Limons
About Services Resources Get in Touch

Open Source

Check out our GitHub profile to explore our development tools, frameworks and open source contributions.

View on Github
Get in Touch

Privacy Policy

Limons is dedicated to protecting personal data and upholding individual privacy in strict alignment with the European Union General Data Protection Regulation (Regulation (EU) 2016/679) and ePrivacy directives.

Effective Date: October 2026 · Jurisdiction: European Union (EEA) · Regulatory Standard: GDPR (EU 2016/679) · Data Inquiries: privacy@limons.com
Contents
1. Data Controller 2. Scope & Legal Principles 3. Categories of Data Collected 4. Legal Bases for Processing 5. Role as Data Processor 6. Your Rights Under GDPR 7. International Data Transfers 8. Technical & Security Measures 9. Data Retention Policy 10. Cookies & Telemetry 11. Supervisory Authority 12. Data Protection Contact
01

Data Controller Information

In accordance with Article 4(7) of the General Data Protection Regulation (Regulation (EU) 2016/679), the Data Controller responsible for processing personal data through this website and our digital channels is:

Limons Technology
European Operations & Engineering Headquarters
Direct Privacy Contact: privacy@limons.com
General Legal Queries: legal@limons.com

When you visit our website, explore technical documentation, or contact us regarding custom mobile engineering, Limons determines the purposes and essential means of processing your personal information.

02

Scope and Core Legal Principles

This policy governs all personal data collected through our public website, contact interfaces, resource downloads, and commercial consultation inquiries originating from individuals within the European Union (EU), the European Economic Area (EEA), and globally.

We process personal data strictly adhering to the core principles established in Article 5 of the GDPR:

  • Lawfulness, Fairness, and Transparency: Personal data is processed on legitimate statutory grounds with clear information provided to data subjects.
  • Purpose Limitation: Data is collected only for specified, explicit, and legitimate commercial and technical purposes.
  • Data Minimisation: Processing is adequate, relevant, and limited strictly to what is necessary in relation to the stated purposes.
  • Accuracy: Reasonable steps are taken to ensure personal information remains accurate and kept up to date.
  • Storage Limitation: Personal data is stored in identifiable form only for the duration required to achieve its processing purposes.
  • Integrity and Confidentiality: Appropriate technical and organizational measures are enforced to safeguard data against unauthorized access, loss, or destruction.
03

Categories of Personal Data Collected

Depending on how you interact with our website and engineering services, we collect and process the following categories of personal data:

  • Professional Identity and Contact Details: Full name, corporate email address, business telephone number, company affiliation, job title, and country of operation provided via contact forms or project intake questionnaires.
  • Project and Technical Specifications: Architecture requirements, target mobile platforms (iOS, Android, Connected TV), project timelines, and commercial parameters submitted during advisory requests.
  • Technical Telemetry and Log Data: Internet Protocol (IP) address, browser software version, operating system environment, referer headers, access timestamps, and HTTP request headers captured automatically for infrastructure security and load balancing.
  • Correspondence History: Communications, inquiries, and meeting records exchanged with our engineering and commercial teams.
Special Category Data: Limons does not collect, process, or solicit sensitive personal data (such as health, genetic, biometric, religious, or political information) as defined under Article 9 of the GDPR.
04

Lawful Bases for Processing (Article 6 GDPR)

Every processing operation conducted by Limons is grounded in a specific lawful basis recognized under European Union law:

  • Performance of a Contract or Pre-contractual Measures (Art. 6(1)(b) GDPR): Processing contact details and technical specifications to evaluate project viability, deliver requested estimates, and negotiate commercial agreements.
  • Legitimate Interests (Art. 6(1)(f) GDPR): Protecting web infrastructure against cyber threats, managing system capacity, responding to enterprise inquiries, and communicating technical product updates to corporate contacts.
  • Legal Obligation (Art. 6(1)(c) GDPR): Satisfying statutory fiscal, accounting, and regulatory record-keeping obligations enforced within EU member state jurisdictions.
  • Explicit Consent (Art. 6(1)(a) GDPR): Processing non-essential analytical cookies or voluntary subscriptions, which may be withdrawn at any time without penalty.
05

Role as Data Processor for Enterprise Clients

Where Limons provides enterprise mobile architectures, synchronized second-screen platforms, or cloud infrastructure SDKs to corporate clients, our clients act as the Data Controllers for end-user data processed by their applications.

In such engagements, Limons acts strictly as a Data Processor pursuant to Article 28 of the GDPR. All such processing is governed by an executed Data Processing Addendum (DPA) that stipulates:

  • Processing is executed strictly according to documented client instructions.
  • Personnel with access to data are bound by strict statutory confidentiality obligations.
  • Mandatory technical and organizational measures (TOMs) are implemented to protect all processed data.
  • Sub-processors are engaged only with prior authorization and under equivalent contractual safeguards.
  • Limons assists clients in fulfilling their statutory obligations toward data subjects.
06

Your Rights Under the General Data Protection Regulation

Under Articles 15 through 22 of the GDPR, European Union residents and individuals whose data is processed by Limons possess comprehensive rights:

  • Right of Access (Article 15): You have the right to obtain confirmation as to whether your personal data is processed, along with a comprehensive copy of such data.
  • Right to Rectification (Article 16): You have the right to request the prompt correction of inaccurate or incomplete personal records.
  • Right to Erasure / Right to be Forgotten (Article 17): You may request the deletion of your personal data where retention is no longer necessary or lacks statutory justification.
  • Right to Restriction of Processing (Article 18): You may restrict data processing while an accuracy challenge or objection is being assessed.
  • Right to Data Portability (Article 20): You may request your personal data in a structured, commonly used, and machine-readable format.
  • Right to Object (Article 21): You may object at any time to processing predicated on our legitimate interests.
  • Rights Regarding Automated Decisions (Article 22): You have the right not to be subjected to decisions based solely on automated profiling. Limons does not employ automated profiling with legal impact.

To exercise any of these rights, contact our Data Protection Team at privacy@limons.com. We respond to verified requests within one calendar month in accordance with Article 12(3) of the GDPR.

07

International Data Transfers

Limons primarily processes and stores personal data on secure enterprise infrastructure located within the European Economic Area (EEA).

If data is transferred to service providers or technical infrastructure outside the EEA, such transfers are conducted strictly under Chapter V of the GDPR using approved transfer mechanisms:

  • Transfers to jurisdictions recognized by the European Commission as providing an adequate level of data protection (Article 45 GDPR).
  • Implementation of the European Commission Standard Contractual Clauses (SCCs) alongside supplementary organizational and cryptographic safeguards (Article 46 GDPR).
08

Technical and Organizational Security Measures

In accordance with Article 32 of the GDPR, Limons implements robust technical and organizational security controls designed to preserve the confidentiality, integrity, availability, and resilience of processing systems:

  • End-to-End Encryption: Enforced Transport Layer Security (TLS 1.3) protocols across all public web endpoints and AES-256 encryption for data at rest.
  • Access Governance: Role-based access controls (RBAC), multi-factor authentication (MFA), and strict principle-of-least-privilege administration.
  • System Auditing: Automated log aggregation, intrusion monitoring, and continuous vulnerability reviews.
  • Incident Response: Documented security response procedures ensuring prompt containment and notification of relevant authorities within 72 hours where required by Article 33 of the GDPR.
09

Data Retention Periods

We retain personal data only for the duration necessary to satisfy the specific purposes for which it was gathered:

  • General Inquiries: Contact information and project inquiries that do not result in a commercial contract are deleted within 24 months from the last substantive interaction.
  • Commercial Client Records: Client contract files, invoices, and accounting documentation are retained for statutory retention periods mandated by European fiscal and corporate legislation (typically 7 to 10 years).
  • Server Security Logs: Network telemetry and access log entries are systematically flushed within 90 days unless an active security investigation requires extended retention.
10

Cookie and Telemetry Practices

Limons prioritizes privacy by design. Our public web platform operates with minimal dependency on local tracking technologies:

  • Strictly Necessary Elements: Essential session storage tokens required for navigation, security, and responsive UI functionality. These operate without requiring user consent pursuant to Article 5(3) of the ePrivacy Directive.
  • No Third-Party Advertising Trackers: We do not deploy behavioral ad networks, cross-device profiling scripts, or invasive data brokers on this website.
11

Right to Lodge a Complaint with a Supervisory Authority

Pursuant to Article 77 of the GDPR, if you believe that our processing of your personal data infringes European data protection legislation, you have the right to lodge a complaint with an official Data Protection Authority (DPA).

You may lodge this complaint in the EU Member State of your habitual residence, your place of employment, or the place of the alleged infringement. A complete directory of European Union Data Protection Authorities is maintained by the European Data Protection Board (EDPB) at edpb.europa.eu.

12

Data Protection Inquiries and Contact Details

For any questions regarding this Privacy Policy, your rights under the GDPR, or our enterprise data processing standards, our dedicated data protection representatives are available:

Data Protection Office
Limons Technology
Email: privacy@limons.com
Corporate Inquiries: info@limons.com

We periodically update this Privacy Policy to reflect evolving regulatory guidance and architectural improvements. The updated document will be published directly on this URL with an updated revision date.

• Contact Us

Interested in working together, building custom apps, or simply learning more?

Contact Limons at: info@limons.com
About Services Resources Get in Touch
Limons
© 2026 Limons. All rights reserved.
Terms of Service · Privacy Policy
LinkedIn Twitter Facebook GitHub