Privacy Policy
Last updated: 2026-04-09
1. Introduction
FindMyFactory AB (reg. no. 559355-9585), Hästholmsvägen 32, SE-131 30 Nacka, Sweden ("Find My Factory", "we", "us") respects your privacy and is committed to protecting your personal data.
This Privacy Policy explains how we collect, use, store, and protect personal data when you interact with Find My Factory, including through our website, platform, and communications.
2. Personal Data We Collect
We collect and process a limited amount of personal data.
2.1 Data Collected
The personal data we may collect includes:
- Email address
- Company name
- Phone number
- Information about how you found or heard about us (e.g. referral, search engine, social media)
- Account authentication data (such as passwords), which are processed and stored securely by our authentication provider (Auth0) and are never stored or accessible in plain text by Find My Factory
We do not intentionally collect:
- Payment information
- Sensitive personal data
2.2 Platform Usage & Behavioral Data
- Usage analytics (pages visited, features used, session data) collected via Mixpanel (hosted in the EU)
- Customer engagement and account activity data processed via Planhat.
- Content you submit to the platform (e.g., search queries, supplier lists, vetting criteria)
3. How We Collect Personal Data
We collect email addresses when you:
- Sign up for our platform or services
- Request access to our tools or Trust Center
- Contact us via email or forms
- Subscribe to updates or communications
4. Purpose of Processing
We process personal data solely for the following purposes:
- To provide access to our services and platform
- To communicate with users regarding our services
- To respond to inquiries and support requests
- To understand how users find us and improve our marketing and outreach
- To send service-related or security-related information
- To improve and develop our platform, including by training machine learning models on aggregated, de-identified user content
- To monitor product usage and customer health metrics
We do not sell or rent personal data.
5. Legal Basis for Processing (GDPR)
We process personal data based on one or more of the following legal grounds:
- Consent – when you voluntarily provide your email address
- Contract – when processing is necessary to provide access to our services
- Legitimate interest – to communicate with users and operate our business securely, analyse usage/behaviours, and train AI/ML models on de-identified content produced on our platform for improving our product.
6. Data Retention
We retain email addresses only for as long as necessary to:
- Fulfil the purposes described in this policy, or
- Comply with legal or regulatory obligations
We retain
- Account data: retained for the duration of the business relationship + any legal retention period
- Platform usage data in third-party services: may be retained for up to 30 days in accordance with subprocessor agreements
- De-identified training data: retained indefinitely as it no longer constitutes personal data under GDPR
You may request deletion of your email address at any time.
7. Data Sharing
We do not share personal data with third parties except:
- When required by law or regulatory authorities
- With trusted subprocessors, including analytics providers, customer engagement platforms, and AI infrastructure providers, under data processing agreements compliant with GDPR
8. International Data Transfers
We do not intentionally transfer personal data outside the EU/EEA. If such transfers occur, appropriate safeguards will be applied in accordance with GDPR.
9. Data Security
Find My Factory is ISO 27001:2022 certified
We implement appropriate technical and organisational measures to protect personal data against unauthorised access, loss, or misuse.
User authentication is handled by Auth0, a trusted third-party identity and access management provider. Passwords are:
- Encrypted and hashed using industry-standard security practices
- Never stored or accessible in plain text by Find My Factory
- Managed in accordance with applicable security and compliance standards
10. Your Rights
Under GDPR, you have the right to:
- Access your personal data
- Request correction or deletion
- Object to or restrict processing
- Withdraw consent at any time
- Lodge a complaint with a supervisory authority
11. Contact Information
If you have questions about this Privacy Policy or how we process personal data, please contact us:
Email: info@findmyfactory.eu
Company: FindMyFactory AB
12. Changes to This Policy
We may update this Privacy Policy from time to time. The latest version will always be available on our website.