Privacy Policy
Last updated: 27 June 2025
This Privacy Policy explains how Stravik Technologies AB, doing business as Cleanroom (Cleanroom, "we" or "us"), collects, uses, shares and protects Personal Data when you access or use the Cleanroom Service or otherwise interact with us. It forms part of the Cleanroom Terms of Service and the Data Processing Addendum ("DPA"). Unless otherwise defined here, capitalised terms have the meanings given in the Terms or DPA.
1. Who is responsible for your data?
Stravik Technologies AB
Kärrvägen 5, 423 35 Varberg, Sweden
Email: elias@prospecterra.com
Stravik Technologies AB is the controller of Personal Data for its own marketing, sales and administrative activities. When we Process Client Data on behalf of customers through the Cleanroom Service, we act as a processor, as described in the DPA.
2. What data do we collect?
| Category | Examples | Collected When | 
|---|---|---|
| Account Information | Name, company name, business email, hashed password | Account registration or profile updates | 
| Usage Data | Log files, IP address, browser type, pages viewed, time spent, clickstream | Use of the Service or website | 
| Payment Data | Last four digits of card, billing address (processed by Stripe) | Subscription purchase | 
| Client Data | CRM records uploaded via integrations or API (may include names, emails, phone numbers, notes) | Customer uses the Service | 
| Support Data | Chat transcripts, tickets, feedback | Contacting support | 
We do not intentionally collect special categories of Personal Data (e.g. health or biometric data) or data about children.
3. Legal bases for processing (EEA & UK)
We rely on:
- Contract performance – to provide and administer the Service (Art. 6 (1)(b) GDPR).
 - Legitimate interests – to monitor and improve the Service, prevent fraud, and market similar services to existing customers (Art. 6 (1)(f) GDPR). We balance these interests with your rights.
 - Consent – for optional communications. You may withdraw consent at any time.
 - Legal obligation – to comply with laws (e.g. tax regulations) (Art. 6 (1)(c) GDPR).
 
4. How we use Personal Data
- Provide, operate and maintain the Service.
 - Process payments and manage subscriptions.
 - Respond to inquiries and provide support.
 - Analyse usage to improve and develop the Service.
 - Send technical notices, security alerts and administrative messages.
 - Market our own products and services (you can opt‑out at any time).
 
5. Sharing and disclosure
We share Personal Data only with:
- Sub‑processors approved in Annex III of the DPA (currently Replit Inc. for runtime execution and Stripe Payments Europe Ltd. for payment processing).
 - Service providers who act on our instructions for hosting, analytics or communications.
 - Authorities or third parties when required by law or to protect rights, property or safety.
 
We do not sell or rent Personal Data.
6. International transfers
Where Personal Data is transferred outside the EEA/UK, we rely on Standard Contractual Clauses or another lawful mechanism, as outlined in the DPA. Our primary sub‑processors include Replit Inc. (United States) and Stripe Payments Europe Ltd. (Ireland); appropriate safeguards are in place.
7. Data retention
We retain Personal Data for no longer than necessary to fulfil the purposes described above or to comply with legal obligations. Client Data is retained for the duration of the subscription and deleted in accordance with Section 6 of the DPA, unless otherwise agreed or required by law.
8. Security
Cleanroom applies technical and organisational measures detailed in Annex II of the DPA, including encryption in transit and at rest, access controls, logging and regular security testing.
9. Your rights
Subject to local law, you have the right to:
- Access your Personal Data (Art. 15 GDPR)
 - Rectify inaccurate or incomplete data (Art. 16 GDPR)
 - Erase data in certain circumstances (Art. 17 GDPR)
 - Restrict processing (Art. 18 GDPR)
 - Object to processing based on legitimate interests or direct marketing (Art. 21 GDPR)
 - Data portability (Art. 20 GDPR)
 - Lodge a complaint with a supervisory authority (see Section 11)
 
To exercise these rights, contact us at elias@prospecterra.com. We may require verification of identity.
10. Automated decision‑making
Cleanroom's AI agents make automated suggestions to cleanse CRM data. These decisions do not have legal or similarly significant effects. Customers remain responsible for reviewing and approving Clean Outputs.
11. Complaints
You may lodge complaints with the Swedish Authority for Privacy Protection (IMY) or your local supervisory authority.
12. Changes to this Privacy Policy
We will post any changes on this page and, if material, provide reasonable advance notice via email or the Service. Continued use after the effective date constitutes acceptance of the revised Policy.
13. Contact
If you have questions about this Privacy Policy or our privacy practices, please contact:
Privacy Team
Stravik Technologies AB (Cleanroom)
Kärrvägen 5, 423 35 Varberg, Sweden
