Privacy and data protection
Privacy Policy
This Privacy Policy explains how Wemply OÜ handles personal data when you visit wemply.com, contact us, request a demo or communicate with our sales and support teams.
Scope
This policy applies to visitors to Wemply’s public website and to people who send us a contact or demo request, use the cookie controls, chat with support or otherwise communicate with us.
It covers Wemply’s own activities as a data controller. Personal data entered in the Wemply platform by a customer organisation is governed by the customer agreement, data-processing terms and the customer’s instructions.
Who controls your data?
The controller for website, sales and general customer-relationship data is Wemply OÜ (registry code 14261247), Kadaka tee 3/1, 10621 Tallinn, Estonia. Send privacy enquiries to info@wemply.com.
If you use Wemply through your employer or another customer organisation, that organisation normally determines why and how employee data is processed, while Wemply acts as its processor under instructions. Please first send a request about organisation-managed account data to your employer or account administrator.
Personal data we collect
We receive most personal data directly from you. Technical usage data is generated when you use the site, while optional analytics data is collected only after the relevant consent.
- Contact and demo requests. Name, work email, company, employee-count range, main area of interest, optional phone number, selected language and message content.
- Communications. Emails, chat conversations, support requests and related follow-up records.
- Technical data. IP address, basic browser and device information, request time, URL, referrer, and security or error-log data.
- Usage and campaign data. Page language and path, CTA interactions, UTM or other campaign source and analytics events when analytics consent has been given.
- Consent data. CookieYes consent ID, category choices and choice timestamp so we can apply your preferences and, where needed, demonstrate consent.
Purposes and legal bases
Wemply does not use website data to make automated decisions that produce legal or similarly significant effects for you.
- Answering enquiries and arranging a demo. We process data to take steps at your request before entering a contract and for our legitimate interest in managing sales and customer relationships.
- Website operation and security. We use strictly necessary technical data for our legitimate interest in operating the service, resolving errors and preventing misuse.
- Optional functionality and analytics. Intercom chat and Google Analytics tags are enabled on the basis of your consent to the relevant cookie category.
- Marketing. We send electronic marketing on the basis of consent or another basis permitted by applicable law. Every message includes an opt-out, and you can always object to direct marketing based on legitimate interests.
- Legal compliance and claims. We may retain or disclose data where required by law, an official order, or the establishment, exercise or defence of legal claims.
International data transfers
Some technology providers may process personal data outside the European Union or European Economic Area. Any such transfer must use a mechanism permitted by Chapter V of the GDPR and appropriate safeguards. Ask info@wemply.com for current information about a particular provider’s processing location and transfer mechanism.
How long we keep data
We keep personal data only for as long as it is needed for the stated purpose, to meet a legal obligation or to establish, exercise or defend a legal claim.
- Contact and demo requests. If no customer relationship begins, we normally delete or anonymise them no later than two years after the last meaningful contact.
- Marketing data. We keep it until consent is withdrawn, an objection is made or the purpose ends; we may retain a suppression record to prevent further messages.
- Consent and security records. We keep them only as long as needed to apply choices, demonstrate consent, investigate security events or defend a legal claim.
- Customer platform data. Retention follows the customer agreement, data-processing terms, customer instructions and applicable legal obligations.
Your data-protection rights
Depending on the circumstances, you may request access, correction or deletion, restriction of processing and data portability, or object to processing. You may withdraw consent at any time without affecting processing carried out before withdrawal.
Email info@wemply.com to submit a request. We may reasonably verify your identity before disclosing personal data and will respond within the time required by the GDPR.
How we protect data
We apply technical and organisational measures appropriate to risk, including access controls, secure transmission, logging, backups and incident-handling processes. Wemply’s information-security management system is certified to ISO/IEC 27001. View certificate and control information in the Wemply Trust Centre.
Changes to this policy and contact details
We update this policy when our services, technologies or legal requirements change. The current version and date are published here. We will communicate material changes in an appropriate way; simply using the website is not treated as new consent.
Privacy enquiries: info@wemply.com. Customer support: support@wemply.com. Postal address: Wemply OÜ, Kadaka tee 3/1, 10621 Tallinn, Estonia.