Privacy
Privacy Policy
Dendrite Corp. (“Dendrite Corp”, “we”, “us”) operates repraesent.com, a product by dendritecorp.com. We respect your privacy. We are committed to protecting the personal data you share with us. This notice explains what information we collect, why we collect it, how long we keep it and the rights you have under the EU General Data Protection Regulation (GDPR) and equivalent privacy laws in the markets we serve — Europe, Canada, and Australia.
Last updated August 21st, 2026
Controller (Art. 4 (7) GDPR)
Dendrite Corp.
1521 Concord Pike
Suite 301
Wilmington, DE 19803, USA
EIN 30-0793009
Data protection contact
Email privacy@dendritecorp.com with any questions or to exercise your rights.
Data we process, purposes & legal bases
Enquiry data
Examples: Name, email, message (Contact Us form or direct mail).
Purpose: Respond to pre-contract questions.
Legal basis: Art 6 (1)(b) – Contract initiation.
Retention: 24 months after last contact.
Server logs
Examples: IP address*, user-agent, timestamp, URL.
Purpose: Detect abuse & ensure security.
Legal basis: Art 6 (1)(f) – Legitimate interest.
Retention: 30 days.
Analytics metrics (Plausible)
Examples: Page URL, referrer, browser, device, country code. No cookies, no IP storage.
Purpose: Understand aggregated traffic & improve content.
Legal basis: Art 6 (1)(f) – Legitimate interest.
Retention: 24 months.
Support records
Examples: E-mail threads, call notes.
Purpose: Provide technical assistance & fulfil contract.
Legal basis: Art 6 (1)(b).
Retention: 3 years (statute of limitation).
Google Workspace (optional)
Examples: Emails, calendar data, documents (Docs), and contacts from your connected Google Workspace account.
Purpose: Optional connection of your Google Workspace account so re:praesent can process emails, calendars, Docs, and contacts as part of the service. The connection is only established if you enable this optional service.
Legal basis: Art 6 (1)(b) – Contract performance (when you activate the optional service).
Retention: For the duration of the connection; after disconnect or termination according to the agreed retention periods.
Payment data (Stripe)
Examples: Billing details, card or payment method data, transaction amounts and status. Card numbers are handled directly by Stripe and never stored on our servers.
Purpose: Process subscription and service payments securely.
Legal basis: Art 6 (1)(b) – Contract performance; Art 6 (1)(c) – Legal obligation (tax and accounting records).
Retention: For the duration of the contract and statutory retention periods (up to 10 years for accounting records).
*IP addresses are stored only in transient server logs and are never linked to analytics. Plausible Analytics is cookieless and stores no personal identifiers, so no consent banner is required under the ePrivacy Directive.
Recipients & processing location
- Web traffic and enquiry data are processed on servers in Europe, Canada, or Australia, matching the customer’s market where applicable.
- Email support may be handled by Dendrite Corp. staff in Germany and the United States.
- If you use the optional Google Workspace connection, emails, calendars, Docs, and contacts are processed via Google (Google Ireland Limited / Google LLC). The connection is voluntary and only active when you enable it.
- Payments are processed by Stripe (Stripe, Inc. and Stripe Payments Europe, Ltd.), which stores payment data on its secure servers in the United States, outside the European Union. See the dedicated section below.
- We do not sell, rent or disclose personal data to third parties for marketing.
Payment processing (Stripe)
We use Stripe as our payment processor to handle subscription and service payments. When you make a payment, your billing and payment method details are collected and processed by Stripe (Stripe, Inc., 354 Oyster Point Boulevard, South San Francisco, CA 94080, USA, together with Stripe Payments Europe, Ltd.). Stripe stores this information outside the European Union, on its secure servers in the United States.
Stripe is certified to PCI Service Provider Level 1, the most stringent certification available in the payments industry, and encrypts sensitive data both in transit (TLS) and at rest (AES-256). Card numbers are tokenised and handled directly by Stripe; we never receive or store full card details on our own servers.
Because this involves a transfer of personal data to the United States, the transfer is protected by the European Commission’s Standard Contractual Clauses (SCCs) (Art 46 GDPR) and Stripe’s certification under the EU-U.S. Data Privacy Framework. You can learn more about how Stripe protects your data at docs.stripe.com/security.
International transfers
Where support e-mails are accessed by U.S. staff, transfers are protected by the European Commission’s Standard Contractual Clauses (SCCs) (Art 46 GDPR). A copy is available on request.
Your rights
Under Art 15-22 GDPR you may request access, rectification, erasure, restriction, objection, data portability or lodge a complaint with your supervisory authority. Contact us at privacy@dendritecorp.com to exercise any right. We will respond within one month.
Data security
We protect data with TLS encryption in transit, role-based access, weekly software patching, daily backups and 60-second uptime monitoring. No FTP or cPanel interfaces are exposed to the public internet.
Automated decision-making
We do not use automated decision-making or profiling as described in Art 22 GDPR.
Changes to this notice
We update this policy when our services or laws change. Any material changes will be announced on this page and, where feasible, by e-mail 30 days before they take effect.
Questions? Email privacy@dendritecorp.com