Legal

Privacy Policy

Last updated: May 2026

We prioritise your privacy and are committed to protecting your personal data. This policy outlines how we collect, use, and protect your information in compliance with the General Data Protection Regulation (GDPR).

1. Data controller

The data controller responsible for your personal data is:

AURITA
Operated by Aniela Hoitink
The Netherlands
Website: www.aurita.nl

For all privacy-related enquiries, please use the contact form at aurita.nl/#contact.

2. Data we collect

Personal information

When you use the contact form or subscribe to our newsletter, we may collect: name, email address, organisation name, and the content of your message.

Usage data

Information about how you use our website, including pages visited, time spent on pages, and referring URLs.

Technical data

IP address, browser type and version, operating system, and device type. This data is collected automatically when you visit our website.

Newsletter data

If you subscribe to our newsletter via MailerLite, we collect your email address and the date of subscription. MailerLite may also collect technical data such as open rates and click behaviour.

3. How we use your data

  • To respond to enquiries — to reply to messages submitted via the contact form
  • To send newsletters — to deliver the article series and updates you subscribed to
  • To improve our website — to understand how visitors use aurita.nl and make it more useful
  • To comply with legal obligations — where required by applicable law
  • Legitimate business interests — to manage and develop our professional relationships and services

4. Legal basis for processing

We process your personal data on the following legal grounds under GDPR Article 6:

  • Consent — when you submit the contact form or subscribe to the newsletter, you give explicit consent for us to process your data for that purpose
  • Contractual necessity — when processing is necessary to provide services you have requested
  • Legal obligation — when processing is required to comply with applicable law
  • Legitimate interests — for website analytics and improving our services, where your rights and interests do not override ours

5. Data sharing

We do not sell your personal data. We do not share your data with third parties for marketing purposes.

We may share your information with the following categories of recipients:

  • Service providers — third-party tools that help us operate our website and communications, including WPForms (contact form processing), MailerLite (newsletter delivery), and our hosting provider (Strato). These providers act as data processors and are contractually bound to process your data only on our instructions.
  • Legal authorities — when required by law or to protect our legal rights

A full list of the tools we use and links to their privacy policies:

6. International transfers

MailerLite is based in Lithuania (EU) and processes data within the European Economic Area. Some of our other service providers may process data outside the EU. Where this occurs, we ensure that appropriate safeguards are in place, such as Standard Contractual Clauses approved by the European Commission, to protect your data in accordance with GDPR requirements.

7. Data retention

We retain your personal data only for as long as necessary for the purposes described in this policy, or as required by law:

  • Contact form submissions — retained for up to 2 years, or until you request deletion
  • Newsletter subscriptions — retained until you unsubscribe or request deletion
  • Technical and usage data — typically retained for up to 13 months in analytics systems

8. Your rights under GDPR

As a data subject under the GDPR, you have the following rights:

Access

Request a copy of the personal data we hold about you

Rectification

Ask us to correct inaccurate or incomplete data

Erasure

Ask us to delete your personal data (“right to be forgotten”)

Restriction

Ask us to restrict how we process your data

Objection

Object to processing based on legitimate interests

Portability

Receive your data in a structured, machine-readable format

Withdraw consent

Withdraw consent at any time where processing is based on consent

Lodge a complaint

File a complaint with the Dutch DPA (Autoriteit Persoonsgegevens)

To exercise any of these rights, please contact us via the contact form. We will respond within 30 days.

You also have the right to lodge a complaint with the Dutch supervisory authority: Autoriteit Persoonsgegevens, Postbus 93374, 2509 AJ Den Haag.

9. Security

We implement appropriate technical and organisational measures to protect your personal data against unauthorised access, alteration, disclosure, or destruction. Our website uses HTTPS encryption (SSL/TLS). Access to personal data is restricted to those who need it to perform their functions.

While we take every reasonable precaution, no method of transmission over the internet or electronic storage is 100% secure. We cannot guarantee absolute security.

10. Cookies

Our website uses cookies to improve the user experience and to understand how the site is used. Cookies are small text files stored on your device by your browser.

Types of cookies we use

  • Strictly necessary cookies — essential for the website to function. These cannot be disabled.
  • Analytics cookies — help us understand visitor behaviour. No personal identifying information is stored without consent.
  • Third-party cookies — MailerLite may set cookies related to newsletter forms. Please see their cookie policy for details.

You can control and delete cookies through your browser settings. Disabling cookies may affect some functionality of the website.

11. Newsletter & email communications

If you subscribe to our newsletter, your email address will be processed by MailerLite on our behalf. You can unsubscribe at any time using the unsubscribe link included in every email, or by contacting us directly.

We do not send unsolicited commercial messages. All newsletter subscriptions are based on explicit opt-in consent.

12. Contact form

When you submit the contact form on this website, the information you provide (name, email, organisation, message) is sent to us via WPForms and delivered to our email inbox. Your email address is not published or shared with third parties. We use the information solely to respond to your enquiry.

13. Changes to this policy

We may update this privacy policy from time to time to reflect changes in our practices or in applicable law. Any changes will be published on this page with an updated revision date at the top. We encourage you to review this policy periodically.

If changes are significant, we will notify newsletter subscribers by email.

14. Contact us

If you have any questions about this privacy policy or about how we handle your personal data, please get in touch:

AURITA — Aniela Hoitink
Website: www.aurita.nl
Contact form: aurita.nl/#contact

Note: We do not display a public email address on this website. All enquiries are handled via the contact form to protect against spam and to ensure your message reaches us securely.

Scroll naar boven