit Persoonsgegevens: autoriteitpersoonsgegevens.nl

13. Wijzigingen

We kunnen deze privacyverklaring aanpassen. De datum bovenaan laat zien wanneer de laatste versie is gepubliceerd. Bij grote wijzigingen informeren we gebruikers via Foundersflow.


Nederlandse versie ↑

Privacy Policy

Last updated: October 2026

1. About Foundersflow and this policy

Foundersflow is a client portal and CRM. Founders Flow uses Foundersflow to work with its clients. Foundersflow is developed and operated by The Dal Industry.

This policy explains which personal data is processed through Foundersflow, for what purposes, how long it is kept and what rights you have. “We”, “us” and “our” refer to The Dal Industry as the developer and operator of Foundersflow.

  • The Dal Industry, a sole proprietorship registered with the Dutch Chamber of Commerce (KvK) under number 92587682
  • Address: Curaçaostraat 109 c, 8931 CP Leeuwarden, the Netherlands
  • Trade names: The Dal Industry, ScaleFlow
  • Privacy contact: info@thedalindustry.nl

2. Who uses Foundersflow?

  • The Founders Flow team. They manage leads, clients, tasks and appointments in the CRM.
  • Clients of Founders Flow. They get an account for the client portal. Founders Flow creates these accounts. Self sign-up is not available.
  • Visitors of a booking page. They book a call with a client of Founders Flow. They do not need an account.
  • Leads. They leave their details through a form or funnel of Founders Flow, or book a call. They do not need an account.

3. What data do we process?

  • Account data: name, email address, role and language preference. Passwords are never stored in readable form.
  • Data of business contacts, leads and clients: name, email address, phone number, company name and Chamber of Commerce number.
  • Notes and correspondence about leads and clients.
  • Bookings: the name and email address of the person who books a call, the chosen time and the answers to the questions on the booking form.
  • Form submissions: the fields filled in, answers to questions and the origin, such as source, campaign and landing page.
  • Follow-up emails: which emails of a sequence were sent to a lead and when, and unsubscribes.
  • Calendar data, if you connect a Google or Microsoft calendar (see sections 5 and 6).
  • Meeting notes: recordings, transcripts, summaries and notes of calls with Founders Flow (see section 7).
  • Documents added to the client portal or the knowledge base.
  • Agreements: the signed text, name and job title of the signer, and the time, IP address and browser at signing.
  • Subscriptions, invoices, payment status and, for automatic direct debit, the mandate at Mollie.
  • Usage data: login times, actions performed and system logs.

4. What do we use this data for?

  • The client portal: onboarding, progress, appointments, content and shared documents.
  • The CRM: keeping track of leads, clients, tasks and appointments.
  • Scheduling meetings through booking pages.
  • A knowledge base per client, so agreements and conversations can be looked up later.
  • Automating follow-up and sending emails or messages, if the organization sets this up. Every follow-up email contains an unsubscribe link; after unsubscribing, no more follow-up emails are sent to that address.
  • Having agreements signed digitally.
  • Subscriptions, invoices and payments.
  • Security, troubleshooting and keeping Foundersflow working properly.

We never sell personal data to third parties.

We process personal data on the following legal bases:

  • Performance of a contract — for the client portal, the CRM, project management and invoicing.
  • Legitimate interest — for following up leads in a business (B2B) context and for the security of Foundersflow.
  • Consent — for connecting your calendar or mailbox and for direct communication via WhatsApp or email. You can withdraw your consent at any time.
  • Legal obligation — for keeping invoices (statutory tax retention).

5. Google user data

You can connect your Google account to Foundersflow. You do this yourself. Google first asks for your consent and shows which permissions Foundersflow requests. These are the permissions (scopes) and how we use them.

https://www.googleapis.com/auth/calendar.events

  • Read. We read the start and end time and the status (busy or free) of the events in your calendar. We use this to work out when you are free, so your booking page only shows free time slots. In the same way, the Founders Flow team can only see when you are busy, in order to schedule a call with you. Visitors of your booking page never see the contents of your calendar.
  • Write. When a meeting is booked or scheduled through Foundersflow, we add it to your calendar with the invitee as a guest. Google then sends the invitee an invitation. We only change or delete events that were created through Foundersflow, for example when a booking does not go ahead.
  • For Founders Flow team members. We show your own events in the Foundersflow calendar view and add tasks with a deadline to your calendar. Events shown this way are not stored.

https://www.googleapis.com/auth/userinfo.email

We read the email address of your Google account, so we know and can show which account is connected.

Sending email: https://www.googleapis.com/auth/gmail.send

Only for Founders Flow team members who connect a mailbox in the settings. Clients only connect their calendar; we do not ask them for this permission. Foundersflow then sends emails that are part of working in Foundersflow from that mailbox, such as invitations, confirmations, reminders and follow-up emails to leads. This permission only allows Foundersflow to send email, not to read it.

What we store

  • The access tokens (OAuth tokens) of the connection, so Foundersflow can keep using your calendar without you having to sign in again each time.
  • The email address of the connected Google account.
  • For meetings booked through Foundersflow: the time, the name and email address of the invitee, the answers to the questions and a reference to the event in your calendar.
  • The start and end times we read to work out free time slots are not stored.

Where it is stored, and who has access

  • This data is stored in the Foundersflow database at Supabase, in the EU (Frankfurt).
  • Access is restricted. The tokens of a personal connection can only be reached by your own account and by the Foundersflow server, which uses them for the features described above. A connection for the whole organization (set up by the Founders Flow team) can only be reached by team members of that organization.
  • All connections are secured with HTTPS (TLS).

What we never do

  • We do not sell this data.
  • We do not use it for advertising.
  • We do not use it to train AI models, neither our own nor anyone else’s.
  • We do not share it with anyone, except with processors that are needed to provide these features (see section 8), or when the law requires us to.
  • We do not send data from your calendar to Fireflies.ai, Anthropic or Voyage AI.
  • Nobody reads this data, unless you give your consent, it is necessary for security purposes (such as investigating abuse), it is required by law, or the data has been aggregated and anonymized for the internal operations of Foundersflow.

Foundersflow's use and transfer to any other app of information received from Google APIs will adhere to the Google API Services User Data Policy, including the Limited Use requirements.

Revoking access

  • In Foundersflow: choose Disconnect on the connection. We then delete the stored tokens right away.
  • Through Google: go to https://myaccount.google.com/permissions and remove the access of Foundersflow. The stored tokens then stop working.
  • Or email info@thedalindustry.nl. We will then delete the connection and the tokens.

6. Microsoft user data

You can also connect your Microsoft account (Outlook or Microsoft 365). Microsoft first asks for your consent. Foundersflow then requests these delegated Microsoft Graph permissions:

  • Calendars.ReadWrite — read and write events in your calendar. We use this for the same purposes as with Google: working out free time slots from start and end times, and adding, changing or deleting meetings booked through Foundersflow in your calendar.
  • User.Read — read your basic profile (name and email address), to identify which account is connected.
  • offline_access — keep the connection active, so Foundersflow can keep using your calendar without you having to sign in again each time.
  • Mail.Send — only for Founders Flow team members who connect a mailbox in the settings: send emails from that mailbox, as described for Google above. We do not ask clients for this permission. Foundersflow cannot read your email.

The same rules apply as for Google user data (section 5). We only store the tokens, the email address of the connected account and the details of meetings booked through Foundersflow, in the EU. We do not sell anything, do not use anything for advertising or to train AI models, and do not send calendar data to Fireflies.ai, Anthropic or Voyage AI.

Revoking access:

7. Meeting notes and AI

  • Founders Flow can record and transcribe calls with clients using Fireflies.ai. Recordings, transcripts and summaries are stored per client in a knowledge base in Foundersflow, so agreements and conversations can be looked up later.
  • To make this knowledge base work, we process the text of meeting notes and uploaded documents with AI. Anthropic (Claude) writes summaries, classifies meetings and answers questions about the knowledge base. Voyage AI turns text into search data (embeddings), so you can search the knowledge base by meaning.
  • We only use these providers for the features described here.
  • Data that Foundersflow receives from your calendar through Google or Microsoft is never sent to Fireflies.ai, Anthropic or Voyage AI.

8. Who do we share data with?

We only share data with processors that are needed to provide Foundersflow. Some of them are only used when a user turns on that connection.

  • Supabase — database and file storage, in the EU (Frankfurt). We have signed a data processing agreement (DPA) with Supabase.
  • Vercel — hosting of the web application.
  • Google and Microsoft — calendar connections and sending email, only if you set up that connection.
  • Fireflies.ai — recordings and transcripts of calls.
  • Anthropic — AI for summaries, classification and answering questions.
  • Voyage AI — search data (embeddings) for the knowledge base.
  • TidyCal and Calendly — retrieving bookings, only if that connection is active.
  • Mollie — payments.
  • Email delivery (an SMTP server or Resend) — invitations, confirmations, notifications and follow-up emails.
  • Make — process automation, only if that connection is active.
  • Twilio and Meta (WhatsApp) — messages, only if that connection is active.
  • Slack — notifications, only if that connection is active.
  • Granola — meeting notes, only if that connection is active.

Some processors are located outside the European Economic Area, for example in the United States. For those transfers we use the safeguards required by the GDPR, such as the EU-US Data Privacy Framework or the Standard Contractual Clauses of the European Commission.

9. How long do we keep data?

  • Active client data, including meeting notes and documents in the knowledge base: for as long as the business relationship lasts.
  • Expired leads (no response or lost): up to 24 months after the last activity.
  • System logs (automation logs): up to 12 months.
  • Invoicing data and signed agreements: 7 years (statutory tax retention).
  • Form submissions and sent follow-up emails: as long as the lead or client they belong to.
  • Unsubscribes: as long as needed to make sure we do not send you follow-up emails again.
  • Tokens of a calendar or mailbox connection: until you disconnect or your account is deleted.

10. Security

  • All connections are secured with HTTPS (TLS).
  • Data is stored in the EU (Frankfurt, Supabase eu-central-1).
  • Access to data is separated per organization with Row Level Security (RLS) in the database.
  • Sign-in uses secure tokens (JWT) that expire automatically.
  • Passwords are never stored in readable form.

11. Your rights

You have the right to:

  • access your personal data;
  • have incorrect data corrected;
  • have your data deleted (right to be forgotten);
  • object to processing;
  • data portability;
  • withdraw your consent, without affecting processing that has already taken place.

Send your request to info@thedalindustry.nl. You can also submit your request through Founders Flow. We respond within 30 days.

12. Complaints

Do you have a complaint about how we handle your data? Please contact us first. You can also file a complaint with the Dutch Data Protection Authority, the Autoriteit Persoonsgegevens: autoriteitpersoonsgegevens.nl

13. Changes

We may update this privacy policy. The date at the top shows when the latest version was published. In case of major changes, we will inform users through Foundersflow.