Legal

Privacy Policy

How Axesscom processes personal data in accordance with the GDPR and applicable EU law.

LegalInformation
GDPRCompliant
TransparentPolicies
Legal

Privacy Policy

This page provides GDPR-aligned information for Axesscom website visitors and contact inquiries. For privacy requests, contact kontakt@axesscom.de.
GDPRCompliant
EUStandards
Updated2026

1. Scope and controller

This Privacy Policy explains how Axesscom GmbH ("Axesscom", "we", "us") processes personal data when you visit our websites (including axesscom.com, axesscom.de, axesscom.ph and related subdomains), contact us, or interact with our services. We process personal data in accordance with the General Data Protection Regulation (GDPR), the German Federal Data Protection Act (BDSG) and other applicable EU data protection laws.

Controller within the meaning of Art. 4(7) GDPR:

Axesscom GmbH
Hanauer Landstraße 204
60314 Frankfurt am Main
Germany

Represented by: Jens Horn
Commercial register: HRB 105 401, Frankfurt am Main
VAT ID: DE2089174356

Email (privacy): kontakt@axesscom.de
Phone: +49 (0) 176 304 69483

Axesscom Philippines Inc. acts as a separate controller or processor for specific operational activities. Where data is transferred to the Philippines, we apply the safeguards described in Section 9 below.

We have not appointed a statutory Data Protection Officer (DPO) because the legal requirements for mandatory appointment are not met. Privacy requests may nevertheless be sent to the contact address above at any time.

2. Categories of personal data we process

Depending on your interaction with us, we may process the following categories of data:

  • Website usage data: IP address, date and time of access, requested URL, referrer URL, browser type and version, operating system, device type and similar technical log data generated by our web server.
  • Contact and inquiry data: name, company, email address, telephone number, subject of inquiry, message content and any other information you voluntarily provide via contact forms, email or telephone.
  • Preference data: language selection stored locally in your browser (local storage key axesscom-lang).
  • Contract and business relationship data: if you become a customer or business partner, we additionally process data required for contract initiation, performance, billing and compliance (e.g. contact persons, billing details, project correspondence). This policy focuses on website-related processing; separate contractual privacy notices may apply to customer projects.

We do not knowingly collect personal data from children under 16. If you believe we have received such data, please contact us immediately so we can delete it.

3. Purposes and legal bases (Art. 6 GDPR)

Processing activityPurposeLegal basis
Provision of the websiteDisplaying pages, ensuring stability and security, detecting abuseArt. 6(1)(f) GDPR (legitimate interest in secure operation)
Server log filesTechnical diagnostics, IT security, incident analysisArt. 6(1)(f) GDPR; where required, Art. 6(1)(c) GDPR (legal obligations)
Language preference (local storage)Remembering your selected language between visitsArt. 6(1)(f) GDPR (legitimate interest in user-friendly presentation) or, where applicable, § 25(2) No. 2 TTDSG (technically necessary storage/access)
Handling contact inquiriesResponding to your request, preparing offers, customer communicationArt. 6(1)(b) GDPR (pre-contractual steps) and/or Art. 6(1)(f) GDPR (legitimate interest in efficient communication)
Customer and project deliveryContract performance, support, documentationArt. 6(1)(b) GDPR
Compliance and legal defenceRetention of records, enforcement of claims, regulatory complianceArt. 6(1)(c) and Art. 6(1)(f) GDPR

Where we rely on legitimate interests, you may object at any time (see Section 8). We will then cease processing unless we demonstrate compelling legitimate grounds that override your interests.

We do not use your personal data for automated decision-making or profiling within the meaning of Art. 22 GDPR.

4. Cookies and similar technologies

Details on cookies, local storage and consent are set out in our separate Cookie Policy. At present we do not use marketing, analytics or social media tracking cookies on this website. Only technically necessary storage (language preference) and standard server-side processing apply.

5. Sources of data

We receive personal data directly from you (e.g. contact forms, email, phone), automatically through your device when you access our website (server logs), and, in business relationships, from your organisation or publicly available professional sources where permitted by law.

6. Recipients and processors

Personal data is disclosed to third parties only where necessary, legally required or with your consent. Categories of recipients may include:

  • Hosting and infrastructure providers (within the EU/EEA where possible)
  • IT service providers supporting website operation, email and security
  • Professional advisers (lawyers, tax advisers, auditors) bound by confidentiality
  • Authorities where required by law
  • Axesscom Philippines Inc. and affiliated delivery teams for operational support, subject to appropriate safeguards

We use processors only under written agreements pursuant to Art. 28 GDPR. Processors may access data solely on our instructions and must implement appropriate technical and organisational measures.

7. Retention periods

We store personal data only as long as necessary for the purposes stated above:

  • Server logs: typically up to 30 days, unless longer retention is required for security investigations or legal obligations.
  • Contact inquiries: up to 24 months after the last communication, unless a business relationship continues or statutory retention periods require longer storage.
  • Contract and billing data: in accordance with commercial and tax retention obligations (generally up to 10 years under German law).
  • Language preference (local storage): until you delete it in your browser or change your selection.

After expiry of the retention period, data is deleted or anonymised unless continued storage is legally permitted.

8. Your rights as a data subject

Under the GDPR you have the following rights, subject to legal conditions and limitations:

  • Right of access (Art. 15 GDPR)
  • Right to rectification (Art. 16 GDPR)
  • Right to erasure ("right to be forgotten", Art. 17 GDPR)
  • Right to restriction of processing (Art. 18 GDPR)
  • Right to data portability (Art. 20 GDPR), where applicable
  • Right to object to processing based on Art. 6(1)(f) GDPR (Art. 21 GDPR)
  • Right to withdraw consent at any time with future effect, where processing is based on consent (Art. 7(3) GDPR)

To exercise your rights, contact us at kontakt@axesscom.de. We may request proof of identity where reasonably necessary to protect your data from unauthorised access.

You also have the right to lodge a complaint with a supervisory authority, in particular in the EU member state of your habitual residence, place of work or place of the alleged infringement. Our lead supervisory authority is:

Der Hessische Beauftragte für Datenschutz und Informationsfreiheit
Gustav-Stresemann-Ring 1
65189 Wiesbaden, Germany
Website: datenschutz.hessen.de

9. International transfers

Axesscom operates in Germany and the Philippines. Where personal data is transferred to countries outside the EU/EEA (including the Philippines), we ensure an adequate level of protection through:

  • European Commission adequacy decisions, where available, and/or
  • Standard Contractual Clauses (SCCs) approved by the European Commission (Art. 46(2)(c) GDPR), supplemented by additional technical and organisational measures where appropriate, and/or
  • other lawful transfer mechanisms under Chapter V GDPR.

Copies of relevant safeguards may be requested at kontakt@axesscom.de, subject to confidentiality and legal restrictions.

10. Security measures

We implement appropriate technical and organisational measures pursuant to Art. 32 GDPR, including access controls, encryption in transit (TLS/HTTPS), least-privilege access, logging and regular review of our security practices. No method of transmission or storage is completely secure; we cannot guarantee absolute security but we work continuously to protect personal data.

11. External links and third-party content

Our website may contain links to external websites (e.g. news sources on the AI Insights page). When you follow such links or load third-party content, the respective provider may process your data under its own privacy policy. We do not control third-party processing and recommend reviewing their policies before sharing personal data.

12. Changes to this policy

We may update this Privacy Policy to reflect legal, technical or operational changes. The current version is always published on this page with the date below. Material changes will be highlighted where appropriate.

Last updated: July 2026