Privacy Policy
This policy explains what personal data Lixnor collects through this website and the Lixnor client portal, how we use it, who we share it with, and the rights you have over it.
Last updated: 25 June 2026
1. Who we are
This website (lixnor.com) and the Lixnor client portal are operated by Lixnor(“Lixnor”, “we”, “us”), a software company providing components and tooling for capital-markets trading platforms. Lixnor is the data controller for the personal data described here.
If you have any question about this policy or your data, contact us at [email protected].
2. The data we collect
Information you give us
- Contact enquiries. When you use our contact form we collect your name, email address, the company you provide (optional), the subject, and the contents of your message.
- Portal accounts. Access to the client portal is provisioned by Lixnor. We hold your username, a securely hashed password, your display name, your organisation, and the software/guide entitlements assigned to your account.
Information we collect automatically
- Technical and security data. When you submit the contact form or sign in, we process your IP address transiently to apply rate limiting and protect against abuse.
- Session cookie. When you sign in to the portal we set a single strictly-necessary cookie (see section 3).
We do not use advertising or third-party analytics tracking, and we do not build marketing profiles of visitors.
3. Cookies
We use a single strictly-necessary cookie, named lx_token, set only after you sign in to the client portal. It holds an encrypted session token that keeps you signed in, is HttpOnly and time-limited, and is used solely to operate the portal. Because it is essential to a service you have requested, it does not require consent under UK cookie rules. We do not set advertising, analytics, or tracking cookies.
4. How and why we use your data
- To respond to your enquiries and provide the information you request.
- To create, secure and operate your client-portal account, and to deliver the software and documentation you are entitled to.
- To keep the website and portal secure, available and free from abuse.
- To meet our legal and regulatory obligations.
Our lawful bases under the GDPR are: performance of a contract (operating your portal account), our legitimate interests (responding to enquiries, securing our services), and legal obligation where applicable.
5. Service providers we share data with
We do not sell your personal data. We share it only with the service providers that help us run this website and our communications, each acting as our processor under appropriate agreements:
- Cloudflare — DNS, content delivery, network tunnelling and TLS for lixnor.com.
- Hetzner — the server infrastructure that hosts the website and portal.
- Resend — delivery of contact-form notifications by email.
- Migadu — hosting of our @lixnor.com email mailboxes.
We may also disclose data where required by law, or to establish, exercise or defend legal claims.
6. International transfers
Some of our service providers may process data outside the EEA. Where they do, we rely on appropriate safeguards (such as European Commission adequacy decisions or standard contractual clauses) to ensure your data remains protected.
7. How long we keep it
- Contact enquiries are retained for as long as needed to handle your request and for a reasonable period afterwards for our records.
- Portal account data is retained for the duration of your relationship with us and removed or anonymised when your account is closed, subject to any legal retention requirements.
8. Security
We take appropriate technical and organisational measures to protect your data — including encrypted transport (HTTPS), hashed passwords, access controls and entitlement-based gating of portal content. No system can be guaranteed perfectly secure, but we work to protect your information and to respond promptly to any issue.
9. Your rights
Under the GDPR you have the right to:
- access the personal data we hold about you;
- have inaccurate data corrected;
- request erasure of your data in certain circumstances;
- restrict or object to certain processing;
- request portability of data you have provided; and
- withdraw consent where processing is based on consent.
To exercise any of these, email [email protected]. You also have the right to lodge a complaint with the Irish Data Protection Commission (dataprotection.ie), though we’d appreciate the chance to resolve any concern first.
10. Changes to this policy
We may update this policy from time to time. The “last updated” date above shows when it was last revised; material changes will be reflected here.
11. Contact
Questions about this policy or your personal data? Email [email protected].