Legal
Privacy Policy
Last updated: May 2026.
1. Introduction
Stebro Asset Growth ("we", "us", "our") is committed to protecting the privacy of every individual who interacts with our firm. This Privacy Policy explains what personal data we collect, the purposes for which we process it, how we store it, and the rights you have under the General Data Protection Regulation (GDPR — EU Regulation 2016/679) and applicable local laws.
2. Data Controller
The controller of your personal data is Stebro Asset Growth. For any questions regarding the processing of your data, or to exercise your rights, you may contact us at: StebroAG@proton.me.
3. Data We Collect
We collect only the information you voluntarily provide through our contact form or direct communication:
- full name;
- email address;
- phone number (optional);
- indicative investment range and a description of your objectives;
- technical data (e.g., IP address, access logs) to the extent necessary for site security.
4. Purpose and Legal Basis
We process your data for the following purposes:
- to respond to your inquiry and arrange a confidential meeting — legal basis: your consent (Art. 6(1)(a) GDPR) and steps prior to entering into a contract (Art. 6(1)(b) GDPR);
- communication regarding potential investment opportunities — legal basis: legitimate interest (Art. 6(1)(f) GDPR);
- compliance with legal obligations — legal basis: Art. 6(1)(c) GDPR.
5. Retention Period
We retain your data for as long as necessary to fulfil the stated purposes, and for no longer than 24 months from our last communication, unless a longer retention period is required by law or you have explicitly consented to extended retention.
6. Data Sharing
Your personal data is never sold or shared with third parties for marketing purposes. Data may be accessible only to: (i) authorised partners and members of our team bound by confidentiality, (ii) IT and security service providers acting as data processors under our instructions, and (iii) competent authorities where legally required.
7. Data Security
We implement appropriate technical and organisational measures — including encryption in transit, access restrictions, and internal confidentiality protocols — to protect your data against unauthorised access, alteration, disclosure, or destruction.
8. Your Rights
Under GDPR, you have the right at any time to:
- request access to your personal data;
- request correction of inaccurate or completion of incomplete data;
- request erasure ("right to be forgotten");
- request restriction of processing or object to processing;
- request data portability;
- withdraw consent at any time, without affecting the lawfulness of prior processing;
- lodge a complaint with the competent data protection authority.
9. Cookies
Our website uses a minimal set of functional cookies necessary for its operation. We do not use marketing or tracking cookies without your explicit consent.
10. Changes to this Policy
We reserve the right to update this Privacy Policy from time to time. Any changes will be published on this page with an updated revision date.