Privacy

Privacy policy

This policy explains in plain language how NEXTCORE IT SRL processes data submitted through nextcore.be, its contact form and the resulting communications.

01

Controller and contact

NEXTCORE IT SRL, company number 1034.924.078, Avenue de Philippeville 213, box 17, 6001 Charleroi, Belgium, is the data controller. For any question or request concerning your data: info@nextcore.be or the postal address above.

02

Data processed

The form processes your customer profile, name, company where applicable, email address, phone number depending on the chosen reply method, municipality, request category, message, contact preference, and the date and time of your request. A pseudonymised technical identifier is used temporarily to limit abuse. Server and reverse-proxy security logs may contain the IP address, date, requested page and browser information. Fields marked with an asterisk are required to reply through the form; the phone number is required only for a reply by phone or WhatsApp. Never send a password or sensitive data in your message.

03

Purposes and legal bases

Form data is used to understand your request, reply, prepare a quotation or service and provide the follow-up you requested. This processing is based on pre-contractual steps taken at your request (Article 6(1)(b) GDPR). Abuse prevention, security and technical logs are based on the legitimate interest in protecting the website (Article 6(1)(f)). If a customer relationship begins, some data may also be retained to meet NEXTCORE IT’s legal obligations (Article 6(1)(c)). Data is not used for marketing without separate agreement.

04

Recipients and transfers

Access is limited to authorised NEXTCORE IT personnel and, where necessary, Infomaniak for hosting and Microsoft 365 / Exchange Online for notifications and email delivery. Advisers or public authorities may receive data where required by law. Infomaniak hosting is located in Switzerland, which the European Commission recognises as providing adequate protection. If Microsoft processes certain data outside the European Economic Area, its contractual commitments provide appropriate safeguards, including Standard Contractual Clauses. Information about these safeguards can be requested at info@nextcore.be.

05

Retention periods

An enquiry that does not lead to further action and its related emails are deleted no later than 12 months after receipt. The website automatically deletes its copy of the enquiry after that period. Pseudonymised abuse-prevention events are deleted after 48 hours. Technical logs and backups follow a limited rotation and are retained longer only for a security incident or restoration need. If the enquiry results in a customer relationship, necessary correspondence and documents may be retained for the duration of that relationship and then for applicable legal, accounting, contractual or legal-defence periods.

06

Your rights

Depending on the circumstances, you may request access to your data, rectification, erasure, restriction of processing, object to processing based on legitimate interests or request data portability where that right applies. Write to info@nextcore.be and describe your request. NEXTCORE IT normally replies within one month and may request proof of identity where there is reasonable doubt.

08

Cookies, security and automated decisions

The website uses no advertising cookies, audience measurement tools or cross-site tracking. A strictly necessary CSRF cookie protects the form and administration; a session cookie is used only when signing in to the administration. These cookies are not used to track visitors and do not require a consent banner. Access controls, encrypted communications, request limiting and backups protect the data. No automated decision-making or profiling is carried out using enquiries.