Last updated: August 11, 2026
Eulitha AG (“we”, “us”, “our”) is a Swiss company. We take the protection of your personal data seriously. This Privacy Policy explains what personal data we collect when you visit our website www.eulitha.com (the “Website”), why we collect it, and what rights you have.
We process personal data in accordance with the Swiss Federal Act on Data Protection (FADP) and, where applicable to visitors from the European Economic Area (EEA) or the United Kingdom, the EU General Data Protection Regulation (GDPR) and UK GDPR.
Our Website can generally be used without actively providing any personal data. Personal data is processed only as described in this policy. Our Website is hosted in Switzerland.
The controller responsible for data processing on this Website is:
Eulitha AG Grosszelgstrasse 21 5436 Würenlos Switzerland Email: info@eulitha.com Tel: +41 56 281 21 52
Our Website is hosted by Hostpoint AG, a Swiss hosting provider with data centers in Switzerland. When you visit the Website, the web server automatically records technical information: your IP address, date and time of access, pages visited, browser type and version, operating system, and the referring website.
We use this data to operate the Website securely, to detect and prevent misuse, and to troubleshoot technical problems. We do not use server logs to identify individual visitors. The legal basis is our legitimate interest in operating a secure and functional website (Art. 6(1)(f) GDPR). Server logs are retained for 90 days, unless a specific security incident requires longer retention.
When you use the contact form on our Website, we collect the data you enter: first name, last name, email address, subject, and your message.
We use this data solely to process and respond to your inquiry and for any subsequent business communication. Submissions are stored on our web server and forwarded to us by email. The legal basis is the performance of pre-contractual measures taken at your request and our legitimate interest in responding to inquiries (Art. 6(1)(b) and (f) GDPR).
Submissions identified as spam or abusive are deleted after 30 days. Legitimate submissions are deleted from our web server no later than 12 months after receipt. The resulting email correspondence is retained as long as necessary to handle your inquiry and any resulting business relationship, within the statutory retention periods applicable to business correspondence.
If you contact us directly by email or telephone, we process the contact details and content you provide in order to handle your request. The same purposes, legal bases, and retention principles as in Section 2.2 apply.
We keep the use of third-party services on our Website to a minimum. We use the following services:
We use Cloudflare Turnstile, a service of Cloudflare, Inc. (USA), to protect our contact form against spam and automated abuse. Turnstile processes technical information about your browser and device, including your IP address, to distinguish humans from bots. It does not require you to solve puzzles and does not track you across websites.
The legal basis is our legitimate interest in protecting our Website against abuse (Art. 6(1)(f) GDPR). Cloudflare is certified under the EU-U.S. Data Privacy Framework, including the Swiss-U.S. extension. Cloudflare’s privacy policy: https://www.cloudflare.com/turnstile-privacy-policy/
Our Website uses fonts provided by Adobe Fonts, a service of Adobe Inc. (USA). To display the fonts, your browser connects to Adobe’s servers when the page loads, which transmits your IP address to Adobe. Adobe states that it does not place cookies for the delivery of fonts.
The legal basis is our legitimate interest in a consistent and appealing presentation of our Website (Art. 6(1)(f) GDPR). Adobe is certified under the EU-U.S. Data Privacy Framework, including the Swiss-U.S. extension. Adobe’s privacy policy: https://www.adobe.com/privacy/policy.html
We use only technically necessary cookies and similar technologies (such as browser local storage) that are required for the Website to function — for example, for the spam protection described in Section 3.1.
We do not use analytics, advertising, or tracking cookies, and we do not create visitor profiles. Because we use only strictly necessary technologies, no cookie consent banner is required. You can configure your browser to block or delete cookies at any time; this may limit individual functions of the Website.
We do not sell your personal data. We share personal data only in the following cases:
Service providers. The providers named in this policy (Hostpoint, Cloudflare, Adobe, Elementor) process data on our behalf or as independent controllers, as described above. In addition, we use Microsoft 365 (Microsoft Corporation) for our email and internal collaboration; inquiries you send us are therefore processed in our Microsoft 365 environment.
Group companies. Eulitha AG has subsidiaries: Eulitha US, Inc. (Redmond, WA, USA) and Eulitha Beijing Co., Ltd (Beijing, China). If your inquiry concerns products, services, or support in one of these regions, we may forward your inquiry, including your contact details, to the responsible colleagues at the relevant subsidiary so they can assist you. We do this only where it is necessary to handle your request.
Legal obligations. We may disclose personal data where required by law, or where necessary to establish, exercise, or defend legal claims, or to protect the rights, property, or safety of Eulitha, our users, or the public.
Our Website and your contact form data are hosted in Switzerland. Some of the recipients described in this policy are located abroad:
USA. Cloudflare, Adobe, and Microsoft are certified under the EU-U.S. Data Privacy Framework and its Swiss-U.S. extension, which the Swiss Federal Council and the European Commission recognize as providing adequate protection. Transfers to Eulitha US, Inc. take place only as described in Section 5, where necessary to handle your inquiry.
China. Transfers to Eulitha Beijing Co., Ltd take place only as described in Section 5, where necessary to handle your inquiry relating to that region. Where required, we rely on appropriate safeguards, in particular the necessity of the transfer for the performance of measures you have requested.
We keep personal data only as long as necessary for the purposes described in this policy: server logs up to 90 days (Section 2.1), and contact form submissions on our web server up to 12 months (spam: 30 days) with related email correspondence kept as long as needed for the inquiry and any resulting business relationship (Sections 2.2 and 2.3). We retain data longer only where a statutory retention obligation applies (for example, for business correspondence under Swiss commercial law) or where data is needed to establish, exercise, or defend legal claims. Residual copies may remain in encrypted backups for a limited period before being overwritten in the ordinary backup cycle.
We use appropriate technical and organizational measures to protect your personal data, including encrypted transmission (TLS/HTTPS) and access restrictions. However, no method of transmission or storage over the Internet is completely secure, and we cannot guarantee absolute security.
Subject to the conditions of the applicable data protection law, you have the right to:
To exercise these rights, contact us at info@eulitha.com. We may ask you to verify your identity before acting on a request.
You also have the right to lodge a complaint with a supervisory authority: in Switzerland, the Federal Data Protection and Information Commissioner (FDPIC, www.edoeb.admin.ch); in the EEA or the UK, the data protection authority of your place of residence.
Our Website is directed at business customers and professionals. We do not knowingly collect personal data from anyone under the age of 16. If you believe a minor has provided us with personal data, please contact us and we will delete it.
Our Website contains links to external websites, including our profiles and job postings on LinkedIn and our YouTube channel. Job applications are submitted and processed via LinkedIn or by email, not through this Website. We are not responsible for the content or privacy practices of these third-party sites. When you follow such a link, the privacy policy of the respective operator applies.
We may update this Privacy Policy from time to time, for example when we change our Website or when legal requirements change. The current version is always published on this page with the “Last updated” date at the top.
If you have any questions about this Privacy Policy or the processing of your personal data, contact us: