Privacy Policy

Privacy Policy

Effective Date: December 2025
Last Updated: December 2025

XONIK (“XONIK,” “we,” “our,” or “us”) is committed to protecting your personal information and handling it responsibly, lawfully, and transparently.

This Privacy Policy explains how we collect, use, disclose, store, transfer, and protect personal information in connection with our website, communications, engagements, and business operations.

We design this Policy to comply with applicable data protection laws, including the EU General Data Protection Regulation (GDPR) and similar laws in other jurisdictions, to the extent they apply to our activities.

Quick Summary

  • We mainly collect business contact and inquiry details you provide.
  • We use this information to respond to you, manage relationships, and operate our business securely.
  • We do not sell your personal information.
  • You have rights to access, correct, or delete your data (subject to legal limits).
  • We use limited cookies for essential functions and basic analytics.

Scope

This Policy applies to personal information we process related to:

  • Visits to our website
  • Inquiries, forms, or communications you submit
  • Interactions with clients, partners, vendors, or prospects
  • Advisory, commercial, partnership, or engagement activities
  • Marketing and administrative communications

It does not apply where a separate written agreement (e.g., Master Services Agreement, Data Processing Addendum, or NDA) governs the data. In case of conflict, the separate agreement prevails.

Definitions

    • Personal Information (or personal data): Any information relating to an identified or identifiable individual.
    • Processing: Any operation on personal information, such as collection, use, storage, disclosure, or deletion.
    • You: Any individual whose personal information we process.

These terms align with applicable data protection laws.

Information We Collect

1. Information You Provide Voluntarily
We collect details you share, such as:

      • Full name
      • Professional title and role
      • Company or organization name
      • Business email address
      • Telephone number
      • Details from inquiries, forms, correspondence, or meetings

Providing this information is optional, but it may be needed for us to respond or engage with you

2. Information Collected Automatically
When you visit our website, we may automatically collect technical information, including:

      • IP address
      • Browser type, operating system, and device details
      • Referring URLs, pages viewed, and interaction timestamps

We use this strictly for security, fraud prevention, website performance, and basic analytics.

3. Information from Third Parties
We may receive your information from business partners, professional advisors, public sources, or event/referral introductions. We process it consistently with this Policy and applicable law.

How We Use Your Information (Purposes and Legal Bases)

We process personal information only for legitimate purposes, including:

      • Responding to your inquiries and communications
      • Evaluating and managing engagement, partnership, or collaboration requests
      • Performing contracts and maintaining client/partner/vendor relationships
      • Ensuring operational continuity, business records, and website security
      • Preventing fraud or unauthorized access
      • Complying with legal or regulatory obligations

We rely on these legal bases where required (e.g., under GDPR):

      • Contractual necessity (to fulfill agreements or respond to requests)
      • Legitimate interests (e.g., business operations, communications, and security — balanced against your rights)
      • Legal or regulatory compliance
      • Consent (where we specifically obtain it, and you can withdraw it anytime)

We do not engage in automated decision-making or profiling that produces legal or similarly significant effects on individuals.

Disclosure and Sharing

We do not sell, trade, rent, or share your personal information for monetary consideration.
We may disclose it only when necessary:

      • To trusted service providers (e.g., hosting, email tools) under strict confidentiality and data processing agreements
      • To professional advisors (legal, accounting, compliance)
      • To comply with court orders, lawful government requests, or regulatory requirements
      • In connection with a corporate transaction (e.g., merger or acquisition), with appropriate safeguards

International Data Transfers

XONIK operates globally, so personal information may be transferred to and processed in countries outside your location, including those without equivalent data protection laws.

Where required, we implement appropriate safeguards such as Standard Contractual Clauses (SCCs), adequacy decisions, or other mechanisms recognized under applicable law (e.g., GDPR Chapter V).

Data Retention

We retain personal information only as long as necessary for the purposes outlined above, to meet legal, regulatory, accounting, or reporting obligations, or to resolve disputes.

Retention periods vary by data type — for example:

      • Inquiry-related data: typically 12 months after resolution
      • Contract-related data: for the duration of the relationship plus any required legal hold periods

We securely delete or anonymize data when it is no longer needed.

Security

We implement reasonable technical and organizational safeguards, including access controls, secure infrastructure, confidentiality obligations for staff, and incident response processes. No system is completely secure, however, and we cannot guarantee absolute protection against all risks.

Your Rights

Depending on applicable law (e.g., GDPR), you may have rights to:

      • Access your personal information
      • Correct inaccurate or incomplete data
      • Request deletion or restriction of processing
      • Object to processing based on legitimate interests
      • Request data portability (in structured, machine-readable format)
      • Withdraw consent (where processing is based on consent)

To exercise these rights, contact us at legal@xonik.com. We will verify your identity and respond within the time required by law (usually one month). Some rights may be limited by legal obligations or exceptions.

Cookies and Similar Technologies

We use essential cookies for website functionality and security. We may also use limited analytics cookies to understand traffic and improve performance. We do not use cookies for targeted advertising or behavioral profiling.

You can manage or block cookies through your browser settings. Note that blocking essential cookies may affect site functionality. For more details, see our Cookie Policy.

Children’s Privacy

Our website and services are not directed at children. We do not knowingly collect or process personal information from individuals under 16 years old. If we become aware of such data, we will delete it promptly.

Third-Party Links

Our site may link to external websites. We are not responsible for their privacy practices or content. We encourage you to review their policies.

Updates to This Policy

We may update this Privacy Policy from time to time to reflect changes in our practices or legal requirements. The “Last Updated” date will be revised. Continued use of our website or services after updates constitutes acceptance of the revised Policy. We encourage you to review it periodically.

Contact Us

For any privacy questions, concerns, or to exercise your rights:

Privacy & Data Protection
Email: legal@xonik.com

If you are in a jurisdiction with a data protection authority, you also have the right to lodge a complaint with the relevant supervisory authority.

Governing Law and Interpretation

This Policy is interpreted consistently with applicable data protection laws. It does not create additional rights beyond those provided by law or separate written agreements.

XONIK does not intentionally target services to specific jurisdictions beyond legitimate business needs.

© XONIK. All rights reserved.