
AVG & GOOGLE CONSENT MODE V2 PRIVACYBELEID
Privacybeleid & Gegevensbescherming
This Privacy Policy details the policies, protocols, and technical measures implemented by NEXORA Scientific B.V. to protect personal data collected through our online portal, customer account systems, quote requests, and integrated Google cloud services.
1. IDENTIFICATIE VAN DE VERWERKINGSVERANTWOORDELIJKE & FG
NEXORA Scientific B.V. acts as the official Data Controller within the meaning of Article 4(7) of the General Data Protection Regulation (GDPR) for all data processing operations conducted via this website.
Pursuant to Article 37 GDPR, NEXORA Scientific has designated an expert Data Protection Officer responsible for overseeing regulatory compliance, handling statutory inquiry requests, and liaising with supervisory authorities.
2. GOOGLE SERVICES INTEGRATION & DATA PROCESSING DISCLOSURE
NEXORA Scientific utilizes specific cloud, analytics, security, and advertising services operated by Google Ireland Limited (Gordon House, Barrow Street, Dublin 4, Ireland) and Google LLC (1600 Amphitheatre Parkway, Mountain View, CA 94043, USA). Below is an exhaustive breakdown of each Google service deployed on our platform:
Google Analytics 4 (GA4)
Aggregated, privacy-focused measurement of site traffic, page engagement, and user interaction metrics without storing individual IP addresses.
- Anonymized IP Address (truncated)
- Browser Type & Resolution
- Referrer URL
- Page Navigation Timestamps
- Device Category
Google Tag Manager (GTM)
Centralized container management to deploy web tags without modifying raw site code. GTM processes no user profiles or behavioral tracking data directly.
- Container loading signals
- Technical request headers (no persistent cookies set by GTM itself)
Google Ads & Conversion Tracking
Evaluating campaign effectiveness, measuring successful quote requests or purchase conversions, and displaying relevant B2B advertising.
- Conversion Event Timestamps
- Order Value / Product SKU ID
- Hashed First-Party Data (Google Consent Mode v2 compliant)
Google Merchant Center
Syndicating inventory availability, SKU pricing, and COA analytical product specifications for institutional research procurement.
- Product SKU catalog data
- Anonymized click-through counts (no customer PII shared)
Google Maps & Interactive Dispatch Visualizer
Rendering our Amsterdam Science Park distribution hub coordinates and calculated EU cold-chain shipping vectors.
- IP Address
- Geographic Location Query Parameters
- Browser User-Agent
Google reCAPTCHA v3 Security Protection
Protecting contact forms, quote requests, and order submission endpoints against automated spam scripts, credential stuffing, and bot attacks.
- Hardware & Software Characteristics
- Mouse Movement & Interaction Signals
- Session Cookies
2.7 GOOGLE CONSENT MODE V2 IMPLEMENTATIE
NEXORA Scientific strictly enforces Google Consent Mode v2 across all tags. When you visit our website, four fundamental consent signals are communicated directly to Google depending on your selection in our Cookie Consent Banner:
If you reject non-essential cookies, Google tags execute in un-consented mode, transmitting only anonymized functional pings without personal identifiers or persistent cookies.
3. DOELEINDEN VAN VERWERKING & WETTELIJKE GRONDSLAGEN
We process personal credentials, institutional buyer data, order telemetry, and analytical records strictly under the following lawful grounds established under Article 6(1) GDPR:
Processing necessary to execute B2B procurement contracts, fulfill laboratory dispatch orders, generate official tax invoices, issue Certificates of Analysis (CoA), and provide order status notifications.
Processing mandatory under Kingdom of the Netherlands tax law (Dutch Tax Administration 7-year audit retention for invoices under Wet op de omzetbelasting 1968) and European chemical batch traceability mandates.
Processing based on explicit consent granted via our Cookie Consent Banner or newsletter subscription forms (e.g. for Google Analytics 4 performance measurement or Google Ads remarketing).
Verwerking vereist voor ons gerechtvaardigd belang bij de beveiliging van het netwerk en fraudepreventie.
4. RECHTEN VAN BETROKKENEN
As a data subject located within the European Economic Area (EEA) or European Union (EU), you maintain complete enforceable legal rights regarding your personal records held by NEXORA Scientific B.V.:
Obtain written confirmation whether your data is being processed and receive a complete copy of all personal records.
Request immediate correction of inaccurate or incomplete institutional account details and tax records.
Recht om uw gegevens te laten wissen waar wettelijk toegestaan.
Restrict data processing operations while the accuracy of records or legal legitimacy is being verified.
Receive your submitted personal credentials in a structured, commonly used, machine-readable JSON or CSV format.
Object at any time to data processing based on legitimate interests or direct marketing communications.
To exercise any statutory data subject right, submit a formal written request to our Data Protection Desk at dpo@nexora-scientific.com. To protect client confidentiality, we require proof of identity (such as corporate email validation or official identification) prior to processing requests. Requests are fulfilled free of charge within 30 days.
5. INTERNATIONALE GEGEVENSOVERDRACHT
As NEXORA Scientific utilizes Google cloud services, certain anonymized or pseudonymized technical telemetry may be processed on server infrastructure located in the United States or other non-EEA countries.
All transatlantic data transfers to Google LLC are lawfully conducted under the EU-U.S. Data Privacy Framework (DPF), for which Google LLC maintains active certification, and supplemented by the European Commission's Standard Contractual Clauses (SCCs / Model Clauses) under Article 46(2)(c) GDPR.
6. BEVEILIGING VAN FINANCIËLE TRANSACTIES
All online payment transactions (credit card, iDEAL, Bancontact, bank transfers) are transmitted using end-to-end TLS 1.3 cryptographic protocols directly to Stripe Payments Europe, Ltd., certified as a PCI-DSS Level 1 Service Provider (the highest security accreditation in the global payments industry).
Full credit card numbers, CVC codes, and banking PINs are strictly isolated within Stripe's PCI-compliant vault infrastructure and are never stored, processed, or visible on NEXORA Scientific servers.
7. KLACHTRECHT BIJ DE TOEZICHTHOUDER
Without prejudice to any other administrative or judicial remedy, you maintain the statutory right under Article 77 GDPR to lodge an official complaint with a competent supervisory authority, in particular in the EU Member State of your habitual residence, place of work, or place of the alleged infringement.
The primary supervisory authority responsible for overseeing NEXORA Scientific B.V. is the Dutch Data Protection Authority (Autoriteit Persoonsgegevens):