Skip to main content

Privacy Policy

Effective date: August 2026

1. Who we are and when this policy applies

JEMEL SIA

Vienības gatve 87-3, Riga, LV-1004, Latvia

info@jemel.lv

JEMEL SIA, Vienības gatve 87-3, Riga, LV-1004, Latvia, is the controller for the personal data described in this policy. You can contact us at info@jemel.lv.

This policy mainly describes processing for which JEMEL decides why and how personal data is used.

Where JEMEL processes customer data on behalf of a customer when providing a service or JEMEL product, the customer normally remains the controller and JEMEL acts as processor or sub-processor. Such processing is governed by the applicable agreement and Data Processing Addendum. The JEMEL App Standard Contract already contains a GDPR Data Processing Addendum for JEMEL products.

2. What data we process and why

Enquiries and business relationships. When you contact us or work with JEMEL, we may process your name, company, professional contact details, correspondence and information needed to provide, support and administer the agreed services. We process this data to take steps toward or perform a contract, comply with legal obligations and manage our business relationship.

Business contacts. We may use professional contact information from legitimate public business sources, company websites, professional directories or referrals to contact you about JEMEL services or products relevant to your professional role. We rely on our legitimate interest in B2B business development. If we obtained your information from another source, our first contact provides access to this policy and a simple way to object to further communication. You may object to direct marketing at any time. GDPR requires transparency when data is obtained from another source and provides a specific right to object to direct marketing.

Unsolicited applications. JEMEL is not currently recruiting. If you send us an unsolicited CV or employment application, we use it only to respond unless you explicitly ask us to retain it for longer.

Legal and accounting information. We process invoices, transaction records and other information where required by law.

3. Website and JEMEL products

Website. We use aggregate website analytics to understand how the website is used and improve it. We do not use analytics data for behavioural advertising or profiling. Information submitted through website forms may be processed by a third-party form-processing provider so that JEMEL can receive and respond to your message.

Product telemetry. JEMEL products use Business Central extension telemetry to monitor application health, usage, performance and errors and to support troubleshooting and maintenance. JEMEL acts as controller for this telemetry and processes it on the basis of its legitimate interest in operating, securing, maintaining and improving its products.

Telemetry may include technical information such as tenant and environment identifiers, app and Business Central versions, feature usage, performance information and error diagnostics. It is intended to contain technical and diagnostic information rather than customer business content. JEMEL does not intentionally collect payroll records, bank transactions, document contents or other customer business records through product telemetry.

Direct integrations. Some JEMEL products connect directly from the customer's Business Central environment to a service selected or configured by the customer. In such cases, JEMEL does not receive or control the data exchanged directly between the customer and that service. The customer and the third-party provider are responsible for their respective processing.

JEMEL-hosted services. Some product functions may send information through infrastructure operated for JEMEL. Where customer content is processed only to provide the requested function, the customer normally remains the controller and JEMEL acts as processor or sub-processor under the applicable agreement and DPA.

AI-enabled features. Some products may include optional AI features. When a user chooses to use such a feature, information needed for the request is sent to an AI service used by JEMEL to generate the requested result. JEMEL does not use customer content to train AI models. Processing performed by the infrastructure or AI provider is subject to that provider's contractual data-protection and security obligations.

Customers should not submit personal, sensitive or confidential information to JEMEL-hosted or AI-enabled features unless it is necessary for the requested function.

4. Service providers and international transfers

JEMEL may use third-party providers for hosting, cloud infrastructure, communications, website forms, telemetry, AI functions and other technical services. We may also disclose data to professional advisers or public authorities where necessary or required by law.

We do not sell personal data.

Where JEMEL processes customer data as processor or sub-processor, subprocessors and related obligations are governed by the applicable DPA. For JEMEL products, these terms are contained in the JEMEL App Standard Contract.

Some service providers may process data outside the EEA. Where required, JEMEL relies on an applicable adequacy decision, Standard Contractual Clauses or another lawful transfer mechanism. GDPR expressly provides these mechanisms for international transfers.

5. How long we keep data

We keep personal data only for as long as it remains necessary for the relevant purpose or is required by law.

  • Enquiries and B2B contacts that do not lead to a business relationship: 6 months after the last meaningful contact.
  • Unsolicited CVs or employment applications: 30 days after our response, unless you ask us to retain them longer.
  • Product telemetry: normally 90 days.
  • Accounting records: for the statutory period, generally at least 5 years, with certain accounting and payroll-related records retained for 10 years. Latvian Accounting Law sets these minimum periods for the relevant document categories.

Other customer, contractual and support information is retained only while it remains necessary for the relevant relationship, service or legal purpose. Support tickets and technical history may be retained while they remain relevant to the supported system.

6. Your rights, security and changes

Subject to the GDPR, you may have the right to access, correct or delete your personal data, restrict or object to processing, and receive your data in a portable format where applicable.

To exercise your rights or ask a privacy question, contact info@jemel.lv.

You may also lodge a complaint with the Datu valsts inspekcija, Elijas iela 17, Riga, LV-1050, Latvia. The authority currently publishes this address as its official contact location.

JEMEL uses appropriate technical and organisational measures to protect personal data. Third-party infrastructure and service providers are responsible for the security controls within their own services under their applicable contractual commitments.

We may update this policy when our processing practices or legal requirements change. The effective date above identifies the current version.

This policy is available in English and Latvian. If the two versions differ in interpretation, the Latvian version prevails.

Questions About This Privacy Policy?

If you have any questions about how we handle your personal data, please contact us:

Email: info@jemel.lv

Address: JEMEL SIA, Vienības gatve 87-3, Riga, LV-1004, Latvia