Privacy Statement

Read how Beam Tracking B.V. processes, protects and retains personal data in accordance with the GDPR.

How Beam Tracking B.V. collects, uses and protects your personal data in accordance with the General Data Protection Regulation (GDPR).

Last updated: 27 February 2026 - Version 2.2

Download PDF

How Beam Tracking B.V. collects, uses and protects your personal data in accordance with the General Data Protection Regulation (GDPR).

Article 1. Identity of the data controller

This privacy statement applies to all processing of personal data by Beam Tracking B.V. (hereinafter: "Beam"), with its registered office at Jacob van Lennepkade 340H, 1053 NJ Amsterdam, registered with the Chamber of Commerce under number 70873429.

Beam is the data controller within the meaning of the General Data Protection Regulation (GDPR) for the processing described in this privacy statement, unless expressly stated otherwise.

If you have questions about this privacy statement or the processing of your personal data, please contact info@beamtracking.com.

Article 2. Scope

This privacy statement applies to the processing of personal data in connection with:

  • use of the websites www.beamtracking.com and beamtracking.app;
  • use of the Beam Platform (the SaaS application for inventory management);
  • use of the Beam mobile applications for iOS and Android;
  • use of hardware supplied by Beam, including RFID scanners, barcode scanners and related equipment;
  • communication with Beam, including contact forms, email and telephone contact;
  • requests for demos and quotations, and the conclusion of agreements.

Article 3. Personal data we process

3.1 Account data

When you create an account on the Beam Platform, we process your name, email address, telephone number, company name, job title and login credentials (encrypted password).

3.2 Usage data

When you use the Beam Platform and its associated applications, we process log files, IP addresses, device and browser information, login times, actions performed within the platform and scanning activities (RFID and barcode).

3.3 Communication data

When you contact us, we process your name, email address, telephone number, company name and the content of your message.

3.4 Website data

When you visit our website, we process your IP address, browser type, operating system, referring URL, pages visited, click behaviour and visit duration.

3.5 Data relating to the agreement

To conclude and perform agreements, we process your name, email address, telephone number, company name, address details, Chamber of Commerce number, VAT number and payment details.

Article 4. Purposes and legal bases for processing

Beam processes your personal data for the following purposes and on the following legal bases under the GDPR:

4.1 Performance of the agreement (Article 6(1)(b) GDPR)

  • creating and managing your account;
  • providing the Beam Platform, mobile applications and associated hardware;
  • processing scan and inventory data for your inventory management;
  • connecting to your ERP or WMS system through the Beam API;
  • providing customer service and technical support;
  • invoicing and financial management.

4.2 Legitimate interests (Article 6(1)(f) GDPR)

  • improving and optimising the Beam Platform and our services;
  • analysing usage behaviour for product development;
  • ensuring the security and integrity of the Beam Platform;
  • preventing fraud and misuse;
  • sending service messages relating to your account or the platform.

4.3 Consent (Article 6(1)(a) GDPR)

  • placing non-essential cookies and similar technologies;
  • sending newsletters and commercial communications.

4.4 Legal obligation (Article 6(1)(c) GDPR)

  • complying with tax and accounting obligations;
  • complying with requests from competent authorities.

Article 5. Beam as a data processor

When you use the Beam Platform as a customer for inventory management, you may store personal data in the platform (for example, employee names linked to inventory actions). In that case, you are the data controller and Beam acts as a data processor within the meaning of the GDPR.

The arrangements for this processing are set out in a separate data processing agreement, as referred to in Article 3(4) of Beam’s Terms and Conditions.

Article 6. Retention periods

Beam retains your personal data no longer than necessary for the purposes for which it was collected. The following retention periods apply:

  • Account data: for the term of the agreement and up to one (1) day after termination, unless otherwise agreed in writing, in accordance with Article 10(4) of the Terms and Conditions.
  • Invoicing and financial data: seven (7) years after the financial year in which the data originated, in accordance with statutory tax retention requirements.
  • Communication data: two (2) years after the last contact, unless it forms part of an agreement.
  • Website data and cookies: in accordance with the retention periods described in Article 9 of this privacy statement.
  • Usage data and log files: a maximum of twelve (12) months, unless a longer period is necessary for a security investigation.

Article 7. Recipients of personal data

Beam shares your personal data with third parties only where necessary for the purposes set out in Article 4. Beam uses the following categories of recipients:

  • Hosting providers: for storing and processing data within the Beam Platform. Beam uses servers within the European Economic Area (EEA).
  • Payment service providers: for processing payments and direct debits.
  • Analytics service providers: for analysing website visits and platform usage.
  • ERP and WMS providers: only if you use the Beam API integration with your own systems. Data is then exchanged on your instructions and under your responsibility as the customer.
  • Government authorities: where Beam is legally required to share data.

Beam does not sell your personal data to third parties.

Article 8. Transfers outside the EEA

Beam aims to process your personal data exclusively within the European Economic Area (EEA). If a transfer to a country outside the EEA is necessary, Beam ensures that appropriate safeguards are in place, such as standard contractual clauses (SCCs) approved by the European Commission or an adequacy decision.

Article 9. Cookies and similar technologies

Beam’s websites and applications use cookies and similar technologies. Beam distinguishes the following categories:

9.1 Necessary cookies

These cookies are necessary for the website and Beam Platform to function. They are placed without your consent, on the basis of Beam’s legitimate interests. Examples include session cookies and authentication cookies.

9.2 Analytics cookies

Beam uses analytics cookies to understand how the website and platform are used. These cookies are placed only with your consent. Beam uses Google Analytics for this purpose, with IP addresses anonymised and no data shared with Google for its own purposes.

9.3 Functional cookies

Functional cookies remember your preferences, such as language settings. These cookies are placed on the basis of Beam’s legitimate interests.

9.4 Marketing cookies

Marketing cookies are placed only with your express consent. You can change your cookie preferences at any time through the cookie banner on the website.

Article 10. Security

Beam takes appropriate technical and organisational measures to protect your personal data against loss, unlawful processing and unauthorised access. These measures include:

  • encrypted connections (TLS) for all data transfers;
  • encrypted storage of passwords and sensitive data;
  • access control on a need-to-know basis;
  • regular backups of all platform data;
  • monitoring the Beam Platform for unauthorised access;
  • awareness training for Beam employees.

Article 11. Your rights

Under the GDPR, you have the following rights in relation to your personal data:

  • Right of access: you can ask which personal data Beam processes about you.
  • Right to rectification: you can request correction of inaccurate or incomplete data.
  • Right to erasure: you can request deletion of your personal data, insofar as Beam is not required to retain it.
  • Right to restriction of processing: you can request that processing of your data be temporarily restricted.
  • Right to data portability: you can request your data in a structured, commonly used and machine-readable format.
  • Right to object: you can object to processing based on Beam’s legitimate interests.
  • Right to withdraw consent: where processing is based on your consent, you can withdraw it at any time.

You can submit your request to info@beamtracking.com. Beam will respond within one (1) month at the latest. For complex requests, this period may be extended by two months, of which you will be informed in good time.

If you believe Beam is processing your personal data unlawfully, you have the right to lodge a complaint with the Dutch Data Protection Authority (www.autoriteitpersoonsgegevens.nl).

Article 12. Mobile applications

The Beam mobile applications for iOS and Android process data necessary for the app to function, including camera access (for scanning barcodes and QR codes), Bluetooth access (for connecting to RFID hardware and barcode scanners) and network data (for synchronisation with the Beam Platform).

Access to device features is requested only when necessary for the app’s functionality. You can revoke these permissions at any time in your device settings.

Article 13. Changes to this privacy statement

Beam may update this privacy statement from time to time. Changes will be announced at least thirty days before taking effect through the Beam email newsletter and published on the website. The latest version is always available at www.beamtracking.com.

Article 14. Contact details

For questions, requests or complaints about this privacy statement, please contact:

Beam Tracking B.V.

Jacob van Lennepkade 340H 1053 NJ Amsterdam Email: info@beamtracking.com