Amsterdam CFO respects your privacy. We are committed to protecting your personal data and being transparent about how we handle it. This policy outlines how we look after your personal data when you visit our website or engage our services, and tells you about your privacy rights under the General Data Protection Regulation (GDPR).
Amsterdam CFO is the "Data Controller" responsible for your personal data.
Contact Details:
Email: info@amsterdamcfo.nl
Location: Amsterdam, The Netherlands
If you have concerns about how we handle your data, you have the right to make a complaint to the Dutch Data Protection Authority (Autoriteit Persoonsgegevens). We would, however, appreciate the chance to deal with your concerns directly first.
We collect various types of information to provide our financial and strategic services effectively:
Identity Data: First name, last name, job title.
Contact Data: Billing address, business address, email address, and telephone numbers.
Financial & Transaction Data: Bank account details and details of payments for services you have purchased from us.
Technical Data: IP address, browser type, and operating system (collected automatically via our website).
Usage Data: Information about how you use our website.
We do not collect "Special Categories" of personal data (race, religion, health data, etc.) nor data regarding criminal convictions.
We use the following methods to collect data:
Direct Interactions: You give us your data by filling in forms, emailing us, handing over business cards, or signing a contract for CFO services.
Automated Technologies: As you interact with our website, we may use cookies or server logs to collect Technical Data.
Third Parties/Public Sources: We may obtain data from publicly available sources such as the Dutch Chamber of Commerce (Kamer van Koophandel), LinkedIn, or your company website.
We will only use your personal data when the law allows us to. Most commonly, we use it in the following circumstances:
Performance of Contract: To deliver the CFO services, strategy, and financial reporting you have hired us for.
Legitimate Interest: To manage our business relationship, recover debts, or study how clients use our services to improve them.
Legal Obligation: To comply with tax laws and regulatory requirements (e.g., Belastingdienst).
Marketing: We may use your data to send you relevant insights or updates. You can opt-out of these communications at any time by contacting us.
We are a specialized firm, not a data broker. We do not sell your data. We may share your data with trusted third parties solely for the purpose of running our business:
Service Providers: IT and system administration services (e.g., Microsoft 365, cloud accounting software).
Professional Advisers: Lawyers, bankers, auditors, and insurers.
Regulatory Authorities: The Belastingdienst or other authorities who require reporting of processing activities in certain circumstances.
We operate in the Netherlands. However, some of our external third-party service providers (e.g., cloud software) may be based outside the European Economic Area (EEA). Whenever we transfer your personal data out of the EEA, we ensure it is protected by ensuring that at least one of the following safeguards is implemented:
The country is deemed to have "adequate" data protection by the European Commission.
We use specific contracts (Standard Contractual Clauses) approved by the European Commission which give personal data the same protection it has in Europe.
We have put in place appropriate security measures to prevent your personal data from being accidentally lost, used, or accessed in an unauthorized way. Access to your personal data is limited to those who have a business need to know, and they are subject to a duty of confidentiality.
We will only retain your personal data for as long as necessary to fulfill the purposes we collected it for.
Legal Requirement: By Dutch law, we must keep basic information about our customers (including Contact, Identity, Financial, and Transaction Data) for 7 years after they cease being customers for tax purposes.
Under GDPR, you have rights regarding your personal data:
Request access: Get a copy of the data we hold about you.
Request correction: Fix incomplete or inaccurate data.
Request erasure: Ask us to delete data (where there is no good reason for us continuing to process it).
Object to processing: If you feel our processing impacts your fundamental rights.
Request restriction: Ask us to suspend processing your data.
Request transfer: Transfer your data to you or a third party.
To exercise any of these rights, please email us at info@amsterdamcfo.nl. We try to respond to all legitimate requests within one month.