IMPRINT & PRIVACY POLICY

Imprint

Here is the complete English translation of your text:

1. Who We Are

Contaxa AG is a company that provides customized fiduciary, tax, and financial advisory services to national and international clients. The range of services offered by Contaxa AG includes, among others:

  • Financial accounting and bookkeeping

  • Tax advisory (national & international) for individuals and legal entities

  • Business consulting

  • Human resources & payroll administration

  • Succession solutions

2. Basics of Data Processing

This privacy policy describes how we process personal data, particularly which personal data we collect and for what purpose. It also regulates data sharing, retention periods, and your rights.

Personal data (hereinafter also referred to as data) means all information relating to an identified or identifiable natural person. The term “data processing” is to be understood contextually and includes any handling of personal data, regardless of the means and procedures used, in particular the collection, storage, use, modification, disclosure, archiving, or destruction of data.

We collect and process personal data to fulfill our business tasks within the framework governed by law and contract. The collection, processing, and use of personal data are subject to applicable Swiss law and, where applicable, European legal provisions.

We collect personal data in a transparent manner and in compliance with the principles of proportionality and purpose limitation. Data is only processed to the extent and for as long as necessary for our duties and obligations.

[i] Swiss Federal Act on Data Protection of 25 September 2020
[ii] EU General Data Protection Regulation (GDPR)

3. Purpose of Collecting and Processing Personal Data

We process personal data necessary to ensure that we can provide our services continuously, securely, and reliably. This includes in particular:

  • Handling and administration of contractual relationships with customers, employees, suppliers, etc.

  • Maintaining contact and communication in connection with service provision

  • Operation of the website and authentication of registered users for certain areas of our website

  • Ensuring security, fulfilling legal obligations, and enforcing claims

  • Sending invitations and organizing events

  • Sending newsletters

  • Statistical collection and analysis

4. What Personal Data Do We Process?

4.1 General Contact and Basic Data

Depending on the purpose of data processing, customer segment, and service areas, we collect different types of personal data, including in some cases particularly sensitive personal data.

From all contact, dialogue, and contractual partners as well as customers we process at least the following personal data:

  • First name, last name, email address, and if applicable gender, address, telephone number, title, date of birth, nationality, profession, employer information, social security number (AHV number)

  • Email and written correspondence (post)

Depending on the purpose of data processing, customer segment, and service area, we may also collect additional data as described in the following sections.

4.2 Data for Mandate Processing

For providing and managing our mandates and communicating with our clients, we process the following personal data:

  • General contact and basic data according to section 4.1

For companies:

  • Legal form, company capital and paid-in capital, year of establishment, external auditor, domestic and foreign turnover, annual turnover by activity area, registration number

  • Branch offices: location, company name, address, telephone, website, email, correspondence language

  • Staff information: departments, number of employees or responsible persons, employment percentage

Additional data may include:

  • Financial information

  • Risk assessment data including debt enforcement register extracts

Information about company management and ownership:

  • Information about individuals/shareholders involved in the company and members of management:
    name, surname, year of birth, nationality, function, voting share, information about activities in the company

  • Information about participating companies and foundations:
    company name, registered office, area of activity, shareholding percentage

  • Contact person information:
    name, surname, date of birth, email, telephone

  • Information on employment of responsible persons in third-party companies:
    name, company, industry, function, employment percentage

  • Information on shareholding structures

Additional data processed:

  • Payment information

  • Mandate data such as:

    • statutes, protocols, contracts

    • employee data (salary, social insurance)

    • accounting and tax information

    • particularly sensitive personal data (e.g., health data, religion, social welfare benefits, debt enforcement or bankruptcy data)

These data are processed primarily in connection with financial accounting, tax consulting, payroll processing, and business consulting services.

4.3 Data for Mailings and Newsletters

To send information about events, publications, and similar communications (for marketing and informational purposes) as well as newsletters, we process:

  • General contact and basic data according to section 4.1

These data are necessary for providing services, communication, and maintaining our customer base.

Information related to marketing, mailings, and newsletters may also be statistically analyzed to improve our services.

You may object to the use of your personal data for marketing purposes at any time or unsubscribe from newsletters by contacting us via phone or email at info@contaxa.ch.

4.4 Data for Organizing and Conducting Events

For organizing and conducting events we process:

  • General contact and basic data according to section 4.1

  • Employer information (company, address, email), participants and speakers

  • Payment information

  • Possibly photos or videos

These data are processed for event management as well as networking and marketing purposes.

Photos and videos may be used for internal documentation, newsletters, website publications, social media channels, and reports.

Participants may inform the photographer before or during the recording if they do not wish to appear in photos or videos.

4.5 Data Related to Direct Communication

For communication via telephone, email, chat, online meetings, video conferences, or webinars (e.g., Microsoft Teams, Zoom, Skype), the following personal data may be processed:

  • General contact and basic data according to section 4.1

  • Personal data contained in email communications

  • Communication data such as IP address, time, and duration of communication

  • Recordings of calls or video conferences where necessary

These data are processed to provide and improve our services.

4.6 Employee Data

For employee administration we process:

  • General contact and basic data according to section 4.1

  • Social security data/AHV number

  • Information about children

  • Employment information such as start date, role, salary, employment contract

  • Application information (cover letter, CV, certificates, diplomas, interview evaluations, assessments, references)

  • Financial information and bank details

  • For employees subject to withholding tax: religion, residence permit, additional employment information, substitute income, partner information

  • Performance review information

  • Time and vacation records

  • Information about illness, accidents, maternity/paternity leave, military or civil protection service

  • Criminal record extracts or debt enforcement records

  • Employee photos for website or publications

Application documents that do not lead to employment are deleted or destroyed after the recruitment process unless consent for storage has been granted.

4.7 Suppliers and Other Contractual Partners

We process the following personal data from business partners providing services or deliveries:

  • General contact and basic data according to section 4.1

  • Financial information such as bank details

  • Contractual information (responsible employees, consultants, service information)

These data are processed to fulfill contracts and comply with legal retention obligations.

If service providers have access to personal data (e.g., IT providers), we conclude appropriate data processing agreements with them.

4.8 Operation, Control, and Improvement of the Website

4.8.1 Server Log Files

Our website can be used without revealing extensive personal data. However, the server collects user information with each access and temporarily stores it in log files.

These include:

  • Date and time of access and data volume

  • Browser type and operating system

  • Domain name of the provider

  • Referring URL

  • Search queries

  • IP address

These data are necessary for technical operation, security, and analysis to improve the website.

4.8.2 Cookies

Our website uses cookies and similar technologies to ensure optimal website functionality.

Cookies are text files stored on your computer that allow analysis of website usage.

They collect data such as:

  • IP address

  • Referring website

  • Device type

  • Website search activity

  • Newsletter interaction data

Cookies can be disabled in browser settings, but this may affect website functionality.

We never use cookies to install malware or spyware.

5. Data Collection, Retention Period, and Security Measures

5.1 Data Collection

Personal data is usually obtained directly from you when you use our services. In some cases, data may also be obtained from employers, authorities, courts, or third parties.

Publicly accessible sources such as media or the internet may also be used.

5.2 Data Retention

Personal data is stored as long as necessary for the purpose for which it was collected or as required by legal obligations or contractual agreements.

Afterwards, the data is deleted.

5.3 Data Security

We implement appropriate technical and organizational security measures to protect personal data against unauthorized access or misuse.

These include:

  • IT and network security solutions

  • Access restrictions

  • Encryption of data storage and transmission

  • Internal guidelines and training

Where possible, data is stored on servers in Switzerland.

If data is stored abroad (e.g., Microsoft services, logs), the rules described in section 7 apply.

6. Social Media Channels

We provide links to our social media channels. When connecting with them, we may receive information stored in your profile.

Privacy policies of the respective providers apply:

LinkedIn:
https://www.linkedin.com/legal/privacy-policy

Google / YouTube:
https://policies.google.com/privacy

7. Tracking Technologies and Third-Party IT Tools

7.1 Google Analytics

This website uses the web analytics service Google Universal Analytics provided by Google Ireland Limited.

Google Analytics uses cookies to analyze website usage. Information generated by cookies is usually transmitted to Google servers in the USA.

You can prevent cookie storage through browser settings or install a browser plugin to block Google Analytics.

More information:
https://marketingplatform.google.com/about/analytics/terms/de/

Privacy details:
http://www.google.com/intl/de/analytics/privacyoverview.html

7.2 Hosting Provider

Server log data is collected based on legitimate interests.

Log files include:

  • Page accessed

  • File name

  • Date and time

  • Data volume

  • Browser type and version

  • Operating system

  • Referrer URL

  • IP address

  • Provider

Logs are stored for security purposes for up to 7 days and then deleted.

8. Data Sharing and Data Transfer

We may share personal data with third parties if:

  • you have consented

  • it is necessary for service provision

  • required for contractual purposes

  • required by law

Recipients may include:

  • Service providers (IT, hosting, legal advisors, insurers)

  • Authorities, courts, and regulatory bodies

Some data may be transferred to the USA (e.g., Google Analytics).

Transfers to countries without adequate protection are based on standard contractual clauses or other safeguards.

9. Your Rights

You have the right to:

  • request information about your stored personal data

  • know the origin, recipient, and purpose of the data processing

  • request correction, blocking, deletion, or transfer of data

If data must be retained due to legal obligations, deletion may not be possible.

You may also file complaints with the relevant data protection authority.

10. Final Provisions

10.1 Special Notice

We assume the GDPR does not generally apply to our data processing.

If it does apply in specific cases, processing is based on:

  • contract performance (Art. 6(1)(b) GDPR)

  • legitimate interests (Art. 6(1)(f) GDPR)

  • legal obligations (Art. 6(1)(c) GDPR)

  • protection of vital interests (Art. 6(1)(d) GDPR)

  • consent (Art. 6(1)(a) GDPR)

10.2 Responsible Entity and Contact

Contaxa AG
Bahnhofstrasse 20
6300 Zug
Switzerland

Data Protection Officer:
Nadine Kienle

General inquiries:
info@contaxa.ch

For correction or deletion requests, please include a copy of an ID or passport.

10.3 Changes to the Privacy Policy

We may update this privacy policy at any time by publishing the updated version on our website.

Last updated: 30 September 2023

Contaxa AG