Privacy Policy

Last updated: 13.10.2025

The brand Director Suisse and its website(s) are owned and operated by Vervitas GmbH.

Preamble

Vervitas GmbH (“we,” “us,” “our”) is committed to protecting your personal data and respecting your privacy. This Privacy Policy explains how we collect, use, share, and protect your information in accordance with the General Data Protection Regulation (GDPR) and the Swiss Federal Act on Data Protection (FADP).

By accessing and using our website(s), social media channel(s), and when you enter into a contractual relationship with us, you consent to the collection, usage, storage, transfer, and disclosure of your data in accordance with this Privacy Policy.

If you believe that the processing of your data violates data protection law or your data protection rights have otherwise been violated in a way, you can complain to the supervisory authority. In Switzerland, this is the Federal Data Protection and Information Commissioner (FDPIC).

1. Data Controller

Vervitas GmbH
Emil Oprecht Strasse 1
8050 Zurich, Switzerland
Email: [email protected]

2. Personal Data We Collect

We may collect the following categories of personal data:

  • Identification and contact details: name, email address, phone number.
  • Compliance data: Know-Your-Customer (KYC) and Know-Your-Business (KYB) information.
  • Technical data: IP address, cookies, analytics data, device information (browser type, operating system, device identifiers, usage patterns).
  • Contractual and financial data: information required for invoicing, contracting, and service provision, including payment details if you purchase services via our website.
  • Information about you that is publicly available.

We do not intend to collect or knowingly collect information about children. Our services are not targeted at children.

3. How We Collect Personal Data

We obtain personal data from:

  • Forms on our website (e.g., contact form, service purchase form, newsletter signup).
  • Direct communications by email or phone.
  • Social media interactions (e.g., LinkedIn, X).
  • Automated tracking technologies such as cookies, analytics (Google Analytics, Cloudflare), and retargeting tools (e.g., LinkedIn Pixel, X Pixel).
  • Device data collected when you access our website (IP address, browser settings, access times, referring URLs).
  • Third-party providers, including KYC service providers and payment processors.

4. Purposes of Processing

We process personal data only for the following purposes:

  • Communication, responding to inquiries, and providing customer service.
  • Sending newsletters and marketing communications.
  • Contract execution, invoicing, and payment processing.
  • Provision of consulting and advisory services.
  • Compliance with KYC/KYB and legal due diligence obligations.
  • Website security, performance, and analytics.
  • Retargeting and tracking on social media platforms (LinkedIn, X).
  • Improve your customer experience.
  • Conduct customer satisfaction surveys.

5. Legal Basis for Processing

We rely on the following legal bases under GDPR and FADP:

  • Contract performance (Art. 6(1)(b) GDPR): providing services, processing payments, handling purchases.
  • Legal obligations (Art. 6(1)(c) GDPR): compliance with KYC, KYB, accounting, and retention laws.
  • Legitimate interests (Art. 6(1)(f) GDPR): business development, fraud prevention, IT security, marketing.
  • Consent (Art. 6(1)(a) GDPR): for newsletters, marketing, tracking, and cookies when required.

6. Data Sharing

Your information will not be sold, exchanged, or shared with any third parties without your consent, except to provide our services or as required by law. We only share data with third parties when necessary:

  • To comply with legal or regulatory obligations.
  • With service providers and partners required for business operations (e.g., cloud hosting, CRM, payment processors, compliance tools).
  • With external consultants engaged in providing contracted services.
  • Affiliated brands and companies.

Authorities: We may disclose personal data to offices, courts, and other authorities in Switzerland and abroad if we are legally obliged or entitled to do so, or if this appears necessary to protect our interests.

All third parties are contractually bound to safeguard personal data.

7. International Transfers

We store and process your personal data primarily in Switzerland and the EU. Some personal data may be transferred outside Switzerland and the EU, to enable the use of tools for internal operations (e.g. CRM, marketing automation, AI).

We ensure adequate safeguards such as:

  • EU Standard Contractual Clauses (SCCs),
  • Swiss FDPIC-approved mechanisms, or
  • Transfers to countries recognized as having adequate data protection levels.

8. Data Retention

We retain your personal data only as long as necessary:

  • Business and contractual data: up to 10 years, in line with Swiss commercial and tax law.
  • Marketing data: until you withdraw consent.
  • Compliance data (KYC/KYB): as long as legally required.
  • Other personal data: deleted upon your request, unless retention is legally required.

9. Data Subject Rights

You have the following rights under GDPR and FADP:

  • Right to access your personal data.
  • Right to rectification of inaccurate data.
  • Right to erasure (“right to be forgotten”).
  • Right to restrict processing.
  • Right to object to processing (e.g., direct marketing, retargeting).
  • Right to data portability.
  • Right to withdraw consent at any time.

To exercise your rights, contact us at [email protected].

10. Cookies, Tracking & Retargeting

Our website uses cookies and similar technologies, including Google Analytics, Cloudflare, and retargeting tools from social media platforms such as LinkedIn and X.

  • Essential cookies: required for website functionality.
  • Analytics cookies: used to analyze traffic and improve services.
  • Marketing cookies and pixels: used for advertising and retargeting campaigns.

You may manage cookies via your browser settings or through the consent banner on our website.

11. Security Measures

We have implemented appropriate technical and organizational measures to protect personal data, including:

  • Encryption of data in transit and at rest.
  • Access controls and authentication measures.
  • Regular monitoring of IT systems and service providers.

Despite these measures, no system is completely secure; data transmission is at your own risk.

12. Third-Party Sites

Our website may contain links to other websites. When you click on one of these links, you will leave our website and be subject to the policies and practices of the other websites, which may differ significantly.

We are not responsible for the content, technology, security, or practices of linked websites operated by others, or for your use of such websites. We encourage you to review the privacy policies of any external sites you visit.

13. Responsibilities of the Data Subject

As a user, you are responsible for ensuring that:

  • The information you provide is accurate, complete, and up to date.
  • You keep your login credentials and access information secure, where applicable.
  • You use our website and services in compliance with applicable laws and regulations.
  • You promptly notify us if your data needs to be corrected or deleted.

14. Changes to This Privacy Policy

We may update this Privacy Policy from time to time. Any changes will be published on our website with a new “last updated” date.

15. Contact

For questions, concerns, or to exercise your rights, please contact:

Vervitas GmbH
Emil Oprecht Strasse 1
8050 Zurich, Switzerland
Email: [email protected]