Privacy Policy Sertalink

Effective Date: 26 July 2026
Applies to: www.sertalink.com


1. Introduction

Sertalink (“we”, “us”, or “our”) is committed to protecting and respecting your privacy. This Privacy Policy sets out the basis on which any personal data we collect from you, or that you provide to us, will be processed by us. Please read the following carefully to understand our views and practices regarding your personal data and how we will treat it.

This policy applies to all personal data collected through our website at www.sertalink.com, including through any contact forms, enquiry submissions, or other interactions with our digital services. By submitting your personal data through any form on our website, you acknowledge that you have read and understood this Privacy Policy.

This Privacy Policy is compliant with the General Data Protection Regulation (EU) 2016/679 (GDPR) and applicable national data protection legislation.

2. Who We Are

Sertalink is a specialist reseller of cybersecurity products and services. We act as the Data Controller for personal data collected through our website. As a Data Controller, we determine the purposes and means by which your personal data is processed.

Our designated privacy contact for all data protection matters is our Helpdesk, reachable at helpdesk@sertalink.com.

3. Data We Collect

We may collect, use, store, and transfer different kinds of personal data about you, which we have grouped as follows:

CategoryExamples
Identity DataFirst name, last name, job title, company name
Contact DataEmail address, telephone number, postal address
Enquiry DataThe content of messages or questions submitted via our contact forms
Technical DataIP address, browser type and version, operating system, time zone, referring URLs
Usage DataInformation about how you navigate and use our website
Marketing & Communications DataYour preferences for receiving marketing communications from us

We do not collect any Special Categories of Personal Data (such as data about your race, ethnicity, religious beliefs, health, or biometric data), nor do we collect data relating to criminal convictions or offences.

4. How We Collect Your Data

We use different methods to collect data from and about you, including:

  • Direct Interactions: You provide data by filling in contact or enquiry forms on our website, or by communicating with us via email or telephone.
  • Automated Technologies: As you browse our website, we may automatically collect Technical Data using cookies, server logs, and similar technologies.
  • Third Parties: We may receive data about you from analytics providers, advertising networks, or publicly available sources, where applicable.

5. How We Use Your Data

We will only use your personal data when the law allows us to. The table below sets out the purposes for which we process your data and the legal basis we rely on under the GDPR:

PurposeLegal Basis (GDPR Art. 6)
To respond to your enquiry submitted via a contact formConsent / Legitimate Interests
To contact you about our cybersecurity products and servicesConsent
To send you marketing communications (newsletters, offers, updates)Consent
To manage and improve our website and servicesLegitimate Interests
To comply with legal or regulatory obligationsLegal Obligation
To detect and prevent fraud or security incidentsLegitimate Interests / Legal Obligation

By submitting your contact information through any form on our website, you explicitly consent to Sertalink contacting you in relation to your enquiry and, where indicated, for marketing purposes. You may withdraw your consent at any time by contacting us at helpdesk@sertalink.com.

6. Marketing

We may use your Identity, Contact, and Usage Data to form a view of what products, services, or information may be of interest to you. Where you have provided consent, we will send you marketing communications by email or other agreed channels.

You can ask us to stop sending you marketing messages at any time by contacting us at helpdesk@sertalink.com or by following the unsubscribe link included in any marketing email we send you. Opting out of marketing communications will not affect the processing of your personal data for other purposes, such as responding to an active enquiry.

We will never sell your personal data to third parties. Any marketing use of your data is conducted solely by Sertalink in accordance with GDPR.

7. Data Storage & Security

As a cybersecurity reseller, we hold ourselves to the highest standards of data security. We have implemented appropriate technical and organisational measures to protect your personal data against accidental or unlawful destruction, loss, alteration, unauthorised disclosure, or access.

  • Storage Location: Data is stored on secure servers within the European Economic Area (EEA) or in countries that provide an adequate level of protection as recognised by the European Commission.
  • Access Controls: Access to personal data is restricted to authorised personnel who have a legitimate need to process it.
  • Encryption: We apply industry-standard encryption for data in transit and at rest where applicable.
  • Breach Procedures: We have procedures in place to deal with any suspected personal data breach and will notify you and the relevant supervisory authority where we are legally required to do so.

8. Data Retention

We will only retain your personal data for as long as reasonably necessary to fulfil the purposes for which it was collected, including for the purposes of satisfying any legal, regulatory, tax, accounting, or reporting requirements.

To determine the appropriate retention period for personal data, we consider the amount, nature, and sensitivity of the data; the potential risk of harm from unauthorised use or disclosure; the purposes for which we process your data; and whether we can achieve those purposes through other means.

In general, contact and enquiry data is retained for a period of up to 3 years from the date of last interaction, unless a longer period is required by law or you request earlier deletion.

9. Your GDPR Rights

Under the GDPR, you have a number of important rights in relation to your personal data. These include:

  • Right of Access: Request a copy of the personal data we hold about you.
  • Right to Rectification: Request correction of inaccurate or incomplete personal data.
  • Right to Erasure: Request that we delete your personal data.
  • Right to Restrict Processing: Request that we suspend processing of your personal data.
  • Right to Data Portability: Request the transfer of your personal data to you or a third party.
  • Right to Object: Object to processing of your personal data where we rely on legitimate interests.
  • Right to Withdraw Consent: Withdraw consent at any time where we rely on consent.
  • Right to Complain: Lodge a complaint with your local data protection supervisory authority.

To exercise any of the rights above, please contact us at helpdesk@sertalink.com. We will respond to all legitimate requests within 30 days.

Our website may include links to third-party websites, plug-ins, and applications operated by our cybersecurity vendor partners or other organisations. Clicking on those links or enabling those connections may allow third parties to collect or share data about you. We do not control these third-party websites and are not responsible for their privacy statements or practices.

11. Cookies

Our website uses cookies and similar tracking technologies to distinguish you from other users, improve your browsing experience, and help us understand how our website is being used. You can set your browser to refuse all or some browser cookies, or to alert you when websites set or access cookies. For full details of the cookies we use, please contact us at helpdesk@sertalink.com.

12. Changes to This Policy

We keep this Privacy Policy under regular review and will update it from time to time to reflect changes in our practices, technology, legal requirements, or other factors. Any updates will be posted on this page with a revised effective date at the top of the document.

13. Contact Us

If you have any questions, concerns, or requests regarding this Privacy Policy or the way we handle your personal data, please do not hesitate to reach out to our Helpdesk:

You also have the right to make a complaint at any time to your national data protection supervisory authority. In the EU, you can find your local authority via the European Data Protection Board.