Privacy Policy
Last updated: 1 September 2026
At SolidWeb, we take privacy seriously. This Privacy Policy explains which personal data we collect, why we process it, how the data is used and stored, who it may be shared with, and what rights you have.
This policy applies when you visit solidweb.no, contact us, become a customer, use our services, or otherwise communicate with SolidWeb AS.
1. Data controller
SolidWeb AS is the data controller for personal data processed in connection with our own business and services.
SolidWeb AS
Company registration no.: 930 830 178
Visiting address: Torvgata 25, 2000 Lillestrøm
Email: kontakt@solidweb.no
Phone: 92 96 32 32
Website: solidweb.no
If you have questions about how we process personal data or wish to exercise your privacy rights, you can contact us at kontakt@solidweb.no.
2. What personal data do we process?
The data we process depends on how you contact us and which services you use.
We may process, among other things:
Contact details
- Name
- Email address
- Phone number
- Company name
- Position or role
- Website address
- Other contact information you provide
Information in inquiries
When you use our contact form, send us an email, contact support, or otherwise communicate with us, we may process the content of your inquiry and information necessary to respond to or follow up on the matter.
We recommend that you do not send sensitive personal data through standard contact forms or email unless this is necessary and agreed with us.
Customer and contractual relationships
For customers, we may process information relating to, among other things:
- Customer agreements
- Contact persons
- Projects
- Support inquiries
- Hosting and operations agreements
- Domains and websites
- Orders
- Invoicing and payments
- Correspondence
- Documentation related to the delivery
Technical information
When you visit our website or use services we administer, technical information may be recorded, such as:
- IP address
- Browser type
- Device type
- Operating system
- Time of visit
- Pages visited
- Referring website
- Error logs and security logs
Such information may be necessary for security, troubleshooting, operations and protection against misuse.
3. Why do we process personal data?
We process personal data when necessary for one or more of the following purposes:
Responding to enquiries
When you contact us, we use the information you provide to respond to your enquiry and follow up on your request.
The legal basis for processing will normally be that the processing is necessary to take steps at your request before a potential agreement is entered into, or our legitimate interest in being able to communicate with people who contact us.
Providing our services
When you are a customer, we process necessary personal data in order to provide agreed services, such as web design, WordPress development, hosting, operations, maintenance, security, technical support and other digital services.
The legal basis for processing is normally that the processing is necessary to fulfil an agreement.
Customer administration and invoicing
We process necessary information for the administration of customer relationships, quotations, contracts, invoicing, payments and accounting.
Certain information must be retained to comply with legal obligations, including bookkeeping and accounting regulations.
Security and stable operations
We may process IP addresses, logs and other technical data to:
- Detect and prevent hacking
- Stop spam and misuse
- Troubleshoot services
- Maintain stability
- Protect our systems, customers and users
- Document security incidents
The processing is based on our legitimate interest in protecting our services and IT systems.
Analysis and improvement
If you have given the necessary consent, we may use analytics tools and similar technology to understand how the website is used and how we can improve content, design, performance and user experience.
Marketing
We may send information about our services, relevant news or offers where we have a valid legal basis for doing so.
Where consent is required, we do not send such marketing unless you have given your consent first.
You may opt out of direct marketing at any time.
4. Contact form
When you submit an enquiry through the contact form on solidweb.no, we may ask for, among other things:
- Name
- Phone number
- Company
- Website
- What the enquiry concerns
- A description of what you need help with
The information is used to process and follow up on the enquiry.
The information is not used for other incompatible purposes unless we have a valid legal basis for doing so.
5. Cookies and similar technology
Solidweb.no may use cookies and similar technology.
A cookie is a small data file that may be stored on your device when you visit a website.
We distinguish between different types of cookies:
Necessary cookies
These are necessary for basic functionality, security, consent settings or other services you have expressly requested.
Such cookies may be used without consent when the conditions for doing so are met.
Functional cookies
These can be used to remember settings and improve the functionality of the website.
Analytics and statistics
These help us understand how the website is used, which pages are visited and how users navigate the website.
Where consent is required, such technologies are only activated after you have given consent.
Marketing
Marketing and tracking technologies may be used to measure the effectiveness of advertisements or display more relevant advertisements.
Such technologies are not activated until the necessary consent has been obtained.
You should be able to reject optional cookies just as easily as you can accept them.
You can change or withdraw your consent at any time through our cookie settings.
6. Third-party services and embedded content
The website may contain content or functionality from third parties, such as:
- Maps
- Videos
- Fonts
- Analytics tools
- Social media
- Form and security solutions
If a third-party service is activated, the provider may receive technical information such as your IP address and information about your device.
Services that are not strictly necessary and require consent should generally not be activated until you have given consent.
7. Who do we share personal data with?
We do not sell personal data.
We may use external providers to deliver and operate our services. These may include providers of:
- Servers and hosting
- Backup
- Security
- Support systems
- Project management
- Accounting and invoicing
- Cloud services
- Analytics
- CRM
- Domain services
- Technical integrations
These providers only gain access to personal data when necessary to deliver the relevant service.
When a provider processes personal data on our behalf, we enter into a data processing agreement where required.
We may also disclose information if we are legally obligated to do so, for example following a request from a public authority or court.
8. Processing personal data on behalf of our customers
SolidWeb develops, operates and maintains websites and digital solutions for customers.
In such cases, SolidWeb may process personal data on behalf of the customer.
In that case, the customer is normally the data controller, while SolidWeb is the data processor.
The processing is governed by a data processing agreement and the customer's instructions.
This may include personal data stored in:
- WordPress
- Online stores
- Contact forms
- Customer or member systems
- Databases
- Hosting accounts
- Backup
- Email systems
- Logs
- Support systems
If you wish to access or delete information contained on a website we operate for a customer, the request should normally be directed to the company that owns the website in question.
9. Transfer of information outside the EEA
Where appropriate, we seek to use providers that process personal data within Norway or the EEA.
Nevertheless, some providers may process or make information available from countries outside the EEA.
When personal data is transferred outside the EEA, we ensure that a valid transfer mechanism exists under data protection legislation. This may include:
- European Commission adequacy decision
- Standard Contractual Clauses (SCC)
- Other lawful mechanisms under the GDPR
We also assess the need for additional security measures where necessary.
10. How long do we store personal data?
We do not store personal data for longer than necessary for the purpose for which it was collected.
The retention period depends on the type of information and the purpose.
For example:
- Inquiries are stored for as long as necessary to follow up on the matter and any subsequent dialogue.
- Customer information is stored for as long as the customer relationship exists and for a necessary period thereafter.
- Accounting and invoicing information is retained for as long as we are legally required to do so.
- Technical logs are deleted or anonymized when they are no longer necessary for operations, security or documentation.
- Information processed on the basis of consent is deleted or processing is discontinued when consent is withdrawn, unless we have another lawful basis for continued processing.
Information may be stored for longer if necessary to establish, exercise or defend a legal claim.
11. Job applications
If you apply for a job at SolidWeb, we may process information such as:
- Name
- Contact information
- CV
- Application
- Work experience
- Education
- References
- Other information you send us
The information is used only in connection with the recruitment process, unless we have agreed otherwise with you.
Information about candidates who are not hired is deleted when it is no longer necessary to retain it, unless the candidate has consented to longer retention.
12. How do we protect the information?
We work systematically with information security and use technical and organizational measures to protect personal data against:
- Unauthorized access
- Modification
- Loss
- Misuse
- Unintended publication
- Deletion
- Data breaches
The measures may include access control, software updates, backups, logging, firewalls, two-factor authentication, encryption and restrictions on administrative access.
No solution on the internet can be guaranteed to be 100 percent secure, but we work continuously to reduce the risk.
13. Your rights
When SolidWeb is the data controller for your personal data, you may, under data protection legislation, have the right to:
Request access
You can request information about which personal data we process about you and receive a copy of it.
Request correction
If the information is inaccurate or incomplete, you can request that it be corrected.
Request deletion
In certain cases, you can request that personal data be deleted.
The right to deletion does not apply if we still have a lawful need or legal obligation to retain the information.
Request restriction
In certain situations, you can request that the processing of your personal data be restricted.
Object to processing
When processing is based on our legitimate interest, you may have the right to object to the processing.
You can always object to the use of personal data for direct marketing.
Data portability
When the conditions are met, you may have the right to receive personal data you have provided to us in a structured, commonly used and machine-readable format.
Withdraw consent
If processing is based on consent, you can withdraw your consent at any time.
Withdrawal does not affect the lawfulness of processing carried out before consent was withdrawn.
To exercise your rights, you can contact us at:
We may request the necessary information to verify your identity before disclosing or changing personal data.
14. Automated decision-making
As a general rule, SolidWeb does not use fully automated decision-making that has legal effect or similarly significantly affects you.
If this should become applicable, you will receive specific information about the processing and your rights.
15. Complaints to the Norwegian Data Protection Authority
If you believe that SolidWeb processes your personal data in violation of data protection legislation, we would appreciate it if you contact us first so that we can investigate the matter.
In any event, you have the right to lodge a complaint with the Norwegian Data Protection Authority.
Information about how to contact the Norwegian Data Protection Authority is available at datatilsynet.no.
16. Changes to the privacy policy
We may update this privacy policy if our services, systems, suppliers or applicable legislation change.
The current version will always be available at solidweb.no.
The date at the top of the page shows when the policy was last updated.
Contact us
Do you have questions about privacy or the processing of your personal data?
SolidWeb AS
Company registration no.: 930 830 178
Torvgata 25, 2000 Lillestrøm
Phone: 92 96 32 32
Email: kontakt@solidweb.no
Website: solidweb.no
