Privacy Policy

Synopsys AB 
(Last Updated: 21 Nov 2025)

At Synopsys AB (Sweden), we highly value the privacy of our customers, business partners, and website visitors. This privacy policy describes how personal data collected on our platform (www.gurme.se) is processed, protected, and used. As a company operating in Scandinavia, we fully comply with the EU General Data Protection Regulation (GDPR) as well as local data protection laws in Sweden.


1. The Data We Collect

When you use our platforms or contact us, we may collect the following personal data:

  • Identity and Contact Information: Customer's first and last name, email address, phone number, delivery address.
  • Purchase and Payment Information: Order history, payment method details (e.g., the last four digits of the credit card), billing information.
  • Usage Data: Your browsing habits on our platforms, IP address, browser type, visit time, and information collected via cookies.
  • Communication Data: Messages, inquiries, or feedback that you send to us.

This data may be provided directly by you (e.g., when you fill out an order form) or collected automatically during your use of our platforms.


2. Purpose of Data Collection

We process your personal data for the following purposes:

  • To process your orders, deliver products, and complete payment transactions.
  • To provide customer service and respond to your inquiries.
  • To improve the functionality and user experience of our platforms.
  • To inform you about tailored promotions, offers, and new products (only with your explicit consent).
  • To fulfill our legal obligations (e.g., tax and accounting requirements).

3. Legal Basis

When we process your data, we rely on the following legal bases according to GDPR and local laws:

  • Contractual Obligation: To process your orders and provide our services.
  • Consent: For marketing and advertising communication (voluntary).
  • Legitimate Interest: To ensure the security of our platforms and improve our services.
  • Legal Obligation: To comply with tax and consumer protection laws.

4. Sharing of Data

We may share your personal data with the following parties:

  • Service Providers: Shipping companies, payment processors, and infrastructure providers like ikas and Fortnox (only when necessary to provide services).
  • Authorities: In case of legal requirements or obligations.
  • Group Companies: Between Synopsys AB and Foodscan APS for operational efficiency.

Your data is only shared in accordance with the purposes stated in this privacy policy and with appropriate safeguards under GDPR Article 46. Since we use the ikas platform, your data is stored and processed in accordance with ikas’s data processing policy and is used only to provide services.


5. Data Retention Period

We store your personal data for as long as necessary to fulfill the purpose of collection:

  • Order and Payment Data: During statutory retention periods (e.g., 7 years in Sweden).
  • Usage Data: For analysis purposes for a maximum of 24 months.
  • Marketing Data: Until you withdraw your consent.

When these periods expire or when the data is no longer necessary, it is deleted or anonymized in a secure manner.


6. Your Rights

Under GDPR and local laws, you have the following rights:

  • Request access to your personal data.
  • Request correction of incorrect or incomplete data.
  • Request deletion of your data ("the right to be forgotten") or restriction of processing.
  • The right to data portability to receive a copy of your data.
  • Object to communication for marketing purposes.
  • Object to automated decision-making processes (if applicable).

To exercise your rights, you can contact us via [email protected] or [email protected].


7. Cookies and Technology Usage

We use cookies and similar technologies on our platforms:

  • Necessary Cookies: For the platforms to function correctly.
  • Analytical Cookies: To improve the user experience (e.g., Google Analytics).
  • Marketing Cookies: To offer personalized ads (based on your consent).

You can change your cookie settings via your browser settings or through the cookie management tool on our platforms.


8. Data Security

We take technical and organizational measures to protect your personal data:

  • Data is stored on encrypted servers (including ikas infrastructure).
  • Access is restricted to authorized personnel.
  • In the event of a security incident, we will inform you and relevant authorities within 72 hours (GDPR Article 33-34).

9. Third-Party Links

Our platforms may contain links to third-party sites (e.g., payment providers). We are not responsible for the privacy practices of these sites and recommend that you review their policies.


10. Changes to the Policy

We may update this privacy policy as needed. Changes take effect when they are published on our platforms. In the case of significant changes, we may inform you separately.


11. Contact

For questions or inquiries, contact us: