Informativa sulla privacy
Privacy Policy
Last updated on: 14 July 2025
We place great importance on the transparent and secure handling of personal data. This Privacy Policy explains what personal data we collect, why we collect it, how we use it, and what choices you have. It applies to:
-
our public websites (e.g., alperp.ch), and
-
il AlpERP mobile application reachable at app.alperp.ch and distributed through app stores.
We review this Policy regularly and will publish any changes here.
1 Services and Infrastructure We Use
Category | Provider | Purpose |
---|---|---|
Cloud hosting & storage | Amazon Web Services (AWS) | Operating and scaling our web and mobile backend |
Application backend | AlpERP (self‑hosted) | ERP functions: customer management, orders, invoicing |
Analytics | Google Analytics, Firebase Analytics | Usage statistics to improve stability & usability |
Customer communication | WhatsApp Business, Google My Business | Responding to enquiries and support |
Website framework | WordPress | Content management of alperp.ch |
No ERP customer data is shared with these providers unless required for the specific technical function (e.g., storage on AWS).
2 Contact Information
Role | Dettagli |
---|---|
Controller (responsible for processing) | AlpERP, Av. Bergières 10, 1004 Lausanne, Switzerland |
Data Protection Officer | [email protected] |
Primary contact e‑mail | [email protected] |
3 General Principles
3.1 Data We Receive
Source | Typical data | When collected |
---|---|---|
Existing AlpERP account | Name, e‑mail, role, subscription status | When you log in to the mobile app. The app does not allow self‑registration. |
You create or edit in AlpERP | Customer master data, order / quotation details, notes, attachments | When you add or update records. |
Device & usage data | IP address, device ID, crash logs, cookies | When you visit our website or use the mobile app. |
Support communications | Chat transcripts, e‑mails, phone call notes | When you contact us. |
We do not intentionally collect special categories of personal data (e.g., health information) through the mobile app.
3.2 Legal Grounds
We process data only when at least one of the following applies:
-
Contract – to provide and maintain AlpERP services you (or your employer) subscribed to.
-
Legitimate interest – e.g., ensuring security or improving usability, provided your interests do not override ours.
-
Consent – for optional analytics cookies or marketing messages you actively agree to.
3.3 Withdrawing Consent
You may withdraw your consent at any time by e‑mailing us (see Section 2). Withdrawal does not affect past processing based on consent.
3.4 Sharing Your Data
-
No third‑party marketing – We never sell or rent ERP customer or order data.
-
Processors – We use carefully vetted service providers (see §1) bound by written data‑processing agreements.
-
Legal obligations – Data may be disclosed to authorities if required by law.
-
International transfers – When data is processed outside Switzerland/EEA (e.g., AWS in the US), we rely on Standard Contractual Clauses and additional safeguards.
3.5 Retention
Data category | Typical retention |
---|---|
ERP transactional data | As long as your AlpERP subscription remains active, then up to 10 years to meet accounting & tax laws. |
Crash/usage logs | 12 months |
Support tickets | 3 years after closure |
Analytics reports | Aggregated / anonymised after 26 months |
3.6 Security Measures
-
TLS/SSL encryption in transit
-
Role‑based access controls in the AlpERP backend
-
Regular vulnerability scans & backups
-
Employees and processors bound by confidentiality
4 Your Rights
Right | How to exercise |
---|---|
Access | Request a copy of your personal data via [email protected]. |
Correction | Correct ERP data directly in the app (if your role permits) or contact us. |
Deletion | Terminate your subscription or delete individual records in app.alperp.ch. We will remove or anonymise associated data unless legal obligations require retention. |
Portability | Receive key account data in CSV/JSON format on request. |
Complaint | Swiss Federal Data Protection and Information Commissioner (FDPIC) – edoeb.admin.ch |
We respond within 30 days; complex requests may require an extension, which we will notify you about.
5 Individual Processing Activities
5.1 AlpERP Mobile App (app.alperp.ch)
-
Login – Only pre‑existing AlpERP users can sign in with their ERP credentials; the app itself does not offer account sign‑up.
-
In‑app actions – Users may view, add, edit or delete customers, orders, products and other ERP records according to their permission set in AlpERP.
-
Offline cache – Minimal data is cached locally on the device to speed up use; it is encrypted and cleared on logout.
5.2 Google Analytics & Firebase
Cookies or SDK identifiers track aggregated usage metrics (session length, screens visited). IPs are truncated (anonymised) inside the EU before storage. You can opt‑out via your device settings or browser add‑on.
5.3 WhatsApp Business & Google My Business
If you initiate contact through these channels, your profile and message content will be processed by the respective provider under their own privacy terms.
6 Changes to This Policy
We may update this Policy periodically. The latest version is always available at https://alperp.ch/privacy‑policy. Material changes will be highlighted for 30 days.
Questions? – Please e‑mail [email protected]. We are happy to help.