GDPR
How Helix meets its obligations under the EU General Data Protection Regulation.
Last updated: 27 August 2026
Overview
This GDPR statement explains, in plain terms, how Helix ("we", "us") handles the matter below for visitors to this marketing site and for customers of the Helix product.
This site itself has no login, no checkout and no tracking beyond what is strictly needed to serve the page. Product terms are agreed separately in your order form.
Roles
For product data, your organisation is the controller and Helix is the processor. For this marketing site and our own business records, Helix is the controller.
Lawful basis
Contract performance for providing the service, legitimate interest for security and service improvement, legal obligation for tax and accounting, and consent for optional marketing email.
Data location and transfers
Personal data is processed within the EU. Where a sub-processor requires a transfer outside the EEA, it is covered by Standard Contractual Clauses.
Exercising your rights
Send requests to our privacy address. We respond within one month and will not charge a fee for a reasonable request.
Contact
Questions about this GDPR statement? Email us and we will respond within five working days.
Contact: privacy@helix.example