Legal

Privacy Policy

Effective date: 11 June 2026 · Last updated: 11 June 2026

1. About Us

This Privacy Policy describes how Haze Gruppen AS (Org nr. 934 646 649), trading as Flint, collects, uses, and protects personal data when you use our EPOS, loyalty, payments, and business management software and related services.

We are a data controller under the General Data Protection Regulation (GDPR) and Norwegian personal data legislation (Personopplysningsloven).

Contact us at: hello@flintgo.io

2. Information We Collect

  • Account Data: Business name, contact email, phone number, and company registration details provided during sign-up or onboarding.
  • Usage Data: Information about how you interact with our software, including feature usage, session length, and error logs, to improve our services.
  • Payment Data: Transactional data processed through our platform. Full card details are handled by our PCI-DSS compliant payment partners and are not stored on our systems.
  • Device & Technical Data: IP address, browser type, and device information collected automatically when you visit our website.
  • Communications: Records of any support requests, emails, or messages you send us.

3. How We Use Your Data

  • To provide, maintain, and improve our services.
  • To process payments and manage your account.
  • To send important service notifications and updates.
  • To provide customer support.
  • To comply with legal and regulatory obligations.
  • To send marketing communications where you have given consent (you may opt out at any time).

4. Legal Basis for Processing

We process your personal data on the following legal bases under GDPR:

  • Contract: Processing necessary to deliver the services you have signed up for.
  • Legitimate interests: To improve our services and ensure security.
  • Legal obligation: Where we are required by law to retain data.
  • Consent: For marketing communications.

5. Data Sharing

We do not sell your personal data. We may share data with:

  • Payment processors and acquiring banks for transaction handling.
  • Cloud infrastructure and hosting providers (data processed within the EU/EEA where possible).
  • Analytics and error-monitoring tools to maintain service quality.
  • Regulatory authorities where required by law.

6. Data Retention

We retain your personal data for as long as your account is active or as needed to provide services. After account closure we may retain certain data for up to 5 years to comply with accounting and tax obligations under Norwegian law.

7. Your Rights

Under GDPR you have the right to:

  • Access the personal data we hold about you.
  • Rectify inaccurate data.
  • Erasure ("right to be forgotten") where legally permitted.
  • Restrict processing in certain circumstances.
  • Data portability — receive your data in a structured, machine-readable format.
  • Object to processing based on legitimate interests.
  • Withdraw consent at any time for consent-based processing.

To exercise any of these rights, contact us at hello@flintgo.io. You also have the right to lodge a complaint with the Norwegian Data Protection Authority (Datatilsynet) at datatilsynet.no.

8. Cookies

Our website uses essential cookies to ensure it functions correctly. We may also use analytics cookies to understand how visitors use our site. You can manage cookie preferences through your browser settings.

9. Security

We implement industry-standard technical and organisational security measures to protect your data, including encryption in transit (TLS) and at rest, access controls, and regular security reviews.

10. Changes to This Policy

We may update this Privacy Policy from time to time. We will notify you of material changes by email or via an in-app notice. Continued use of our services after the effective date constitutes acceptance of the updated policy.

Haze Gruppen AS · Org nr. 934 646 649 · hello@flintgo.io