Back
LAST UPDATED: 01/10/2026
Privacy Policy
Cadmus Labs B.V.
This Privacy Statement explains how Cadmus Labs B.V. (“Cadmus”, “we”, “us”) handles personal data for which we are the controller, that is, data we process for our own purposes, such as running our website, responding to enquiries, and managing our relationships with our customers.
1. Who we are
Cadmus Labs B.V., Moddermanstraat 27, 2313 GN Leiden, the Netherlands. Chamber of Commerce no. 94949816.
For any question about this Privacy Statement or your personal data, contact us at info@cadmuslabs.nl.
2. What we collect, why, and on what basis
We collect personal data only where we have a reason to. The table below sets out what we collect, from whom, why, and the legal basis under the GDPR.
Privacy Policy
Cadmus Labs B.V.
This Privacy Statement explains how Cadmus Labs B.V. (“Cadmus”, “we”, “us”) handles personal data for which we are the controller, that is, data we process for our own purposes, such as running our website, responding to enquiries, and managing our relationships with our customers.
1. Who we are
Cadmus Labs B.V., Moddermanstraat 27, 2313 GN Leiden, the Netherlands. Chamber of Commerce no. 94949816.
For any question about this Privacy Statement or your personal data, contact us at info@cadmuslabs.nl.
2. What we collect, why, and on what basis
We collect personal data only where we have a reason to. The table below sets out what we collect, from whom, why, and the legal basis under the GDPR.
Who / what
Why we process it
Legal basis
Who / what
Who / what
Visitors to our website (usage data via privacy-friendly analytics)
Why we process it
Why we process it
To understand how our website is used and improve it
Legal basis
Legitimate interest (running and improving our website) and consent
Legal basis
Legitimate interest (running and improving our website) and consent
Who / what
Who / what
People who contact us or request a demo (name, email, phone, company, message)
Why we process it
Why we process it
To respond to your enquiry, arrange a demo, and follow up
Legal basis
Legitimate interest / steps prior to entering into a contract
Legal basis
Legitimate interest / steps prior to entering into a contract
Who / what
Who / what
Customer account users at laboratories (name, work email, login credentials, usage logs)
Why we process it
Why we process it
To provide access to the platform, secure accounts, provide support, and administer the service
Legal basis
Performance of the contract with the customer and to comply with our legal obligations
Legal basis
Performance of the contract with the customer and to comply with our legal obligations
Who / what
Who / what
Billing contacts (name, email, company and invoicing details)
Why we process it
Why we process it
To issue invoices and manage payment and administration
Legal basis
Performance of the contract / legal obligations (for example tax records)
Legal basis
Performance of the contract / legal obligations (for example tax records)
Who / what
Who / what
Employees and job applicants (name, email, address, phone, gender, date and place of birth, payment and bank account information, Citizen Service Number (BSN), copy of identification document; information regarding job performance and test results, personality traits, education, current and former positions, attendance, workload capacity, functional capabilities, working conditions and safety, whereabouts, family members, visual material, and website use). In addition, for job applicants, an online screening may be part of the application process. We conduct this screening only if it is appropriate for the position and necessary to assess the potential employee’s reliability and integrity.
Why we process it
Why we process it
To recruit and hire employees and fulfill the employment contract. Data is also processed for security and monitoring purposes, and to analyze website usage and improve our website.
Legal basis
To fulfill the employment contract and comply with our legal obligations.
Legal basis
To fulfill the employment contract and comply with our legal obligations.
We do not use the personal data described above for automated decision-making or profiling.
3. Cookies and analytics
Our website uses functional, analytical and tracking cookies. A cookie is a small text file that is stored in the browser of your computer, tablet, smartphone or other device when you first visit this website. We use cookies with a purely technical function. These ensure that the website works properly and that your preferences are remembered. These cookies are also used to ensure the website functions properly and to optimize it. We strive to anonymize this data as much as possible. In addition, we place cookies that track your browsing behaviour, in this context, this may include, in particular, your computer’s IP address, any username, the time of the request, and data sent by a visitor’s browser may be recorded and used for statistical analyses of visitor and click behaviour on the website. When you first visit our website, we inform you about these cookies and ask for your consent to place them. You can opt out of cookies by configuring your web browser so that it no longer stores cookies. In addition, you can also delete all information previously stored through your browser settings.
4. Who we share data with
We do not sell personal data. We may disclose personal data to various third parties and service providers only if this is necessary for the agreed-upon performance of our services, for example the transfer of personal data to the suppliers who assist us in processing your personal data, when we have your permission or when we are legally obliged to do so by law.
In some cases our employees and associates may be assisted in their work by external service providers. Regarding data protection we will conclude agreements with these service providers ensuring that they manage your personal data securely.
We may share your personal data with the following categories of recipients:
Hosting and email: TransIP (EU/EEA), which hosts our infrastructure, email and domain. Enquiries and demo requests you send us are received and stored in our email.
Cloud infrastructure: Google Cloud (EU/EEA locations), for servers and storage.
5. International transfers
We keep personal data within the EU/EEA. Our providers process data in EU/EEA locations. If in future we use a provider that processes personal data outside the EU/EEA, we will rely on appropriate safeguards recognised under the GDPR, such as the European Commission’s Standard Contractual Clauses, and update this statement accordingly.
6. How long we keep it
We keep personal data no longer than necessary for the purposes above:
Enquiries and demo requests: for as long as needed to handle your request and follow up, and deleted when no longer relevant if it does not lead to a contract.
Customer account and contact data: for the duration of the relationship with the customer, and a one-year period afterwards.
Invoicing and administrative records: for as long as required by law (in the Netherlands, generally seven years for tax records).
Retention of personal data processed inside the platform on behalf of laboratories is governed separately by our Data Processing Agreement.
7. Your rights
Under the GDPR you have the right to:
access the personal data we hold about you;
have inaccurate data corrected, or incomplete data completed;
have your data deleted in certain circumstances;
restrict or object to our processing;
receive your data in a portable format; and
withdraw consent at any time, where processing is based on consent.
To exercise any of these rights, email info@cadmuslabs.nl. We will respond within the period required by law (normally one month).
To ensure that the request for access has been made by you, we ask that you include a copy of your identity document with your request. Please redact your passport photo, MRZ (machine-readable zone, the strip of numbers at the bottom of the passport), passport number, and Citizen Service Number (BSN) on the copy to protect your privacy. We will respond to your request as soon as possible, and in any event within one month.
If you have a concern we cannot resolve, you may lodge a complaint with the Dutch Data Protection Authority (Autoriteit Persoonsgegevens, https://autoriteitpersoonsgegevens.nl/en).
8. How we protect personal data
We take the protection of your data seriously and take all necessary measures to prevent misuse, loss, unauthorized access, unwanted disclosure, and unauthorized modification. For example we have strictly secured access to the cloud services we use to manage files and process your personal data, and we have agreed with these service backups will be performed. Furthermore, for the digital transmission of highly sensitive personal data, we use a secure link. Employees who process your personal data are bound by confidentiality obligations.
Despite our extensive efforts, no absolute guarantee can be given regarding protection against all threats. If you feel that your data is not properly secured or if there are indications of misuse, please contact info@cadmuslabs.nl. After you report an issue, we will let you know within three business days how we are addressing the vulnerability and when a solution is expected. Of course, we will keep you informed of the progress made in resolving the vulnerability.
9. Changes to this statement
We may update this Privacy Statement from time to time. The current version is always available on our website, and the date of the latest update is shown at the top.
10. Questions
Should you have any questions and/or comments regarding the processing of your personal data, please contact info@cadmuslabs.nl, we are happy to assist you. However, if you are unable to reach a resolution with us, you also have the right under privacy legislation to file a complaint with the data protection supervisory authority. To do so, please contact the Dutch Data Protection Authority.
We do not use the personal data described above for automated decision-making or profiling.
3. Cookies and analytics
Our website uses functional, analytical and tracking cookies. A cookie is a small text file that is stored in the browser of your computer, tablet, smartphone or other device when you first visit this website. We use cookies with a purely technical function. These ensure that the website works properly and that your preferences are remembered. These cookies are also used to ensure the website functions properly and to optimize it. We strive to anonymize this data as much as possible. In addition, we place cookies that track your browsing behaviour, in this context, this may include, in particular, your computer’s IP address, any username, the time of the request, and data sent by a visitor’s browser may be recorded and used for statistical analyses of visitor and click behaviour on the website. When you first visit our website, we inform you about these cookies and ask for your consent to place them. You can opt out of cookies by configuring your web browser so that it no longer stores cookies. In addition, you can also delete all information previously stored through your browser settings.
4. Who we share data with
We do not sell personal data. We may disclose personal data to various third parties and service providers only if this is necessary for the agreed-upon performance of our services, for example the transfer of personal data to the suppliers who assist us in processing your personal data, when we have your permission or when we are legally obliged to do so by law.
In some cases our employees and associates may be assisted in their work by external service providers. Regarding data protection we will conclude agreements with these service providers ensuring that they manage your personal data securely.
We may share your personal data with the following categories of recipients:
Hosting and email: TransIP (EU/EEA), which hosts our infrastructure, email and domain. Enquiries and demo requests you send us are received and stored in our email.
Cloud infrastructure: Google Cloud (EU/EEA locations), for servers and storage.
5. International transfers
We keep personal data within the EU/EEA. Our providers process data in EU/EEA locations. If in future we use a provider that processes personal data outside the EU/EEA, we will rely on appropriate safeguards recognised under the GDPR, such as the European Commission’s Standard Contractual Clauses, and update this statement accordingly.
6. How long we keep it
We keep personal data no longer than necessary for the purposes above:
Enquiries and demo requests: for as long as needed to handle your request and follow up, and deleted when no longer relevant if it does not lead to a contract.
Customer account and contact data: for the duration of the relationship with the customer, and a one-year period afterwards.
Invoicing and administrative records: for as long as required by law (in the Netherlands, generally seven years for tax records).
Retention of personal data processed inside the platform on behalf of laboratories is governed separately by our Data Processing Agreement.
7. Your rights
Under the GDPR you have the right to:
access the personal data we hold about you;
have inaccurate data corrected, or incomplete data completed;
have your data deleted in certain circumstances;
restrict or object to our processing;
receive your data in a portable format; and
withdraw consent at any time, where processing is based on consent.
To exercise any of these rights, email info@cadmuslabs.nl. We will respond within the period required by law (normally one month).
To ensure that the request for access has been made by you, we ask that you include a copy of your identity document with your request. Please redact your passport photo, MRZ (machine-readable zone, the strip of numbers at the bottom of the passport), passport number, and Citizen Service Number (BSN) on the copy to protect your privacy. We will respond to your request as soon as possible, and in any event within one month.
If you have a concern we cannot resolve, you may lodge a complaint with the Dutch Data Protection Authority (Autoriteit Persoonsgegevens, https://autoriteitpersoonsgegevens.nl/en).
8. How we protect personal data
We take the protection of your data seriously and take all necessary measures to prevent misuse, loss, unauthorized access, unwanted disclosure, and unauthorized modification. For example we have strictly secured access to the cloud services we use to manage files and process your personal data, and we have agreed with these service backups will be performed. Furthermore, for the digital transmission of highly sensitive personal data, we use a secure link. Employees who process your personal data are bound by confidentiality obligations.
Despite our extensive efforts, no absolute guarantee can be given regarding protection against all threats. If you feel that your data is not properly secured or if there are indications of misuse, please contact info@cadmuslabs.nl. After you report an issue, we will let you know within three business days how we are addressing the vulnerability and when a solution is expected. Of course, we will keep you informed of the progress made in resolving the vulnerability.
9. Changes to this statement
We may update this Privacy Statement from time to time. The current version is always available on our website, and the date of the latest update is shown at the top.
10. Questions
Should you have any questions and/or comments regarding the processing of your personal data, please contact info@cadmuslabs.nl, we are happy to assist you. However, if you are unable to reach a resolution with us, you also have the right under privacy legislation to file a complaint with the data protection supervisory authority. To do so, please contact the Dutch Data Protection Authority.
© 2026 Cadmus Labs B.V.
KVK: 94949816
Terms and Conditions
Cookies
Privacy
© 2026 Cadmus Labs B.V.
KVK: 94949816
© 2026 Cadmus Labs B.V.
KVK: 94949816
Terms and Conditions
Cookies
Privacy
© 2026 Cadmus Labs B.V.
KVK: 94949816
© 2026 Cadmus Labs B.V.
KVK: 94949816
Terms and Conditions
Cookies
Privacy
© 2026 Cadmus Labs B.V.
KVK: 94949816