Privacy policy
Privacy and cookie notice
Last updated: 27 September 2026
Who is responsible?
Nordsign A/S, CVR 31577373, Ulvevej 1, 7800 Skive, Denmark, is the data controller for this website and the enquiries we receive. Contact sale@nordsign.dk or +45 98 57 55 55 about your information or this notice.
This website presents products and services to business customers and lets you request advice or a quotation. This notice covers browsing, enquiries and artwork uploads. A separate customer portal or external service has its own privacy information.
Information we use and why
- Enquiries and customer relationships: your email, message and any name, company, telephone number, reply preference, product references, configuration details, file links or artwork you provide. We use these to answer questions, prepare quotations, assess artwork, coordinate our production and support ongoing or agreed repeat projects. For employees representing a business, our basis is our legitimate interest in answering enquiries and managing business relationships (GDPR Article 6(1)(f)). Where you personally are a party to a contract, necessary pre-contractual steps and contract performance are covered by Article 6(1)(b).
- Website operation and security: IP address, browser/device details, request times, error and security logs, and anti-bot signals. Our basis is our legitimate interest in operating a reliable website, preventing abuse and protecting files and communications (Article 6(1)(f)).
- Optional analytics, marketing and personalisation: website activity and cookie identifiers, subject to your choices and consent where required (Article 6(1)(a)). See the cookie section and Shopify information below. Sending an enquiry is not consent to marketing messages.
- Legal obligations and claims: relevant records where required by accounting or other law (Article 6(1)(c)), and information needed to establish, exercise or defend specific claims (our legitimate interest under Article 6(1)(f)).
We receive information from you, automatically from your browser, and from colleagues or service providers involved in your enquiry. Email and message are required in the enquiry form; other fields and uploads are optional. Without sufficient contact and enquiry information, we may be unable to answer. Please include only relevant information and avoid unnecessary sensitive personal data in messages or artwork.
Who can receive information?
Information may be accessed by the staff who handle your request, group companies providing print production and customer service within the EU/EEA, and service providers for website hosting, email, file storage, upload handling, security and technical support. Information relevant to an agreed project may also be shared with production or delivery service providers where necessary to carry it out. Professional advisers and public authorities may receive information where required for a legal obligation or specific claim. Access should be limited to the relevant task.
The website uses Shopify for hosting and enquiry forms. Uploaded files are stored in private Microsoft Azure storage; Make coordinates the upload process, and file names and download links accompany your enquiry. Cloudflare Turnstile checks uploads for automated abuse using browser and connection signals, including IP address. Cloudflare acts on our behalf for this security check and also as a controller when improving its bot detection. See Cloudflare's Turnstile privacy notice.
Shopify Network Intelligence is enabled. Shopify may combine information about your interactions with this website with interactions with other merchants and Shopify to provide and improve services, including analytics, personalisation and advertising. For these purposes Shopify acts as a controller. See Shopify's Consumer Privacy Policy and Shopify's privacy portal for information and rights requests. Optional tracking is subject to applicable consent choices.
Processing outside the EU/EEA
Our international IT providers and their subprocessors may process information outside the EU/EEA, including in Canada and the United States, even where a service has European hosting. Transfer safeguards depend on the service and destination: an applicable European Commission adequacy decision, approved binding corporate rules, or EU Standard Contractual Clauses with additional safeguards where needed.
Contact us for details or a copy of the safeguards relevant to your information.
How long we keep information
We keep personal data while it is needed for an active enquiry, relevant quotation follow-up, a customer relationship, ongoing or agreed repeat projects, a legal obligation or a specific dispute. Artwork and project files can be retained for agreed production and repeat work. We review the continuing need and delete or irreversibly anonymise personal data when the purpose ends and there is no other lawful reason to keep it. Useful business material without personal data is not subject to the same personal-data retention criteria.
Accounting material is normally retained for five years from the end of the relevant financial year. That period does not automatically apply to every enquiry or uploaded file. Relevant information may be kept longer for a particular legal requirement or claim, with use limited to that purpose. A download link expiring does not mean the stored file or enquiry email has been deleted. You can contact us to request deletion; applicable rights and legal retention requirements determine what can be removed.
Cookies and your choices
Cookies and similar browser storage support website operation, remember choices and, with the relevant permission, support analytics and marketing. Necessary storage operates without optional consent. Optional analytics, marketing and personalisation can be accepted or rejected in the cookie banner or preferences. You can change or withdraw your choices at any time through Cookie preferences in the footer. Rejection still allows you to browse and send an enquiry. Browser settings can also remove or block storage, although blocking necessary storage may affect functionality.
-
Necessary — Shopify:
_shopify_essential(site operation/security),localization(region), and_tracking_consentwhere used (consent choice): up to one year. Embedded Shop components may use_shop_app_essential: up to one year. -
Analytics — Shopify:
_shopify_analyticsand_shopify_y: up to one year;_shopify_s: 30 minutes. These support usage measurement. -
Marketing — Shopify:
_shopify_marketing: up to one year, for marketing-related information.
The cookies used depend on the features and choices in your session. Durations can be renewed by subsequent use. See Shopify's cookie inventory. Necessary operational and security requests can still occur after rejection; rejection does not disconnect the website from its hosting and security providers. Cloudflare Turnstile provides the upload security check described above.
Your rights
Under the applicable conditions, you can request access, correction, deletion, restriction or portability of your personal data. You can object to processing based on legitimate interests, and object to direct marketing at any time. You can withdraw consent without affecting the lawfulness of earlier processing. Contact sale@nordsign.dk; we may need proportionate information to verify your identity.
You can complain to the Danish Data Protection Agency, Datatilsynet, or your competent supervisory authority. We do not make decisions about your enquiry based solely on automated processing that have legal or similarly significant effects. We update this notice when relevant practices change and show the revision date above.
Newsletter subscriptions
This notice also covers newsletter subscriptions. We use your email address, subscription preferences and consent status to send product news, print advice and campaign ideas when you opt in (GDPR Article 6(1)(a)). You can withdraw consent at any time using the unsubscribe link in each newsletter. With the relevant permission, interactions with our emails and website may help us understand newsletter performance and relevance.
We use Shopify and Mailchimp to manage newsletter signups and subscription status, and Mailchimp to send newsletters. These providers process the contact and subscription information needed for this service. See Mailchimp’s data processing terms. The international processing safeguards described above also apply.
We use newsletter subscription information while you remain subscribed. After you unsubscribe, we stop newsletter marketing and keep only the records needed to respect your choice, document consent or meet a specific legal requirement or claim. We review the need for those records under the retention principles above.