Legal
Privacy Policy
Last updated: 25 August 2026
Initial structure prepared for legal validation. Clauses marked “Legal review” must be checked by counsel before this page is relied upon.
This policy covers the public website radius365.org and www.radius365.org. The Radius365 PKI service (the portal and API at portal.radius365.org and api.radius365.org) has its own privacy notice, published at https://portal.radius365.org/privacy, which applies once you sign in or subscribe.
1. Who is responsibleLegal review
The controller for personal data processed through this website is the operator of Radius365 PKI. The service is operated from the European Union and hosted on Microsoft Azure in the West Europe region (Netherlands).
Privacy questions: support@radius365.org. Security reports: security@radius365.org.
2. What this website collects
The website is static and does not ask you to create an account. It processes personal data only in two situations:
- Contact / demo request form: the name, work e-mail address, organisation, role and message you enter. The submission is validated on our server and delivered as an e-mail to our support mailbox through Azure Communication Services (Microsoft). It is not stored in a database by the website.
- Server logs: our hosting platform (Azure App Service) records requests, including your IP address and browser user agent, to operate the site, detect abuse and enforce rate limits on the contact form. These logs are kept for no longer than 30 days.
3. What this website does not do
We keep the website deliberately minimal:
- No analytics or advertising scripts, no third-party trackers, no social media pixels.
- No tracking cookies. The website currently sets no cookies at all (see the Cookie Policy).
- No profiling and no automated decision-making.
- No sale or sharing of your data with third parties for their own purposes.
4. Legal basis and purposesLegal review
Contact form: our legitimate interest in answering the request you sent us and, where you asked for a demo or an offer, the steps taken at your request prior to entering into a contract (GDPR Art. 6(1)(b) and (f)).
Server logs and rate limiting: our legitimate interest in keeping the website secure and available (GDPR Art. 6(1)(f)).
5. Recipients and subprocessors
Personal data from this website is processed by the following providers on our behalf, under their standard data-processing terms:
- Microsoft Azure (hosting, App Service, EU West Europe) — website operation and server logs.
- Azure Communication Services (Microsoft) — delivery of the contact-form e-mail.
- Cloudflare — DNS for the radius365.org domain (DNS only; website traffic is not proxied through Cloudflare).
6. RetentionLegal review
Contact-form e-mails are kept in our support mailbox for as long as needed to handle your request and a reasonable follow-up period, and no longer than 3 years. Server logs are kept for no longer than 30 days.
7. International transfersLegal review
Data is hosted in the European Union. Where a provider listed above may access data from outside the EU/EEA for support purposes, this happens under the EU Standard Contractual Clauses or an adequacy decision, as documented in that provider's data-processing terms.
8. Your rights
Under the GDPR you may ask us for access to, rectification or erasure of your personal data, restriction of or objection to its processing, and data portability. You may also lodge a complaint with your supervisory authority. To exercise your rights, write to support@radius365.org; we may ask you to confirm your identity.
9. Changes to this policy
We update this page when the website or its providers change. The date at the top shows the current version.
Questions about this document: support@radius365.org