PRIVACY / DATA / THE SERIOUS BIT
Privacy Policy.
This policy explains what personal data Dearden Solutions may receive when you visit the website, submit an enquiry or discuss a project—and what happens to it afterwards.
1. Who this applies to
This Privacy Policy applies to visitors to dearden.no, people who submit an enquiry through the contact form, and people who contact Dearden Solutions directly about a possible project or service.
It covers personal data processed while discussing, preparing, delivering or supporting websites, hospitality and reputation work, custom dashboards, business systems and related services.
2. Data controller
The data controller for this website and general business enquiries is:
Dearden Solutions
Registered in Norway · Org No: 835 975 762
Email: sam@dearden.no
Website: dearden.no
A separate data-processing agreement may be required if Dearden Solutions later operates a system or processes personal data on behalf of a client.
3. Personal data collected
Dearden Solutions aims to collect only the information reasonably needed to answer an enquiry, discuss a project and provide agreed services.
Contact form data
The website form may collect:
- your name and email address;
- the type of business or project you select;
- the areas you say need attention;
- the message and project details you choose to provide;
- basic submission metadata, including the submission time.
Email and direct communication
If you contact Dearden Solutions directly, information may include your contact details, business name or role, project requirements, files, examples and the communication history needed to manage the enquiry.
Technical website data
Hosting and security providers may process basic technical information so the website can load and remain secure. This can include IP address, browser and device information, access time, requested pages and server logs.
Client and project data
If you become a client, Dearden Solutions may process business contact information, website content, brand assets, project notes, requirements, feedback, invoice information and support history needed to deliver the agreed work.
Sensitive information
Do not submit passwords, financial account details, identification documents, health information, special-category data or confidential information about third parties through the general contact form unless this has been specifically requested and an appropriate arrangement is in place.
4. How data is used
Personal data may be used to:
- receive and respond to enquiries;
- understand the problem or project you describe;
- prepare proposals, estimates and practical next steps;
- deliver agreed websites, dashboards, systems or support;
- manage project communication and support history;
- maintain the website’s security and technical reliability;
- keep accounting, tax and normal business records;
- protect against spam, fraud, misuse or security issues.
Dearden Solutions does not sell personal data.
5. Legal basis
Where the GDPR applies, the legal basis depends on why the information is being processed.
| Purpose | Typical data | Legal basis |
|---|---|---|
| Responding to an enquiry | Name, email, selections and message | Legitimate interests and/or steps before entering a contract |
| Preparing a proposal | Business details, requirements and communication history | Steps before entering a contract |
| Delivering agreed work | Project data, business content and support communication | Performance of a contract |
| Accounting and business records | Invoice, payment and business contact information | Legal obligation |
| Website security and operation | Technical logs, IP address and browser/device data | Legitimate interests |
6. Third-party services
Dearden Solutions uses a limited number of service providers to operate the website and normal business communication.
Netlify hosting and forms
The website is hosted on Netlify and uses Netlify Forms to receive contact submissions. Information entered into the form may be processed and stored by Netlify so the enquiry can be delivered and managed. The form also uses a hidden honeypot field intended to reduce automated spam.
Email provider
Messages and contact details are processed by the email service used to send, receive and store business email.
External research links
The homepage links to hospitality research published by Expedia Group and Tripadvisor. Those links open external websites. Their own privacy and cookie policies apply once you leave dearden.no.
Website fonts
The website uses standard system fonts and does not need to request font files from Google Fonts or another external font provider.
7. Cookies and tracking
At the time this policy was last updated, the website is designed to operate without non-essential analytics, advertising or cross-site tracking cookies.
Front-end JavaScript is used for navigation, reveal animations, image previews, form interaction and a simple form-completion timing check. These features are not designed to identify or track visitors across websites.
Essential technical processing may still occur through hosting, browser and security infrastructure so the website can load and function correctly.
8. How long data is kept
Personal data is kept only for as long as reasonably needed for the purpose it was collected, unless law requires a longer period.
- General enquiries: normally up to 24 months unless the enquiry becomes an active client relationship or there is a clear business reason to retain it longer.
- Client and project records: while the relationship is active and for a reasonable period afterwards for support, reference, dispute handling and business continuity.
- Accounting and invoice records: for the period required by applicable bookkeeping, tax and accounting rules.
- Technical logs: according to the operational and security practices of relevant hosting providers.
9. Sharing and transfers
Personal data is not sold. It may be shared only where reasonably necessary, including with:
- hosting, form, email and technical service providers;
- accountants, legal advisers or other professional advisers;
- public authorities when required by law;
- trusted providers involved in delivering agreed work, where relevant and appropriate.
Some providers may process information outside Norway or the European Economic Area. Where this occurs, Dearden Solutions aims to rely on recognised transfer mechanisms, contractual safeguards or provider commitments intended to support GDPR compliance.
10. Security
Reasonable steps are taken to protect personal data against loss, misuse, unauthorised access, alteration or disclosure. These may include HTTPS, reputable hosting, account security, access controls, limited collection and avoiding unnecessary storage of sensitive information.
No website, email account or online system can be guaranteed completely secure. Avoid sending passwords or highly confidential information through the general contact form.
11. Your rights
Depending on the circumstances and applicable law, you may have the right to:
- request access to personal data held about you;
- ask for inaccurate or incomplete data to be corrected;
- request deletion where there is no continuing reason to keep the data;
- request restriction of processing;
- object to processing based on legitimate interests;
- request data portability where applicable;
- withdraw consent where processing relies on consent;
- complain to a data-protection authority.
To make a request, email sam@dearden.no. Identity may need to be confirmed before certain requests can be completed.
12. Complaints
Contact Dearden Solutions first if you have a concern so it can be reviewed. You may also contact the Norwegian Data Protection Authority, Datatilsynet, or another appropriate supervisory authority if you believe personal data has not been handled correctly.
13. Policy updates
This policy may be updated when services, website features, providers or legal requirements change. The current version will be published on this page with a revised update date.
Still have a question?
Ask directly. Privacy questions do not need to go through the project enquiry form.