Privacy statement
What we do with your data.
Short answer: as little as possible. The long answer is below, deliberately in plain language — a privacy statement you can't understand doesn't meet the GDPR.
Last updated: 31 July 2026
Who is responsible
Vyniq is a trading name of JGHP BV, Kapitein Luidingaflat 26, 3333 CM Zwijndrecht, the Netherlands, registered with the Dutch Chamber of Commerce under number 81817312. JGHP BV is the controller for the data processed on this site.
Privacy questions? Email hi@vyniq.eu. We have no data protection officer, and we don't need one: we process no data on a large scale and no special categories.
This website
This website sets no cookies, uses no trackers, and loads nothing from third-party servers. Fonts, styles and scripts sit on our own server. So there's no cookie notice either: there is nothing to consent to.
Since 31 July 2026 we do keep visitor statistics for this site. Until that date this page said we didn't; that is no longer true, so it no longer says it. We measure with our own Vyniq Analytics: one script line of about a kilobyte on the pages of this site, loaded from v.vyniq.dev (the mockup pages under /componenten/ are not measured — those are blueprints, not the site). That is our own server on a domain of our own — no other party is involved.
That script sets no cookie and uses no localStorage, sessionStorage or indexedDB. It reads nothing from your device and writes nothing to it. So there is still no consent dialog: there is nothing to consent to.
What we keep per page view: the path of the page, the hostname of the site you came from, your country, your region and your city, your device type, your browser family, your operating system and your language — as single words, for instance 'Firefox', 'Windows', 'desktop', 'nl'. From the URL we discard every parameter except utm_source, utm_medium, utm_campaign, utm_term, utm_content, ref and source; the script strips the rest in your browser already, so they never even reach us. Two more things belong in that list, and we name them on purpose: a pseudonymised day key and a random visitor number. The day key is a derived code that changes every day and that is erased when the day is closed — it is gone at most 28 hours after your visit. The visitor number ties the pages of a single visit on a single day together, so two pages do not count as two visitors; it is derived from nothing, and tomorrow you are a different number.
What we do not keep: your IP address, your user agent and your full language preference. We use those in working memory only, for the duration of your request, to look up your country, region and city, to work out whether you already came by today, and to reduce your language preference to a single code. From 'nl-NL,nl;q=0.9,en-US;q=0.8' we therefore keep only 'nl' — the full list is a fingerprint, one code is not. That lookup happens in a file on our own server (IP geolocation by DB-IP, db-ip.com) — no request leaves the machine. That last bit uses the day key above: it changes every day and is destroyed afterwards. There is no column for an IP address, no column for a user agent, and nothing that lets us recognise you across days or across sites. Legal basis: our legitimate interest in understanding how our own site is used (Article 6(1)(f) GDPR).
What happens anyway, unavoidably
To send you a web page, our server has to know where to send it. Your IP address therefore always passes our server — that's how the internet works and nobody can switch it off.
Our hosting provider keeps technical server logs which include IP addresses. Those logs are needed to fix faults and stop abuse, are not used to track or profile visitors, and are deleted automatically. Legal basis: our legitimate interest in a working and secure site (Article 6(1)(f) GDPR).
If you email us or use the form
Then we process your name, your email address, the subject you picked and your message. We use that to reply to you and for nothing else. Legal basis: carrying out your request and our legitimate interest in answering questions (Article 6(1)(b) and (f) GDPR).
Your message arrives as email and stays in our mailbox for as long as that's useful for handling it and any follow-up, up to a maximum of two years. After that we delete it. There is no database, no CRM and no mailing list: you don't end up on anything.
The form itself sets no cookie. What you type goes straight to our own server and not past a third party.
Our other services
MyIPs.eu, Vyniq Analytics and Debaty are separate services with their own privacy statements. What's written here covers vyniq.eu only.
Vyniq Analytics isn't available as a service to customers yet. When that changes, we'll publish its own statement there, plus a data processing agreement.
Us already measuring this site with it is a different matter: there we are both the maker and the only customer, and what happens to your data in that case is described above under 'This website'. There is currently no external customer: the only sites we measure are our own.
Who we share with
Nobody — we don't sell or rent your data to anyone, and we don't use it for advertising.
We can't do without a hosting provider and a mail server. They are our processors, they're located in the European Union, and they process only what's needed to keep the site and the mail working. No personal data goes to countries outside the EEA.
If the law obliges us to hand over data, for instance to the police or the courts, we will. That's the only exception.
Security
The site is reachable over https only. There is no database running. Email is sent encrypted wherever the receiving server supports it.
Spotted a security problem? Email hi@vyniq.eu. We'll respond, we'll act on it, and we won't threaten you with lawyers.
Your rights
You may ask us what data we hold about you (access), have it corrected, have it deleted, have the processing restricted, receive it in a readable file (portability) and object to the processing. If you've given consent, you may withdraw it at any time.
Email hi@vyniq.eu and we'll sort it within a month. It costs you nothing. If you think we're getting it wrong, you may complain to the Dutch Data Protection Authority (autoriteitpersoonsgegevens.nl) — but we'd rather hear it from you first, so we can fix it.
Changes
If something changes, we'll update this statement and note the date. For an important change, we'll say so on the site itself.
31 July 2026: we started measuring this site ourselves with Vyniq Analytics. The paragraphs under 'This website' and 'Our other services' were changed accordingly, on the same day the measurement script went live.