Privacy Policy

Privacy Policy

Last updated: 26 September 2026

Tresss AB respects your privacy and is committed to protecting your personal data. This Privacy Policy explains how we collect, use, store and protect personal data when you visit our website, contact us, or otherwise interact with us.

1. Who We Are

Tresss AB is a Swedish company providing IT services, consulting and related solutions.

Tresss AB
Company registration number: 556360-3314
Sweden

For questions regarding this Privacy Policy or how we process your personal data, please contact us through the contact details provided on our website.

2. What Personal Data We Collect

We may collect and process personal data that you provide directly to us, for example when you:

  • Contact us through a contact form

  • Send us an email

  • Request information about our services

  • Become or are a customer, supplier or business partner

  • Otherwise communicate with us

Depending on the interaction, this may include:

  • Name

  • Company or organisation

  • Email address

  • Telephone number

  • Job title

  • Information included in messages or enquiries

  • Other information you voluntarily provide to us

When you visit our website, certain technical information may also be collected automatically, such as IP address, browser type, device information and information about how the website is accessed and used.

3. How We Use Personal Data

We process personal data for purposes including:

  • Responding to enquiries and requests

  • Providing and administering our services

  • Communicating with customers, suppliers and business partners

  • Managing existing and potential customer relationships

  • Improving and maintaining our website and services

  • Ensuring the security and proper operation of our website and IT systems

  • Fulfilling legal and regulatory obligations

We do not sell personal data to third parties.

4. Legal Basis for Processing

We process personal data only when we have a valid legal basis under applicable data protection legislation, including the General Data Protection Regulation (GDPR).

Depending on the circumstances, our processing may be based on:

Contract – when processing is necessary to enter into or perform a contract with you.

Legitimate interests – when processing is necessary for our legitimate business interests, provided that those interests do not override your rights and interests.

Legal obligation – when we are required to process information in order to comply with applicable laws or regulations.

Consent – when you have given us specific consent to process your personal data for a particular purpose. Where processing is based on consent, you may withdraw your consent at any time.

5. Cookies and Similar Technologies

Our website may use cookies and similar technologies to ensure that the website functions correctly, improve its performance and understand how visitors use the website.

Some cookies may be strictly necessary for the operation of the website, while others may be used for analytics or other optional purposes.

Where required by applicable law, optional cookies will only be used after you have provided your consent. You can withdraw or change your consent at any time through the cookie settings available on the website.

For more detailed information about the cookies used on our website, please refer to our Cookie Policy or cookie settings.

6. Sharing of Personal Data

We may share personal data with trusted service providers that process information on our behalf, for example providers of:

  • Website hosting and infrastructure

  • IT and cloud services

  • Email and communication services

  • Website analytics and security services

  • Accounting and administrative services

Such providers may only process personal data according to our instructions and where appropriate are subject to data processing agreements and confidentiality requirements.

We may also disclose personal data when required by law, regulation, court order or a competent authority.

7. International Data Transfers

We aim to process personal data within the European Union and European Economic Area (EU/EEA) whenever reasonably possible.

Some of our service providers may process personal data outside the EU/EEA. Where such transfers occur, we take appropriate measures to ensure that personal data receives an adequate level of protection in accordance with applicable data protection legislation, for example through an adequacy decision by the European Commission or approved Standard Contractual Clauses.

8. How Long We Keep Personal Data

We retain personal data only for as long as necessary for the purposes for which it was collected or for as long as required by applicable law.

Retention periods may vary depending on the type of information and our relationship with you. When personal data is no longer required, it will be deleted or anonymised in accordance with our applicable procedures.

9. Security

We take appropriate technical and organisational measures to protect personal data against unauthorised access, alteration, disclosure, loss or destruction.

Our security measures are reviewed and adapted where appropriate based on the nature of the information processed and relevant security risks.

10. Your Rights

Under the GDPR, you may have the right to:

  • Request access to the personal data we hold about you

  • Request correction of inaccurate or incomplete personal data

  • Request deletion of your personal data in certain circumstances

  • Request restriction of processing

  • Object to certain processing based on legitimate interests

  • Receive certain personal data in a portable format

  • Withdraw consent where processing is based on consent

To exercise any of these rights, please contact us using the contact details provided on our website.

We may need to verify your identity before processing a request.

11. Complaints

If you believe that we are processing your personal data in violation of applicable data protection legislation, you have the right to lodge a complaint with the Swedish Authority for Privacy Protection (Integritetsskyddsmyndigheten – IMY) or another competent supervisory authority.

12. Third-Party Websites

Our website may contain links to websites or services operated by third parties. Tresss AB is not responsible for the privacy practices or content of external websites.

We recommend reviewing the privacy policies of third-party services before providing personal data to them.

13. Changes to This Privacy Policy

We may update this Privacy Policy from time to time, for example due to changes in our services, website, legal requirements or how we process personal data.

The latest version will always be made available on our website. The date at the top of this Privacy Policy indicates when it was last updated.

14. Contact

If you have questions about this Privacy Policy, wish to exercise your rights, or have questions regarding how Tresss AB processes personal data, please contact us through the contact information provided on our website.

Tresss AB
Company registration number: 556360-3314
Sweden