Rojo Consultancy B.V. ("Rojo") - Effective 16 June 2026
This policy explains how Rojo Consultancy B.V. collects and uses your personal data. Rojo is the data controller. We operate globally and comply with the EU General Data Protection Regulation (GDPR).
Contact: hello@rojoconsultancy.com De Corridor 5, 3621 ZA Breukelen, The Netherlands
What data we collect
Data you give us. When you fill out a form on our website or on our event registration pages — for example to download a whitepaper, contact us, register for an event, or subscribe to our newsletter — we collect your name, company, email address and phone number. Where relevant to a service or contract, we may also collect your address, job details and similar business information.
Data from other sources. We may collect business information from public sources such as the Chamber of Commerce Trade Register or company websites.
Technical data. When you visit our website we collect connection type, IP address, operating system and browser type, to maintain and improve the site.
Photos and video at events. When you attend one of our events, we may take photographs and video recordings. These may include general shots of the audience and venue in which you are incidentally recognisable, as well as — only with your permission — portraits, interviews or other footage in which you are the main subject.
How we collect event registration data
We host some events on Microsoft Teams event and registration pages. When you register for one of these events, your registration data is collected and processed through Microsoft's platform on our behalf, under Microsoft's terms as our processor. Microsoft may also set its own cookies and collect technical data when you use those pages, governed by the Microsoft Privacy Statement.
Why we use your data, and our legal basis
- To respond to enquiries and provide our services — to perform a contract or take steps before entering one.
- To send newsletters and marketing about our products, services and events — based on your consent. You can unsubscribe at any time using the link in any email.
- To improve and develop our website, products and services — based on our legitimate interest in running and improving our business.
- To notify you of changes to this policy or our Terms — to meet our legal obligations.
- To publish photos and video of our events for reporting and marketing purposes, such as on our website and social media. For general audience and atmosphere shots, we rely on our legitimate interest in promoting our events and business; we inform attendees at the venue and you can object at any time, before, during or after the event. For photos or video in which you are individually the main subject (such as portraits or interviews), we ask for your consent, which you can withdraw at any time. To object or withdraw consent, contact us at hello@rojoconsultancy.com and we will remove or stop using the material where reasonably possible.
Who we share data with
We do not sell your personal data. We share it only with:
- Service providers ("processors"), including Microsoft (event registration and hosting), our CRM provider (Microsoft Dynamics), and Google (website analytics). These providers may only use your data to provide their service to us.
- Authorities or others where the law requires it, or in connection with legal proceedings.
- Partners, where we jointly offer a product or service to you.
Some of these providers may process data outside the EU/EEA. Where that happens, we rely on appropriate safeguards (such as EU Standard Contractual Clauses or an adequacy decision) to protect your data.
Cookies
We use functional cookies that are necessary for the website to work, and analytics cookies (Google Analytics, managed via Google Tag Manager) to understand how visitors use our site. Analytics cookies are only placed with your consent, which you give through our cookie banner and can withdraw at any time.
How we store and protect your data
Your data is held in our cloud-based CRM and related systems. We apply security measures including two-step verification and strong, automatically generated passwords to prevent unauthorised access or misuse.
How long we keep your data
We keep personal data only for as long as necessary for the purposes above:
- Customer and contract records: generally up to 10 years after the end of the relevant agreement, to meet legal and tax obligations.
- Marketing data: until you unsubscribe or ask us to delete it.
Your rights
You have the right to: access your data; have it corrected or completed; have it erased; restrict how we process it; object to processing; and request portability of your data. Where we process data based on consent, you can withdraw that consent at any time.
To exercise any of these rights, contact us at hello@rojoconsultancy.com. We will respond within one month.
Complaints
If you have a concern about how we handle your data, please contact us first so we can resolve it. You also have the right to lodge a complaint with the Dutch Data Protection Authority (Autoriteit Persoonsgegevens).
Updates to this policy
We review this policy regularly and update it to reflect changes in law or practice. The current version is always available on our website. Where changes are relevant to you, we will make them clearly visible or notify you.
This policy was last updated on 16 June 2026.