Legal

Privacy Policy

We take the protection of your personal data seriously. This policy explains which personal data we process when operating this website, why we process it, and which rights you have.

1. Controller

The controller within the meaning of Article 4(7) GDPR is:

Tinn Silver Fire Fighting and Rescue B.V.
Industrieweg 18
6051 AE Maasbracht
The Netherlands

Phone: +31 475 46 19 59
Email: info@tsffr.com
Website: https://www.tsffr.com

Our company is not legally required to appoint a data protection officer. For privacy-related enquiries, please use the email address above.

2. General information on data processing

Personal data is any information relating to an identified or identifiable natural person. We process personal data only where necessary to provide a functional website, communicate with you, maintain system security, or comply with legal obligations.

Processing is based on the General Data Protection Regulation (GDPR), the Dutch GDPR Implementation Act (UAVG), and other applicable national privacy laws.

3. Legal bases

Where we process personal data, we rely in particular on the following legal bases under Article 6(1) GDPR:

  • Article 6(1)(b) GDPR — performance of a contract or steps taken before entering into a contract, including enquiries about our services.
  • Article 6(1)(f) GDPR — our legitimate interests in a secure, stable, and user-friendly website.
  • Article 6(1)(c) GDPR — compliance with legal obligations where applicable.

4. SSL/TLS encryption

This website uses SSL or TLS encryption to protect confidential content in transit. An encrypted connection is indicated by ‘https://’ and the lock symbol in your browser.

When encryption is active, data you transmit to us cannot normally be read by third parties.

5. Website delivery and server logs

When you visit our website, the hosting provider automatically records information transmitted by your browser:

  • IP address of the requesting device
  • Date and time of access
  • Requested page or file
  • Amount of data transferred
  • Request status
  • Browser type and version
  • Device operating system
  • Referrer URL

We process this data to deliver the website, maintain system security, analyse errors, and prevent abuse. The legal basis is Article 6(1)(f) GDPR.

Logs are retained only as long as needed for these purposes and are then deleted or anonymised unless statutory retention duties apply.

6. Hosting, processors, and international transfers

This website is hosted by Vercel Inc. and operated using Next.js. We use the provider's data-processing terms or an agreement under Article 28 GDPR.

Provider: Vercel Inc., 440 N Barranca Ave #4133, Covina, CA 91723, USA
Privacy policy: https://vercel.com/legal/privacy-policy
Data processing agreement: https://vercel.com/legal/dpa

Hosting may involve transfers to third countries, particularly the United States. Where no adequacy decision applies, transfers are protected by appropriate safeguards, especially the European Commission's Standard Contractual Clauses under Article 46(2)(c) GDPR.

7. Cookies and local storage

We use technically necessary cookies or comparable technologies to provide essential functions, including storing your language choice.

The legal basis is Article 6(1)(f) GDPR. You can configure your browser to reject cookies or notify you before they are set, but this may limit website functionality.

We currently use no analytics, marketing, or profiling cookies.

8. Email and contact form

If you contact us by email or through the contact form, we may process:

  • Name
  • Email address
  • Phone number, if supplied
  • Subject and message content
  • Other information supplied voluntarily

We process this information to answer your enquiry and follow-up questions. The legal basis is Article 6(1)(b) GDPR where the enquiry concerns a contract or pre-contractual steps; otherwise Article 6(1)(f) GDPR.

The data is deleted when the enquiry has been fully handled unless statutory retention obligations apply.

Contact-form submissions are initially processed through our hosting provider's infrastructure and then sent over an encrypted SMTP connection to our IONOS mailbox. Required fields are marked; without them we cannot process your enquiry.

9. Fonts

We use Inter and Noto Sans Arabic, delivered through next/font (self-hosted).

Next.js obtains the font files during the build process and our server then delivers them locally. Visiting the website therefore does not normally connect to Google servers or transmit personal data to Google.

The legal basis is Article 6(1)(f) GDPR, namely our interest in a consistent and legible presentation.

10. Google Maps

The contact page contains a Google Maps area that is initially blocked. No map content is loaded and no connection to Google is established until you actively select ‘Load Google Maps’.

After activation, your browser connects directly to Google. Google may process technical data such as your IP address, browser information, referrer, and interactions with the map, and may transfer data to the United States. The provider is Google Ireland Limited, Gordon House, Barrow Street, Dublin 4, Ireland.

The map is loaded on the basis of your consent under Article 6(1)(a) GDPR. Where data is transferred to a third country without an adequacy decision, Article 49(1)(a) GDPR may also apply. You can avoid the transfer by not loading the map or withdraw consent for the current visit by reloading the page. Google privacy policy: https://policies.google.com/privacy

We continue to use no analytics, tracking, or marketing tools such as Google Analytics or Meta Pixel.

11. Retention

We retain personal data only for as long as necessary for the relevant processing purpose or statutory retention period. Afterwards, data is deleted or anonymised unless overriding legitimate interests require further retention.

12. Requirement to provide data

Providing personal data is not generally required by law or contract, and browsing the website does not require it. To handle a contact enquiry, however, we need the information you submit.

13. Your data protection rights

Subject to the applicable legal requirements, you have the following rights:

  • Access under Article 15 GDPR
  • Rectification under Article 16 GDPR
  • Erasure under Article 17 GDPR
  • Restriction of processing under Article 18 GDPR
  • Data portability under Article 20 GDPR
  • Objection under Article 21 GDPR
  • Withdrawal of consent with future effect under Article 7(3) GDPR

To exercise your rights, contact info@tsffr.com

Where processing is based on Article 6(1)(f) GDPR, you may object at any time on grounds relating to your particular situation.

14. Right to lodge a complaint

You may lodge a complaint about our processing of your personal data with a data protection supervisory authority.

The supervisory authority responsible for our company is in particular:

Autoriteit Persoonsgegevens
Bezuidenhoutseweg 30
2594 AV Den Haag
The Netherlands
Website: https://autoriteitpersoonsgegevens.nl

You may also contact the authority responsible for your habitual residence or place of stay.

15. Changes to this policy

We may update this policy to reflect current legal requirements or changes to our website, infrastructure, or services. The version published on this page applies.

Last updated: 16 July 2026

© 2026 Tinn Silver. All rights reserved.

ImprintPrivacy