Support in English, German and Dutch — 06:00 to 22:00 CET, and any hour for clinical urgency info@viewde.com

Home › Privacy notice

Privacy notice

How Viewde handles personal data on this website, and how we handle care data as a processor for the providers who use our platform.

Which company, and in which role

For this website and for enquiries, the controller is Viewde EMEA Limited, Penrose Dock, Cork T23 YY09, Ireland.

For resident and staff records held inside the platform, your care organisation is the controller and Viewde EMEA Limited is the processor, acting on their documented instructions under an Art. 28 GDPR processing agreement. Where an implementation partner accesses that data to support you, they act as our sub-processor under the same terms.

If you are a resident, a relative or a member of care staff asking about records in the system, contact your care provider first. They control that data and we will help them respond.

The US parent company

Viewde, Inc. is incorporated in Delaware and owns the intellectual property. It is not the controller or processor for European customer data, holds no standing access to it, and is not a recipient of it in the ordinary course of the service.

Where a US-based engineer is required to resolve a specific incident, access is granted for that incident only, is time-limited, logged, subject to standard contractual clauses between the two entities, and reported to the affected customer in the incident write-up. This occurred four times in the twelve months to August 2026.

What we collect from this website

  • Demo request form: name, role, organisation, email address, telephone number, country, preferred language, number of houses, product interest and anything written in the message field.
  • Job applications, including your CV and covering note.
  • Basic analytics: pages visited, approximate region, referring site, device type. Only if you accept statistics cookies.

Legal basis

For enquiries, Art. 6(1)(b) and (f) GDPR: steps prior to a contract, and our legitimate interest in responding to a business enquiry, together with your consent where you ticked the box. For recruitment, Art. 6(1)(b). For analytics and marketing cookies, your consent under Art. 6(1)(a) and the ePrivacy Directive, withdrawable at any time.

Sharing an enquiry with a partner

If your enquiry comes from a country covered by an implementation partner, we pass your contact details and the content of your enquiry to that partner so they can respond. The consent checkbox on the form covers this, and the partner list is on our partner page. If you would rather we did not, say so in the message field and we will handle it from Cork.

Retention

  • Enquiries that do not become customers: 24 months.
  • Customer contact records: for the contract term and seven years afterwards, for contractual and tax purposes.
  • Unsuccessful applications: six months, unless you ask us to keep them longer.
  • Analytics: 14 months, aggregated.
  • Care records held as processor: ten years by default for German customers, configurable per country by the controller. Permanently deleted 90 days after contract end unless instructed otherwise.

Sub-processors and location

Six sub-processors, five EU-established. The single US sub-processor handles our own marketing email and never processes care data. The register, with purpose, location and safeguards, is published and customers receive 30 days' notice of any change.

Care data is hosted in Frankfurt with failover in Dublin, including backups. It does not leave the EEA in the ordinary course of the service.

Your rights

You may request access to your personal data, rectification, erasure, restriction, objection and portability. Where we rely on consent you may withdraw it at any time.

Write to the DPO at the address below. We respond within one month and there is no charge. You may complain to the Irish Data Protection Commission at dataprotection.ie, or to the supervisory authority in your own member state — German customers commonly approach the Landesbeauftragte for their Land.

Security

Encryption in transit and at rest, multi-factor authentication for all staff access, annual external penetration testing, ISO 27001:2022 certification and a TISAX assessment at AL2. Detail is on our security page.

Changes

Material changes are notified to customers by email 30 days in advance. The date at the top of this page reflects the current version.

Contact

Write to Rachel Adeoye, Data Protection Officer, Viewde EMEA Limited, Penrose Dock
Cork T23 YY09
Ireland, or email info@viewde.com marked for her attention. We respond in writing within five working days, in German or English.