About This Policy
This Privacy Policy explains how Edge Netherlands B.V. ("Edge", "we", or "us") processes personal data through the Edge Portfolio and Edge Community mobile applications, the website at app.edge.tech, and the services and APIs supporting them.
Edge Netherlands B.V. is the controller responsible for this processing. Edge is registered with the Dutch Chamber of Commerce under number 24291656 and has its registered office at Marten Meesweg 8, 3068 AV Rotterdam, the Netherlands. Privacy questions can be sent to privacy@edge.tech.
Information We Process
Depending on which features you use, we process:
- Profile and contact information — the display name you choose and an optional email address provided with a community submission.
- Community contributions — photos, PDF files, captions, document display names, comments, likes, reports, blocking choices, and requests to withdraw a contribution. Files may themselves contain personal information. Where supported, image metadata such as EXIF and GPS data is removed before publication. PDF files may retain metadata included by their author.
- Pseudonymous identifiers — device, user, and installation identifiers generated by the app. They allow community, safety, sharing, and notification features to work without requiring an account. A device identifier is stored in the iOS Keychain and may therefore remain available after the app is reinstalled. These identifiers are not advertising identifiers and are not used for cross-app tracking.
- Technical and notification information — app identifier, app version, device model, operating-system version, notification preference, Apple Push Notification service token, registration status, and delivery status.
- Feature activity — timestamps and limited information created when you use a supported function, such as registering for push notifications, uploading or withdrawing content, creating a share link, liking, commenting, reporting, or blocking.
- Share-link information — the relevant project, optional campaign, creator name or pseudonymous identifier, creation date, aggregate click count, and date of the most recent click. New clicks are stored as aggregate statistics. Legacy per-click records may also contain an IP address, browser user-agent, and referring page.
- Website and operational information — requested route, request method, response status, and processing time. Our hosting platform may also create short-lived access logs containing an IP address and browser user-agent for security and troubleshooting. When a public web page loads an externally hosted frontend asset or fallback image, that provider also receives the ordinary request metadata needed to deliver it, such as an IP address and browser user-agent.
Community contributions and an email address are optional. We do not use third-party advertising, data brokers, or cross-app tracking, and we do not build advertising profiles about you.
The app may use the camera locally for augmented-reality features. Edge does not receive the camera feed. Only photos or files that you deliberately select and submit are uploaded.
Internal Activity Statistics
Edge's restricted admin dashboard derives high-level activity and active-device statistics from the pseudonymous identifiers, technical fields, and timestamps already created for the functional records described above. It may show, for example, the source app, app version, first and most recently observed activity, and counts by activity type.
This reporting does not add a browsing tracker or an advertising SDK, and it does not add the content of comments or files, names, email addresses, push tokens, IP addresses, or browser user-agents to the activity overview. Device labels are kept separate for Edge Portfolio and Edge Community; older activity without a reliable source app remains unattributed rather than being linked across the apps. Passive or offline viewing is not linked to a device. “Active device” figures are therefore estimates of app-scoped devices observed using supported online features; they are not installation counts and do not represent every user or physical device.
Public Community Content
Contributions awaiting review are accessible only to authorised moderators and service personnel. Once approved, a contribution may be visible to other app users together with its display name, caption, document display name, comments, and a pseudonymous contributor identifier. The optional uploader email address is not published.
Approved content may be featured in connection with the relevant Edge project as described in the submission terms. We will seek separate permission before using personal data for a materially different promotional purpose.
Why We Process This Information
- Providing requested app and community features — processing needed to receive, review, publish, and manage a contribution or interaction is based on performing the service and applicable terms you choose to use (Article 6(1)(b) GDPR).
- Push notifications — notification registration and delivery are based on your choice to enable notifications and, where required, your consent (Article 6(1)(a) GDPR). You can disable notifications in iOS settings.
- Safety, moderation, and service security — identifiers, reports, blocking information, rate limiting, and short-lived technical logs are processed for our legitimate interests in protecting users, preventing misuse, enforcing the applicable terms, and keeping the service secure (Article 6(1)(f) GDPR).
- Limited service statistics — the existing functional records described above are summarised for our legitimate interests in understanding adoption, monitoring reliability, and improving the service (Article 6(1)(f) GDPR). We do not use these statistics for advertising or personal profiling.
- Legal compliance and claims — information may be retained or disclosed where necessary to comply with a legal obligation or establish, exercise, or defend legal claims (Articles 6(1)(c) and 6(1)(f) GDPR).
Service Providers and Other Recipients
We do not sell or rent personal data, and we do not share it with third parties for their own advertising, marketing, or profiling purposes. We use selected providers only where needed to operate the service:
- Microsoft Azure provides website hosting, database and file storage, and operational security logging.
- Twilio SendGrid delivers operational and moderation emails and may process the information necessary to deliver those messages.
- Apple Push Notification service (APNs) receives a push token and notification payload when notifications are enabled.
- Trendon supplies building and project information through a server-to-server data feed. That feed is not designed to receive identifiers belonging to app users. Where Trendon provides technical support involving personal data, access is limited to the support activity authorised by Edge.
- Frontend asset providers — some public web pages currently load software assets or fallback images from cdnjs, the A-Frame project, or placehold.co. Those providers may process ordinary request metadata when a browser retrieves an asset.
- Other app users and public visitors may receive approved community content as described above.
We may also disclose information to professional advisers or public authorities where required by law. If personal data is transferred outside the European Economic Area, we apply the safeguards required by applicable data-protection law. You can contact us for further information about relevant safeguards.
Storage and Retention
Data submitted to the service is transmitted over encrypted connections. The main website, database, and file-storage services are hosted using Microsoft Azure. Project information and images may also be cached locally on your device for offline viewing.
Azure HTTP access logs are retained for up to 3 days. No single automatic expiry currently applies across all other functional community records, including legacy share-click records. Approved content and associated identifiers are generally retained while the content remains published or until it is withdrawn or removed. Submission, social, share-link, push, moderation, and safety records are retained according to the time needed to provide the relevant feature, handle moderation and disputes, protect the service, meet legal obligations, or respond to a deletion request. Inactive push registrations may be deactivated when the app unregisters or Apple reports that they are permanently invalid.
Where information is deleted from the active service, limited copies may remain temporarily in protected backups until the applicable backup cycle expires. Information required for an active dispute or legal obligation may be restricted and retained for that purpose.
Cookies
The website uses only cookies required for operation and security. Azure ARRAffinity cookies keep requests connected to the correct server. The admin area also uses antiforgery and authenticated-session cookies. We do not use advertising cookies.
Automated Moderation
Automated validation and rate limits may reject invalid or excessive requests. User reports enter a restricted moderation queue; with the service's current default configuration, reported content remains available until an authorised moderator acts. Edge does not use solely automated decision-making that produces legal or similarly significant effects for app users.
Your Choices and Rights
Under applicable data-protection law, you may have the right to:
- Access and receive a copy of your personal data
- Correct inaccurate information
- Request deletion of your information or contributions
- Restrict or object to processing
- Receive portable data where the right to portability applies
- Withdraw consent without affecting earlier lawful processing
- Lodge a complaint with the Dutch Data Protection Authority or another competent supervisory authority
Because the apps can be used without an account, we may ask for a relevant device, user, installation, or submission identifier to verify that a request concerns your data. Contact privacy@edge.tech to exercise a right.
“Clear All Cache” removes downloaded project files and images from the device; it does not by itself delete server-held contributions or every locally stored identifier, including the identifier held in the iOS Keychain. Contact us to request deletion of server-held information. Push notifications can be disabled through iOS settings.
Security
We use technical and organisational safeguards appropriate to the nature of the information, including encrypted network connections, access controls, restricted admin access, and moderation controls. No method of storage or transmission can be guaranteed to be completely secure.
Changes and Contact
We may update this policy when the service or applicable law changes. The current version and update date will remain available on this page.
Questions about this policy can be sent to privacy@edge.tech.
Last updated: 15 September 2026.