Privacy policy

This website sets no cookies, has no forms and does not measure its visitors. Even so, here is a plain account of what personal data Nolyx AB processes, why we do it and what rights you have.

Data controller

Nolyx AB, company reg. no. 556640-1914
Pårsgatan 3, SE-827 30 Ljusdal, Sweden
nolyx@nolyx.se
+46 651 133 61

We are not required to appoint a data protection officer. Questions about this policy, or about personal data we process, are answered at the address above.

Cookies and tracking

This website uses no cookies. There is no visitor analytics, there are no tracking pixels and no scripts from other companies. The fonts are served from our own server and the map on the contact page is an ordinary image. Reading these pages therefore fetches nothing at all from any other website.

That is also why we never ask you to consent to cookies — there is nothing to consent to.

The map image is rendered from OpenStreetMap map data. If you click it, or any other link pointing away from nolyx.se, you leave this website, and the site you arrive at can see that you did.

Web server logs

Our web host keeps operational logs of the requests made to the server. Such a log normally holds the IP address, the time, which page was requested and which browser was used. The data is used only to keep the website running and to detect faults and attacks — never to follow individual visitors.

The legal basis is our legitimate interest in a working and secure website (Article 6(1)(f) GDPR). The logs are rotated and deleted continuously by the web host, and are kept only for as long as they are needed for operation and security.

When you contact us

The website has no forms. You reach us by telephone or e-mail, and we then process the details you choose to give us: normally your name, e-mail address or telephone number, and the content of your enquiry.

We use the data solely to answer and handle the matter. The legal basis is our legitimate interest in being able to reply to those who contact us (Article 6(1)(f)), or — where the matter concerns a contract with you — performance of that contract or steps taken prior to it (Article 6(1)(b)). Correspondence is kept for as long as the matter and our ongoing business relationship require.

Job applications

If you apply for a job with us, you send your application by e-mail. We then process the details in your application and CV in order to assess whether we can offer you employment. The legal basis is steps taken prior to a possible employment contract and our legitimate interest in recruiting (Article 6(1)(b) and (f)).

Applications for an advertised position are kept for two years after the recruitment closes. The reason is that someone who believes they were discriminated against during a recruitment may bring a claim within that time, and we then need to be able to show how the selection was made. Unsolicited applications are kept for twelve months. After that the application and your CV are deleted.

If you want your application removed sooner, simply tell us.

Please do not include sensitive data in your application — such as health, trade union membership or religious belief. We do not need it.

Information about our staff

On the contact page we publish the name, photograph, direct number and e-mail address of our automation engineers, so that you can reach the right person directly instead of going through the switchboard. The legal basis is our legitimate interest in being reachable for customers and partners (Article 6(1)(f)).

The details are work-related and limited to that. Any member of staff who does not wish to appear on the page will have their details removed.

Who receives the data

We do not sell personal data and do not pass it on for other parties' purposes. To run the website and our e-mail we use Oderland as our web host and Microsoft 365 for e-mail. They process data on our behalf and on our instructions. Data may also have to be disclosed where the law requires it.

Transfers outside the EU/EEA

Visiting this website involves no transfer of personal data to countries outside the EU/EEA. The site is hosted by Oderland in Sweden and fetches nothing from any other website.

Our e-mail, however, runs on Microsoft 365. Microsoft stores customer data primarily within the EU, but the group is American and transfers to the United States can occur, for instance during support. Microsoft is covered by the European Commission's adequacy decision for the EU-US Data Privacy Framework, and also applies the EU standard contractual clauses. What you send us by e-mail is therefore covered by that transfer.

Links to other websites

We link to Facebook, iqproducts.info, loginor.se and sortiqdemo.app, among others. Content from those sites is never loaded into our pages, but if you follow a link, that site's own terms and privacy policy apply, not ours.

Your rights

You have the right to

  • know what data we process about you and receive a copy of it,
  • have inaccurate data corrected,
  • have data erased,
  • request that processing be restricted,
  • object to processing we base on legitimate interest,
  • receive data you provided in a machine-readable format.

Write to nolyx@nolyx.se and we will help you. We reply as soon as we can, and within one month at the latest — that is the deadline the GDPR sets for requests of this kind.

If you are unhappy with how we handle your personal data, you have the right to lodge a complaint with the Swedish Authority for Privacy Protection (IMY), Box 8114, SE-104 20 Stockholm, imy@imy.se, +46 8 657 61 00.

Changes to this policy

If we change how we process personal data, we update this page. The date below shows when it was last changed.

Last updated 7 September 2026.