Legal
Last updated: May 2026
This page describes how Erdal Kommunikasjon (org.nr 928 107 310) — operating the Conerix platform — processes personal data under the EU General Data Protection Regulation (GDPR) and applicable Norwegian privacy law (Personopplysningsloven).
For general privacy disclosures, see our Privacy Policy. For cookie-specific information, see our Cookie Policy.
Conerix account holders act as data controllers for recipient phone numbers, message content, and campaign metadata they submit through the platform.
Conerix acts as a data processor when delivering messages, storing delivery reports, and operating routing infrastructure on your behalf. For certain account-level data (billing, support, platform security), Conerix acts as an independent data controller.
A Data Processing Agreement (DPA) incorporating standard contractual clauses is available on request for business accounts. Contact info@conerix.com with subject line "DPA request".
| Category | Examples | Typical role |
|---|---|---|
| Account data | Name, email, company, billing details, login credentials | Controller (Conerix) |
| Message traffic | Recipient numbers, message body, sender ID, delivery status | Processor (on behalf of customer) |
| Technical logs | API request metadata, IP addresses, timestamps | Controller / Processor |
| Support records | Ticket content, correspondence | Controller (Conerix) |
Where Conerix is controller, we rely on:
Customers must establish their own lawful basis for processing recipient data before sending messages through Conerix.
If you are located in the European Economic Area or UK, you have the following rights:
To exercise these rights, contact info@conerix.com or use our contact form. We respond within 30 days unless an extension is required.
You may lodge a complaint with Datatilsynet (Norwegian Data Protection Authority) or your local supervisory authority.
Message delivery requires routing through carrier networks that may process data outside the EEA. When Conerix transfers personal data internationally, we implement appropriate safeguards including:
A list of key subprocessors (hosting, payment, carrier gateways) is available on request.
Retention periods depend on data category and legal requirements:
We implement technical and organizational measures appropriate to the risk, including access controls, encryption in transit, credential hashing, and regular review of subprocessors. See our Security page for an overview.
To deliver messages, we engage SMS gateway providers and telecommunications carriers. These parties process recipient numbers and message content solely to perform delivery services under contractual data protection obligations.
In the event of a personal data breach likely to result in risk to individuals, we will notify affected customers and relevant supervisory authorities without undue delay, in accordance with GDPR Articles 33 and 34.
Data protection enquiries:
Erdal Kommunikasjon
Helgerødsletta 64, 3160 Stokke, Norway
Email: info@conerix.com