Legal
Privacy Policy
Last updated 15 June 2026
This Privacy Policy explains how Amtecco BV, a company incorporated in Belgium with registered office at Uitbreidingstraat 60, 2600 Antwerp, Belgium, registered under enterprise number 0748.398.550 (VAT BE0748398550) (“Amtecco”, “we”, “us”), collects, uses and protects personal data in connection with SRT Cloud (the “Service”), a product of Amtecco. We are committed to handling personal data in accordance with the EU General Data Protection Regulation (GDPR) and applicable Belgian law.
1. Our roles (controller vs processor)
- We are the controller for personal data we process about our customers and website visitors to run our business — account, billing, support, security and (with consent) analytics data.
- We are a processor for any personal data that may be contained in the live Content you transmit through the Service. For that Content you are the controller. The Service is a real-time relay and does not record or store the audio-visual payload of your streams; it transmits it to your designated destinations and does not retain it.
2. Personal data we collect
- Account data: name, email address, company name and your role, and authentication data (passkey/WebAuthn public-key credentials and one-time login codes). We do not store passwords in plain text.
- Billing & business data: legal entity name, billing address, VAT identification number, subscription and invoice records, and payment-method metadata (such as card brand and last four digits). Card details are processed directly by our PCI-DSS-compliant payment provider; we do not store full card numbers.
- Usage & technical data: IP address, device and browser information, log data, and operational stream metadata such as connection status, bitrate and transfer statistics. This metadata describes the transmission, not its content.
- Cookies & analytics data: only where you consent — see “Cookies & analytics” below.
- Communications: messages you send us for support or enquiries.
3. Why we process data & our legal bases
- To provide the Service — create and manage your account, deliver Outputs, provide support (legal basis: performance of a contract).
- To bill and collect payment and keep accounting records (legal basis: contract and compliance with a legal obligation).
- To secure and improve the Service, prevent fraud and abuse, and maintain reliability (legal basis: our legitimate interests).
- To communicate service messages and respond to enquiries (legal basis: contract and legitimate interests).
- Analytics and any marketing cookies (legal basis: your consent, which you may withdraw at any time).
- To comply with law and to establish, exercise or defend legal claims (legal basis: legal obligation and legitimate interests).
4. Cookies & analytics
We keep tracking off by default. No analytics or advertising cookies are set until you opt in through our consent banner. With your consent we use a third-party web-analytics service to understand how our website is used. The specific service, its purposes and the cookies it sets are identified in the consent banner, where you can review your options. Your choice is stored in a single functional cookie, and you can change or withdraw it at any time via “Cookie settings” in the footer. We operate a consent mechanism so that, absent your consent, these services remain disabled.
5. Sharing & recipients
We do not sell personal data, and we keep our supplier relationships confidential. We share personal data only with carefully selected service providers who process it on our behalf under written contracts that require appropriate security and confidentiality and restrict use to our instructions. These providers fall into the following categories of recipients:
- payment processing and tax-compliance providers;
- cloud hosting and infrastructure providers;
- communication and email-delivery providers;
- security and fraud/abuse-prevention providers; and
- web-analytics providers (only with your consent).
A current list of the specific sub-processors we use is available to customers on request. We may also disclose personal data where required by law, to protect our rights, or in connection with a corporate transaction (such as a merger or acquisition), subject to appropriate confidentiality.
6. International transfers
We aim to host and process personal data within the European Union. Where a provider processes data outside the European Economic Area, we rely on an adequacy decision or appropriate safeguards such as the European Commission’s Standard Contractual Clauses.
7. Retention
- Account data is retained while your account is active and for a reasonable period afterwards.
- Invoices and accounting records are retained for the period required by Belgian law (generally up to ten years).
- Operational logs and stream metadata are retained for a limited period for monitoring and troubleshooting and then deleted or aggregated (stream performance metrics are retained for a short rolling window).
- Stream Content is not retained — it is relayed in real time and not stored.
8. Your rights
Subject to applicable law, you have the right to:
- access the personal data we hold about you;
- rectify inaccurate or incomplete data;
- erase data (“right to be forgotten”) in certain circumstances;
- restrict or object to processing, including processing based on legitimate interests;
- data portability;
- withdraw consent at any time, without affecting processing carried out before withdrawal; and
- lodge a complaint with a supervisory authority.
To exercise these rights, contact us at privacy@amtecco.com. You may also lodge a complaint with the Belgian Data Protection Authority (Gegevensbeschermingsautoriteit / Autorité de protection des données), www.dataprotectionauthority.be.
9. Security
We implement appropriate technical and organisational measures to protect personal data, including encryption of data in transit, access controls, and modern phishing-resistant authentication (passkeys). No method of transmission or storage is completely secure, but we work to protect your data and to address incidents promptly, including notifying you and the competent authority where required by law.
To protect our forms (such as newsletter signup and sign-in) from automated abuse, we use Cloudflare Turnstile, which may process your IP address and browser characteristics to tell humans from bots. This is necessary for the security of our service. Cloudflare's processing for this purpose is governed by Cloudflare's Privacy Policy and the Cloudflare Turnstile Privacy Addendum.
10. Children
The Service is intended for business use and is not directed to children. We do not knowingly collect personal data from children.
11. Changes to this policy
We may update this Privacy Policy from time to time. We will post the updated version here and update the “Last updated” date, and where changes are material we will provide additional notice.
12. Contact
For any privacy question or request, contact us at privacy@amtecco.com, or write to Amtecco, Uitbreidingstraat 60, 2600 Antwerp, Belgium.
This Privacy Policy is provided for transparency and does not constitute legal advice.