Privacy Policy for Bikeloop

Privacy Policy for Bikeloop

This privacy policy explains how Bikeloop collects, uses, and protects your personal information in accordance with the Personal Data Act and GDPR.

Data Controller

Bikeloop AS, led by the CEO, is responsible for the processing of personal data. The statement contains information you are entitled to regarding how we collect information from our website (Personal Data Act § 19) and general information about how we process personal data (Personal Data Act § 18 section 1).

Any questions about privacy can be addressed to us via gdpr@bikeloop.no.

Types of Personal Information We Collect

We collect various types of personal information, including:

  • Contact information: Name, email address, and phone number provided through web forms or other communication.

  • Usage data: Anonymized data such as IP address, duration of visits, and interactions collected via Google Analytics.

  • Marketing data: Information collected via tools like Pipedrive and Leadfeeder to analyze and tailor marketing efforts.

  • Cookies: See the dedicated section on cookies 

  • Service data: When using our app for secure bike parking, we collect names, mobile numbers, and payment information necessary to deliver the service. We also store parking history and transaction data to provide user support.

Purpose and Legal Basis for Processing

Bikeloop collects personal data for the following purposes:

  • Communication: To respond to inquiries received via web forms or other channels. Legal basis: Consent or legitimate interest.

  • Statistics and analysis: To improve the website's functionality and user experience through anonymized data. Legal basis: Consent.

  • Marketing: For follow-up with existing and potential customers via tools like Pipedrive and Leadfeeder. Legal basis: Consent or agreement.

  • Service delivery: To provide secure bike parking as a service, including processing payments, storing parking history, and delivering user support. Legal basis: Agreement.

How We Store and Secure Data

We take data security seriously and store personal information only as long as necessary to fulfill the purposes. The measures we have implemented include:

  • Encryption of data during transfer and storage.

  • Secure access management that restricts who can access the information.

  • Using reliable data processors, including Wix, Google, and Pipedrive.

  • All data for the Bikeloop service is stored in Azure on servers in Norway.

  • All communication between users, the app, and the service is encrypted.

  • Service-based data is retained as long as the user has the service active. By using "delete account" under my user in the app, the data is immediately anonymized. All data is also anonymized in backup systems within 30 days after deletion.

  • Payment data is handled according to accounting law requirements and stored for 5 years. Payment information is stored in payment partners' systems (Stripe or Vipps) and processed only for payment purposes.

Data Processors and Third-Party Suppliers

We use third-party suppliers to deliver our services in a secure and efficient manner. This includes:

Data processed outside the EU/EEA is secured with standard contractual clauses (SCC).


Cookies

Bikeloop uses cookies on its website to:

  • Collect anonymized statistics about website use to improve user experience.

  • Deliver personalized content and marketing.​

Consent to the use of cookies is obtained via a pop-up on the website where the user must actively click "OK" to accept. You can withdraw your consent to cookies through your browser settings.

Your Rights

As a user of Bikeloop, you have rights that ensure your control over how your personal data is processed. This includes the right to access, rectify, and delete data we have stored about you. Below is an overview of your rights:

  • Access: Request to know what information we have stored about you.

  • Rectification: Request that incorrect information be rectified.

  • Deletion: Request deletion of information that is no longer necessary for the purpose for which it was collected.

  • Restriction: Request restricted processing of your information.

  • Data portability: Request to obtain data you have provided to us in a digital format that can be used by other systems.

  • Complaints to the Data Protection Authority: If you believe that our processing of your personal data is in violation of the law, you can contact the Data Protection Authority via their complaint form or by phone +47 22 39 69 00.

Retention times for different types of data are:

  • Contact details and service data: As long as the user has an active account.

  • Payment data: 5 years according to accounting legislation.

To exercise your rights, please contact us at hello@bikeloop.no or personvern@bikeloop.no.

Consent Management

  • Website: The user accepts cookies by clicking "OK" in the consent banner at the bottom of the page.

  • App: The user must accept the app's terms of service to activate the service.

  • Newsletter: The user must provide specific consent to receive newsletters and can withdraw this at any time.

Consent can be withdrawn by contacting us via email or through settings in the app or website.

Internal Control and Procedures

Bikeloop has implemented procedures to ensure that the processing of personal data is done in accordance with applicable regulations:

  • Regular reviews of privacy practices.

  • Training of staff on GDPR and data security.

  • Internal control to monitor the processing and storage of personal data.

  • Ensuring that all agreements with third-party suppliers are updated and comply with GDPR.

  • Annual audits of our privacy practices, documented as part of our internal control.

Contact Information

For questions about how we handle your personal data, or to exercise your rights, please contact us via the following channels:

  • Email: gdpr@bikeloop.no

  • Postal address: Bikeloop AS, Lysaker Torg 2, 1366 Oslo

This privacy policy explains how Bikeloop collects, uses, and protects your personal information in accordance with the Personal Data Act and GDPR.

Data Controller

Bikeloop AS, led by the CEO, is responsible for the processing of personal data. The statement contains information you are entitled to regarding how we collect information from our website (Personal Data Act § 19) and general information about how we process personal data (Personal Data Act § 18 section 1).

Any questions about privacy can be addressed to us via gdpr@bikeloop.no.

Types of Personal Information We Collect

We collect various types of personal information, including:

  • Contact information: Name, email address, and phone number provided through web forms or other communication.

  • Usage data: Anonymized data such as IP address, duration of visits, and interactions collected via Google Analytics.

  • Marketing data: Information collected via tools like Pipedrive and Leadfeeder to analyze and tailor marketing efforts.

  • Cookies: See the dedicated section on cookies 

  • Service data: When using our app for secure bike parking, we collect names, mobile numbers, and payment information necessary to deliver the service. We also store parking history and transaction data to provide user support.

Purpose and Legal Basis for Processing

Bikeloop collects personal data for the following purposes:

  • Communication: To respond to inquiries received via web forms or other channels. Legal basis: Consent or legitimate interest.

  • Statistics and analysis: To improve the website's functionality and user experience through anonymized data. Legal basis: Consent.

  • Marketing: For follow-up with existing and potential customers via tools like Pipedrive and Leadfeeder. Legal basis: Consent or agreement.

  • Service delivery: To provide secure bike parking as a service, including processing payments, storing parking history, and delivering user support. Legal basis: Agreement.

How We Store and Secure Data

We take data security seriously and store personal information only as long as necessary to fulfill the purposes. The measures we have implemented include:

  • Encryption of data during transfer and storage.

  • Secure access management that restricts who can access the information.

  • Using reliable data processors, including Wix, Google, and Pipedrive.

  • All data for the Bikeloop service is stored in Azure on servers in Norway.

  • All communication between users, the app, and the service is encrypted.

  • Service-based data is retained as long as the user has the service active. By using "delete account" under my user in the app, the data is immediately anonymized. All data is also anonymized in backup systems within 30 days after deletion.

  • Payment data is handled according to accounting law requirements and stored for 5 years. Payment information is stored in payment partners' systems (Stripe or Vipps) and processed only for payment purposes.

Data Processors and Third-Party Suppliers

We use third-party suppliers to deliver our services in a secure and efficient manner. This includes:

Data processed outside the EU/EEA is secured with standard contractual clauses (SCC).


Cookies

Bikeloop uses cookies on its website to:

  • Collect anonymized statistics about website use to improve user experience.

  • Deliver personalized content and marketing.​

Consent to the use of cookies is obtained via a pop-up on the website where the user must actively click "OK" to accept. You can withdraw your consent to cookies through your browser settings.

Your Rights

As a user of Bikeloop, you have rights that ensure your control over how your personal data is processed. This includes the right to access, rectify, and delete data we have stored about you. Below is an overview of your rights:

  • Access: Request to know what information we have stored about you.

  • Rectification: Request that incorrect information be rectified.

  • Deletion: Request deletion of information that is no longer necessary for the purpose for which it was collected.

  • Restriction: Request restricted processing of your information.

  • Data portability: Request to obtain data you have provided to us in a digital format that can be used by other systems.

  • Complaints to the Data Protection Authority: If you believe that our processing of your personal data is in violation of the law, you can contact the Data Protection Authority via their complaint form or by phone +47 22 39 69 00.

Retention times for different types of data are:

  • Contact details and service data: As long as the user has an active account.

  • Payment data: 5 years according to accounting legislation.

To exercise your rights, please contact us at hello@bikeloop.no or personvern@bikeloop.no.

Consent Management

  • Website: The user accepts cookies by clicking "OK" in the consent banner at the bottom of the page.

  • App: The user must accept the app's terms of service to activate the service.

  • Newsletter: The user must provide specific consent to receive newsletters and can withdraw this at any time.

Consent can be withdrawn by contacting us via email or through settings in the app or website.

Internal Control and Procedures

Bikeloop has implemented procedures to ensure that the processing of personal data is done in accordance with applicable regulations:

  • Regular reviews of privacy practices.

  • Training of staff on GDPR and data security.

  • Internal control to monitor the processing and storage of personal data.

  • Ensuring that all agreements with third-party suppliers are updated and comply with GDPR.

  • Annual audits of our privacy practices, documented as part of our internal control.

Contact Information

For questions about how we handle your personal data, or to exercise your rights, please contact us via the following channels:

  • Email: gdpr@bikeloop.no

  • Postal address: Bikeloop AS, Lysaker Torg 2, 1366 Oslo