Legal

Privacy Policy

How New Soft Solution B.V. processes personal data through this website, customer accounts, consultations, recruitment and employee tools.

Last updated: 20 September 2026

Applies to: newsoftsolution.com

1. Controller and contact

New Soft Solution B.V. is the controller for the website processing described here. Head office: Fluitekruidweg 257, 1508 AG Zaandam, The Netherlands. Chamber of Commerce (KvK): 42137111. VAT: NL869886344B01. Contact: info(at)newsoftsolution.com and +31 6 8754 5440. Our Nepal branch is NSoft Solution Pvt. Ltd., Sanothimi Bode 5, 4400 Bhaktapur, Nepal, registration number 3482389851, PAN NP9841563189.

2. Data and purposes

We process contact details and message content when you contact us; account identity, company and telephone details when you register; project, service, appointment and correspondence details when you request a consultation; and technical security data such as IP-related request information, timestamps and authentication events to operate and protect the application.

The purposes are responding to enquiries, managing secure accounts, arranging and administering consultations, delivering requested services, preventing abuse, troubleshooting, maintaining records and meeting legal obligations.

3. Accounts, roles and employee timetable

Registered customers can manage their consultation requests and view their own application information. Customer accounts do not receive employee timetable access. Employees can access only their own work sessions, breaks and daily tasks. A Super Admin can view and manage employee and timetable information for operational administration and reporting. Passwords are stored as one-way hashes and are not readable by administrators.

4. Consultations

A signed-in customer may book a 60, 90 or 120 minute consultation within the opening hours configured by an administrator. We store the supplied name, account email, telephone number, company, website, selected service, appointment time, duration and message. Existing active bookings affect availability. A customer must cancel an active or upcoming consultation before booking another. Cancelled consultations no longer block the time slot, but the booking record and cancelled status remain available for administration and accountability.

5. Recruitment documents

Job applications can include a CV and motivation letter in validated PDF or DOCX format. Documents are stored under non-user-controlled filenames and are available to authorised administrators. Applicants receive email when their application status changes. When an application is marked Rejected, its uploaded CV and motivation letter are automatically deleted; the application record and status may remain for administration, legal claims and recruitment accountability until deleted under our retention process.

6. Legal bases

Depending on the interaction, we rely on steps requested before entering a contract, performance of a contract, compliance with legal obligations, consent, and legitimate interests in secure website operation, business communication, recruitment, workforce administration and the establishment or defence of legal claims. You may withdraw consent where consent applies; this does not affect earlier lawful processing.

7. Help, maps and service providers

The Help feature in the current application selects answers locally from prewritten website information. Questions are kept in browser memory for the open interaction and are not sent to an external AI provider or stored by our backend. Contact pages embed Google Maps; loading a map can disclose technical data such as your IP address to Google under Google's own terms.

We may use hosting, database, email-delivery, security, backup and professional service providers where necessary. We do not sell personal data. Data may also be disclosed where legally required or necessary to protect rights and systems.

8. Retention and security

We keep information only while needed for its purpose, contractual administration, statutory records, security, disputes or legal claims. Financial records may need to be retained for statutory periods. Rejected application documents are deleted automatically as described above. Other account, enquiry, consultation, application and security records are reviewed and deleted or anonymised when no longer required; no statement on this page overrides a mandatory legal retention period.

Safeguards include role-based access, object-level permissions, server-side validation, protected sessions, CSRF controls, password hashing, throttling, security headers, restricted uploads, logging and HTTPS controls in production. No system can be guaranteed completely secure.

9. Your rights

Under the GDPR, where applicable, you may request access, correction, deletion, restriction, portability or object to processing, and may withdraw consent. Send a request to info(at)newsoftsolution.com. We may verify your identity before disclosing or changing data. You may complain to the Dutch Data Protection Authority (Autoriteit Persoonsgegevens) or another competent EEA authority.

10. Changes

We update this notice when the application, suppliers, processing or legal requirements change. The current version and revision date are published here.