Privacy Policy
1. Who is responsible
GMG Green Media Group Sàrl ("GMG", "we"), Tranchepied 3, 1278 La Rippe, Vaud, Switzerland — company number CHE-114.987.555 — operates this website under the name GMG.digital and is the controller of the personal data described below.
You can reach us about anything on this page through the contact form, or by email using the link on our contact page.
2. What we collect, and when
We collect personal data in one place only: when you choose to send it through the contact form. That is your name and email address, and — if you provide them — your organisation, telephone number, the topics you selected and the message you wrote. We also record which language you were reading the site in, so that we reply in it.
We do not use cookies, we run no advertising or tracking pixels, and we build no profiles of visitors.
3. Why we use it
To answer you, and to manage the commercial relationship if one follows. We do not use your details for unrelated marketing, and we neither sell nor rent them to anyone.
The legal basis is your consent in sending the message, together with our legitimate interest in responding to an enquiry addressed to us.
4. Who processes it on our behalf
We keep the number of processors deliberately small, and prefer Swiss and European providers:
- Infomaniak (Switzerland) — hosts this website and our infrastructure.
- Odoo — our CRM, where an enquiry becomes a record we can act on.
- Infomaniak mail (Switzerland) — a second copy of every enquiry is emailed to us, so a message cannot be lost if the CRM fails.
- Umami — our own analytics, self-hosted on our own infrastructure. It is cookieless, collects no personal data, and is never shared.
We transfer your data to no other third party, and no third party receives it for its own purposes.
5. How long we keep it
Enquiries are retained for as long as they remain useful to the relationship, and reviewed periodically. Where no relationship follows, we delete the enquiry within 24 months.
6. Your rights
Under the Swiss Federal Act on Data Protection (nFADP) and, where it applies to you, the EU General Data Protection Regulation (GDPR), you may ask us for a copy of the data we hold about you, ask us to correct it, ask us to delete it, or object to our use of it. Write to us and we will answer.
If our response does not satisfy you, you may contact the Swiss Federal Data Protection and Information Commissioner (FDPIC), or your local supervisory authority if you are in the EU.
7. Security
Traffic to this site is encrypted in transit. Access to the CRM is limited to the people who need it. Where we build systems for clients the same principles apply — Swiss hosting, least privilege, and no data leaving the country without a reason we can explain.
8. Changes
If this policy changes, the revised version appears on this page with a new date, and the history of every change is kept in our source control.