Privacy
Privacy statement
This statement describes the personal data CodexCell collects through this website, why we collect it, and how long we keep it. It reflects what the site actually does today — not a template for features we do not run.
Last updated: 11 August 2026
Who is responsible
CodexCell (“CodexCell”, “we”) is the controller for personal data processed through this website. Contact: support@codexcell.com.
CodexCell is focused on the Netherlands and neighbouring markets. Engaged work may be covered by a separate contract; this statement covers the public website only.
What we collect on this website
Contact form. When you send an enquiry we store: name, email address, organisation (optional), area of interest (optional), message text, preferred language (locale), and that the submission came from the contact form. We also store the time of submission and internal status notes used only by CodexCell staff.
Language preference. If you switch language, we store your choice in the browser’s local storage (codexcell.locale). That value stays on your device; it is not sent to our servers as part of browsing.
Admin sign-in. Staff who access the private admin area authenticate with Supabase Auth. Session tokens are kept in the browser’s local storage so the session can persist. The public marketing site does not require an account.
Analytics. Event hooks exist in the codebase for future measurement (for example, that a contact form was submitted). No analytics provider is connected today, and those hooks are designed not to receive names, email addresses, message text or other personal content.
Why we process it
- To reply to enquiries you send through the contact form (legitimate interest / steps prior to a contract).
- To notify CodexCell staff that a new enquiry arrived (email notification via Microsoft Graph when configured).
- To remember your language preference on this device (your choice / local storage).
- To secure staff access to the admin tools (contract / legitimate interest for running the business).
Where data is stored
Enquiry records are stored in a Supabase (PostgreSQL) database with row-level security: anyone may submit a lead; only authenticated admin users can read, update or delete them. Email notifications, when enabled, are sent through Microsoft Graph to a CodexCell mailbox such as support@codexcell.com.
Processors act on our instructions. Hosting and delivery providers may process data in the EU or other regions depending on their infrastructure. We do not sell enquiry data.
How long we keep it
Contact enquiries are kept while they are useful for responding and for ordinary business follow-up, then archived or deleted. Staff can remove a lead from the admin tools when it is no longer needed. Locale preference remains until you clear site data in your browser. Auth sessions last until you sign out or the session expires.
Cookies and similar technologies
Details are in the cookie policy. In short: the public site does not use advertising cookies. Language preference uses local storage. A sidebar UI cookie may be set for signed-in admin layouts. Supabase Auth stores session data in local storage for staff accounts.
Your rights
Under the GDPR you may request access, rectification, erasure, restriction, or objection where applicable, and lodge a complaint with the Dutch Autoriteit Persoonsgegevens. To exercise rights related to a website enquiry, email support@codexcell.com from the address you used on the form so we can match the record.
Changes
If we change what this website collects, we will update this page and the cookie policy. Material changes will be reflected in the “Last updated” date above.