SMARTPOINT

Privacy Policy

SMARTPOINT respects your privacy. This policy explains what personal data we process, why, on what legal basis, how long we keep it and how to exercise your rights, in accordance with the General Data Protection Regulation (GDPR) and the Belgian Act of 30 July 2018.

1.Data controller

The data controller is SMARTPOINT, with its place of business at Chau. de Haecht 78, 1210 Saint-Josse-ten-Noode, Belgium.

Company number (BCE/KBO): 0XXX.XXX.XXX. VAT number: BE 0XXX.XXX.XXX.

For any question about this policy or your data: info@smartpoint.be — +32 (0)X XX XX XX XX.

2.Data we process

Depending on how you interact with us, we may process:

  • Identification and contact data: name, email address, phone number, provided through the contact form, by phone or at the counter.
  • Repair data: device brand and model, serial number or IMEI, fault description, intervention history and parts replaced.
  • Billing data: what we need to issue an invoice and comply with Belgian accounting and tax obligations.
  • Device content: we access your files, photos or messages strictly as far as necessary for the requested diagnosis or repair, and never for any other purpose.
  • Browsing data: IP address, device and browser type, pages viewed — only through analytics cookies, and only if you have consented.

4.Cookies and analytics

Without your consent we set only strictly necessary cookies: they secure the site, remember your language and record your cookie choice.

Analytics cookies (Google Analytics 4) are set only after your explicit consent through the banner. Until you accept, no measurement script is loaded and Google Consent Mode remains denied by default.

You can change or withdraw your choice at any time through the "Cookie settings" link at the bottom of every page. Withdrawal does not affect the lawfulness of processing carried out beforehand.

5.Recipients and processors

Your data is neither sold nor rented. It is accessible to SMARTPOINT staff who need it, and to processors acting on our instructions: the website host, the email provider, the analytics tool, the accountant and, where relevant, parts suppliers handling a warranty claim.

We conclude a data processing agreement with these providers in accordance with Article 28 GDPR.

6.Transfers outside the European Economic Area

Our data is hosted in the European Union. Where a processor would handle data outside the EEA — which is possible with Google Analytics — that transfer takes place only on the basis of a European Commission adequacy decision or standard contractual clauses, together with supplementary measures.

7.Retention periods

  • Contact enquiries without follow-up: 12 months maximum.
  • Repair files and warranty data: for the duration of the legal and commercial warranty, then limited archiving.
  • Invoices and accounting records: 7 years, as required by Belgian accounting and tax law.
  • Website analytics data: 14 months maximum.
  • Data held on a device: it remains yours; we keep no copy once the device is returned, unless you expressly ask us to as part of a data recovery job.

8.Your rights

Under Articles 15 to 22 GDPR you have the following rights:

  • Right of access to your data and to obtain a copy.
  • Right to rectification of inaccurate or incomplete data.
  • Right to erasure, within the limits of our legal retention obligations.
  • Right to restriction of processing.
  • Right to portability of the data you provided to us.
  • Right to object to processing based on our legitimate interest.
  • Right to withdraw your consent at any time, where processing relies on it.

9.How to exercise your rights

Write to info@smartpoint.be or come to the counter with proof of identity. We respond within one month, extendable by two months for complex requests, in which case we inform you.

Exercising your rights is free of charge, except for manifestly unfounded or excessive requests.

10.Complaint to the supervisory authority

If you consider that the processing of your data infringes the GDPR, you may lodge a complaint with the Belgian Data Protection Authority (APD/GBA), Rue de la Presse 35, 1000 Brussels — contact@apd-gba.be — www.dataprotectionauthority.be, without prejudice to any judicial remedy.

11.Security

We apply appropriate technical and organisational measures: encrypted website connections (HTTPS), access limited to those who need it, protected workstations and an internal confidentiality policy. No system is infallible, so we advise you to back up your data before any intervention.

12.Changes

This policy may be updated to reflect changes in our services or in the applicable regulations. The version in force is the one published on this page. Last updated: 13 September 2026.

Last updated: