Privacy policy

Privacy policy

Last updated: 2026-01-26
Controller: Moi! Webservices
Contact: sjoerd@moiwebservices.nl
Chamber of Commerce: 69401349


1. Definitions

In this privacy policy, “the Application” means: the website and related online functionality of Moi! Webservices through which you may use an account. Where we write “we” or “us”, we mean Moi! Webservices.

2. What is this policy about?

In this privacy policy, we explain which personal data we process when you use the Application or contact us, why we do so, with whom we share data and what rights you have.

3. Roles: controller and processor

In many cases we are the controller (for example for account management, support and security of the Application). In some cases we process data on behalf of our customers (for example when a customer uses the Application to manage their own content or data). In that situation, the customer may be the controller and we act as a processor. Where applicable, the parties agree a data processing agreement.

4. Which personal data do we process?

  • Account data: name, email address, (hashed) password data and account settings.
  • Usage and technical data: IP address, user-agent, device and log data (e.g. login events, security logs and error logs).
  • Communication data: the content of messages you send us (e.g. via contact forms or email) and our correspondence.
  • Data you enter yourself: information you store or process in the Application (may contain personal data depending on your input).
  • Cookies and similar technologies: see section 7.

5. Purposes and legal bases

We process personal data only when there is a legal basis. This includes, for example:

  • Performance of a contract (Art. 6(1)(b) GDPR): creating and managing your account, providing access to the Application and core functionality.
  • Legitimate interests (Art. 6(1)(f) GDPR): security, fraud prevention, incident detection, improving the Application and limited analysis necessary for operation/security.
  • Legal obligation (Art. 6(1)(c) GDPR): where we must retain or disclose data under applicable law.
  • Consent (Art. 6(1)(a) GDPR): only where explicitly applicable (e.g. optional newsletter or optional cookies). You can withdraw consent at any time.

6. With whom do we share data?

We share personal data only when necessary to provide and secure the Application or when we are legally required to do so. This may include IT service providers (hosting, email), security/monitoring services or support tools. These parties often act as processors and process data on our behalf under data processing agreements.

We do not sell your personal data. We share data with third parties (e.g. government authorities) only when we are legally required to do so, or where necessary to perform the contract.

7. Cookies and similar technologies

The Application may use cookies and similar technologies for functionality, remembering preferences, security and (optionally) statistics. Where required, we request consent before placing non-essential cookies. You can adjust your cookie preferences via settings or your browser.

8. Transfers outside the EEA

In principle, we process data within the European Economic Area (EEA). If data is processed outside the EEA (e.g. by a supplier), we ensure appropriate safeguards, such as Standard Contractual Clauses (SCCs) and additional measures where necessary.

9. Retention periods

  • Support/administration: 12 maanden (unless a longer period is required by law).
  • Security and incident logs: 6 maanden (unless a longer period is needed for investigations or legal claims).
  • Account data: as long as your account is active. After termination, we delete or anonymise data where possible, unless we must retain it under law.

10. Security

We take appropriate technical and organisational measures to protect personal data, such as access control, logging and monitoring, and security updates. No storage or transmission method is 100% secure; we continuously improve our measures.

11. Your rights

Depending on the situation, you have the following rights:

  • access to your data;
  • rectification of inaccurate data;
  • erasure of data (where possible);
  • restriction of processing;
  • objection to processing based on legitimate interests;
  • data portability for data you provided to us;
  • withdrawal of consent (if processing is based on consent).

You can submit a request via sjoerd@moiwebservices.nl. We may ask for additional information to verify your identity.

12. Complaints

If you believe we do not handle personal data carefully, you can contact us. You also have the right to lodge a complaint with the Dutch Data Protection Authority (Autoriteit Persoonsgegevens).

13. Minors

The Application is not intended for children under 16 without consent from a parent/guardian. If you believe we accidentally process data of a minor, please contact us via sjoerd@moiwebservices.nl.

14. Changes

We may update this privacy policy from time to time. The most recent version applies from the publication date shown above.


Additional privacy information for specific functionality

Below you will find extra information about data processing that applies only when you use certain parts of the Application.

Domain management and technical action logs

When you use domain management functionality via registry/API integrations, we may process technical log data to audit actions, troubleshoot issues and prevent abuse. This may include, among other things: timestamps, executed actions, status/error messages and (where relevant) identifiers necessary for security and investigations.

  • Do not store secret keys, tokens or passwords in free-text fields.
  • Limit access to accounts and logs to authorised users and use strong authentication.
  • We aim to keep logs as limited as possible, while still sufficient for security, troubleshooting and compliance.