Skip to content
Natus AG Back to the site

Legal

Privacy policy

Last updated 1 October 2026.

1. Who is responsible

Natus AG, Zählerweg 6, 6300 Zug, Switzerland, is the controller of the personal data collected through this site.

For any question about this policy, or any request under Section 9, write to info@natusgroup.ch or to the address above.

2. What we collect

From the contact form. Your message, your name, and your email address, which the form requires, and your company and telephone number if you choose to give them.

From your visit. Our server records the IP address of the device you connect from, the time of each request, the page requested, and the browser and operating system your device reports, and keeps these details in its access, error, and security logs. Every request reaches the server through Cloudflare, which protects the site and speeds up its delivery, and which processes the same details to do so.

To prevent misuse of the form. The server counts the messages sent from one connection within 15 minutes. It counts them against a one-way code derived from the IP address (for IPv6, from its network prefix) with a secret key that is held on the server and used for nothing else.

The site runs no analytics and builds no profile of its visitors.

3. Why we collect it

We use what you send through the contact form to read and answer your message, and for any business relationship that follows.

Server logs, Cloudflare’s protection, and the message count keep the site running, secure, and free of abuse.

We do not sell personal data, and we do not share it with anyone for their own marketing.

4. Who receives it

The companies that run the site and our email for us:

  • Studio Zerotredici SRL, Verona, Italy, which administers the server and our email platform.
  • Hetzner, whose data center in Germany houses the server and its logs.
  • Cloudflare, through whose network every request to the site passes.
  • Amazon Web Services, whose email service, Amazon SES, delivers messages from the contact form to our inbox.
  • Microsoft, whose Microsoft 365 service holds each message once it reaches our inbox.

Studio Zerotredici, Hetzner, Amazon Web Services, and Microsoft process the data on our behalf. Cloudflare does so for the traffic it passes to the site, and it also acts as a controller in its own right for data it derives from that traffic, such as threat scores for IP addresses, which it uses to secure its network.

Beyond them, personal data may go to our professional advisers, and to public authorities where the law requires it.

5. Where it goes

The server stands in Germany, and Amazon SES handles messages from the form in its Frankfurt region, also in Germany. Studio Zerotredici works from Italy. Our Microsoft 365 data is stored in Switzerland or the European Union. Germany, Italy, and every other State of the European Economic Area appear in Annex 1 to the Data Protection Ordinance as providing an adequate level of protection.

Cloudflare handles each request in the data center nearest to the visitor, which may lie outside Switzerland and the European Economic Area, and stores its request logs and security data mainly in the United States and the European Economic Area. Cloudflare, Amazon Web Services, and Microsoft are groups based in the United States, and each is certified under the Swiss-U.S. Data Privacy Framework, through which the United States appears in Annex 1 for certified companies. Where Cloudflare processes data in a State that Annex 1 does not list, the transfer relies on the standard contractual clauses in Cloudflare’s data processing addendum.

6. How long we keep it

Messages, and the correspondence that follows them: 24 months from the last exchange, after which they are deleted. Server logs: at most 30 days. The code that counts messages: kept for 15 minutes, and deleted the next time a message is sent after that. Where the law requires a longer period, that period applies.

7. Security

Transport to and from this site is encrypted, and access to the data is limited to the people who need it. Every provider named in Section 4 is bound by contract to keep the data secure. No transmission over the internet is completely secure.

8. Cookies

The site itself sets no cookies and stores nothing in your browser. Cloudflare may set strictly necessary security cookies, such as __cf_bm, which expires after 30 minutes of inactivity, and cf_clearance, which records that your browser has passed a security check. They serve to tell people from automated traffic and are not used to follow you from site to site. You can block them in your browser settings, in which case a security check may not complete.

9. Your rights

Under the Federal Act on Data Protection, you may ask for a copy of the personal data we hold about you, receive the data you gave us in a common electronic format, have it corrected where it is wrong, have it deleted, and object to a particular use of it, within the limits the Act sets. Write to info@natusgroup.ch or to the postal address in Section 1. We respond within 30 days, as a rule.

You may also raise the matter with the Federal Data Protection and Information Commissioner in Bern.

10. Changes

We update this policy when the site or the providers behind it change. The date at the top is the date of the current version.

Natus AG

Natus AG, Zählerweg 6, 6300 Zug, Switzerland

info@natusgroup.ch

Impressum · Privacy policy

Nothing on this site is an offer or a solicitation to invest. Nothing on it is investment advice.