hero image

Privacy Policy

Processing of Personal Data


This Privacy Policy applies to website visitors, communication contacts, customers, and job applicants of Prevent Group. The data controller for the processing of personal data is Prevent Group AB (SE559561975901). Subsidiaries of Prevent Group AB may process personal data on behalf of Prevent Group AB and, where applicable, act as processors or sub-processors in accordance with applicable data protection agreements.


Collection of personal data

When you visit our website and consent to the use of cookies, when you email us, or when you voluntarily submit your personal data and message through forms on our website, the following information may be collected and processed:

  • Name

  • Email address

  • Telephone number

  • Company name

  • Company registration number

  • Company address

  • Message content

  • Purchase and order history

  • Referring website

  • Cookie information

  • IP address

  • Any other information you provide in your communications with us


If you apply for a job with us, the following information may also be collected in addition to the above:

  • Information you provide through the website 

  • Curriculum Vitae (CV) 

  • Cover letter 

  • References 

  • Other information you provide, such as certificates, qualifications, and transcripts 

  • Notes from interviews, reference checks, and results from personality assessments 


When you visit our premises, camera surveillance may be used for security purposes. In such cases, the following information may be collected and processed:

  • Video footage and still images showing visitors, employees, suppliers, or other persons present on the premises (sound is not recorded). 

  • Date, time, and location of the recording 

  • Information that may indirectly identify a person, such as appearance, clothing, vehicle, or other visible characteristics captured by the camera 


Purpose of processing

The personal data collected will be processed in accordance with the General Data Protection Regulation (GDPR) and used for the below purposes. Where we rely on legitimate interest as the legal basis for processing, we have assessed that our interests are not overridden by your interests, rights, or freedoms.

  • To respond to your questions or messages – based on our legitimate interest.

  • To process purchases and deliveries – to fulfil our contractual obligations to you.

  • For marketing purposes – based either on legitimate interest (e.g., existing customers) or your consent (e.g., through cookies, contact forms, or booking forms when you interact with us).

  • For statistics and analysis – based on legitimate interest and consent, for example through cookies.

  • To manage recruitment processes – based on legitimate interest and legal obligations, including handling any appeals or claims relating to recruitment decisions as required by law.

  • To protect our premises and operations, employees, visitors, and property through camera surveillance – based on our legitimate interest in maintaining security and preventing, detecting, and investigating incidents, unauthorised access, damage, theft, or other security-related events.


Storage and sharing of personal data

Your personal data is stored in secure systems that have been carefully selected to ensure compliance with applicable laws and regulations. We apply appropriate technical and organisational security measures to protect personal data against unauthorised access, loss, misuse, alteration, or disclosure. These measures may include access controls, role-based permissions, secure authentication, logging and monitoring, encryption where appropriate, regular review of system access, internal procedures, employee awareness and supplier due diligence. Personal data is handled only with restricted access rights and in accordance with the need-to-know principle.

Sharing of personal data

We may need to share your data with other companies within Prevent Group or with our service providers, such as IT service providers (e.g., hosting providers, CRM systems, and analytics tools such as Google Analytics) and payment service providers, in order to deliver our services.

Personal data retention

Your personal data will only be retained for as long as necessary to fulfil the purposes for which it was collected. In relation to recruitment, information associated with your application will be retained for the period necessary to manage the recruitment process and for up to two years after the process has concluded, to enable the handling of any appeal, complaint, or investigation under applicable anti-discrimination legislation. If a claim or legal proceeding is initiated, personal data will be retained until the matter has been resolved. Certain personal data, such as accounting records, may be retained for longer periods where required by law. Information processed on the basis of consent, for example for marketing purposes, will be retained until consent is withdrawn.

Use of camera surveillance

Camera surveillance footage is retained only for as long as necessary for the security purposes described in this Privacy Policy and in accordance with our internal retention procedures. Access to camera surveillance footage is limited to a restricted number of authorised persons and is handled in accordance with the need-to-know principle. Information about camera surveillance is provided through signage at the locations where camera surveillance is in operation. Review of camera surveillance footage is carried out only in connection with suspected security incidents, troubleshooting or technical maintenance. Disclosure of camera surveillance footage is made only to competent authorities in legal contexts, where there is a valid legal basis for such disclosure. Footage may be retained for a longer period where necessary to investigate or document a security incident, suspected crime, legal claim, or authority request.

Sensitive personal data

Sensitive personal data (e.g., information relating to health, trade union membership, or religious beliefs) is not requested and will only be processed if voluntarily provided and where there is a legal basis for doing so. Our website and services are not directed at children, and we do not knowingly collect personal data from children.

Transfer of personal data outside the EU/EEA

If personal data is transferred to or stored in a country outside the EU/EEA, we ensure that appropriate safeguards are in place in accordance with applicable data protection legislation, for example through adequacy decisions, the European Commission’s Standard Contractual Clauses or other applicable safeguards. Where required, we carry out a risk assessment and/or Transfer Impact Assessment (TIA) to assess the level of protection for the personal data and determine whether any supplementary safeguards are necessary. You may contact us for further information regarding such transfers.

Use of Artificial Intelligence (AI)

We do not use AI or automated decision-making, including profiling, to make decisions that produce legal effects concerning you or similarly significantly affect you. Where AI-supported tools are used, they are used as administrative support and not as the sole basis for decisions concerning individuals.

Selling of personal data

Prevent Group will never sell your personal data to third parties.


Your Rights

You have the right to request access to your personal data, withdraw your consent, request correction of inaccurate information, request deletion of your data, request restriction of processing, object to our processing of your personal data, and receive your personal data in a structured, commonly used and machine-readable format where the legal requirements for data portability are met. You also have the right to object at any time to the processing of your personal data for direct marketing purposes. 

To exercise these rights, please contact us at compliance@preventgroup.se

You also have the right to lodge a complaint with the relevant supervisory authority. In Sweden, this is the Swedish Authority for Privacy Protection (IMY) at www.imy.se.


Cookies 

For more information about how we use cookies, please refer to our Cookie Policy.


Contact Information 

If you have any questions regarding this Privacy Policy, our processing of your personal data, or wish to exercise your rights under applicable data protection legislation, please contact our data protection contact point at: compliance@preventgroup.se


Updates 

This Privacy Policy may be updated from time to time as necessary. We recommend that you regularly review this page to stay informed of any changes. 

Date of latest update: 2026-07-06