Privacy Policy

Privacy Policy

Welcome to Favorable website.

Welcome to Favorable website.

1. Introduction and Scope

Favorable ApS ("Favorable", "we", "us", or "our") provides marketing services, advisory, and fractional marketing leadership.

This Privacy Policy describes how we collect, use, store, share, and protect personal data when you visit our website, interact with us as a prospective or existing client, collaborate with us as a supplier or partner, or otherwise communicate with us.

We process personal data in accordance with the General Data Protection Regulation (GDPR) and the Danish Data Protection Act.

Last updated: September 7th, 2026.


2. Whose Data We Process

We collect and process personal data relating to:

  1. Website Visitors: Individuals who visit and interact with our website.

  2. Prospective and Existing Clients: Contact persons, representatives, executives, and employees of prospective or existing corporate clients.

  3. Project Stakeholders: Client team members, interviewees, and stakeholders involved in consultancy projects and deliverables.

  4. Suppliers and Freelancers: Independent contractors, freelance specialists, vendors, and service provider contacts.

  5. Professional Contacts: Industry peers, event participants, and network contacts.


3. Categories of Personal Data Processed

We only process standard (non-sensitive) personal data necessary for our business activities:

  • Identification and Contact Data: Name, job title, company name, business address, work email address, and phone number.

  • Communication and Relationship Data: Email correspondence, meeting notes, project briefs, feedback, and notes from interactions.

  • Contract and Project Data: Service proposals, statements of work, agreed deliverables, project schedules, and contractual documentation.

  • Billing and Financial Data: Invoicing details, payment history, bank details, and accounting records.

  • Technical Website Data: IP address, browser type, operating system, device details, and strictly necessary technical cookies.

Note: We do not request sensitive personal data or information about criminal convictions. Please avoid including such information in communications with us.


4. Purposes and Legal Bases for Processing

We process personal data for the following specific purposes and based on the following legal grounds under Article 6 of the GDPR:

4.1 Responding to Inquiries and General Communication

  • Purpose: Handling contact requests, incoming questions, and correspondence submitted via email, phone, or website contact forms.

  • Legal Basis: GDPR Art. 6(1)(f) (Legitimate interest in communicating with business contacts and answering inquiries).

4.2 Business Development, Proposals, and Contract Negotiations

  • Purpose: Initiating business discussions, developing service proposals, pitching advisory projects, and negotiating contracts.

  • Legal Basis: GDPR Art. 6(1)(b) (Taking steps prior to entering into a contract) and GDPR Art. 6(1)(f) (Legitimate interest in growing our consultancy business).

4.3 Delivery of Consulting Services and Project Management

  • Purpose: Executing client contracts, delivering marketing strategy, advisory, and fractional leadership services, conducting workshops, coordinating deliverables, and managing project communications.

  • Legal Basis: GDPR Art. 6(1)(b) (Performance of a contract) and GDPR Art. 6(1)(f) (Legitimate interest in managing client projects effectively).

4.4 Supplier and Subcontractor Administration

  • Purpose: Managing external suppliers, freelance consultants, IT software vendors, and subcontractors assisting with service delivery.

  • Legal Basis: GDPR Art. 6(1)(b) (Performance of contract) and GDPR Art. 6(1)(f) (Legitimate interest in engaging and administering business suppliers).

4.5 Invoicing, Accounting, and Legal Compliance

  • Purpose: Issuing invoices, processing payments, maintaining required corporate records, and complying with statutory bookkeeping rules.

  • Legal Basis: GDPR Art. 6(1)(c) (Compliance with legal obligations, including the Danish Bookkeeping Act / Bogføringsloven) and GDPR Art. 6(1)(b) (Contract performance).

4.6 Website Security, Operation, and IT Administration

  • Purpose: Ensuring IT security, maintaining website performance, preventing malicious activity, and troubleshooting technical errors.

  • Legal Basis: GDPR Art. 6(1)(f) (Legitimate interest in maintaining network security and operational integrity).


5. Sources of Personal Data

We primarily obtain personal data directly from you. However, data may also be gathered from:

  • Your employer or colleagues (e.g., when they list you as a project lead, billing contact, or participant).

  • Client referrals and professional introductions.

  • Publicly available professional platforms, such as LinkedIn, corporate websites, and the Danish Central Business Register (CVR).


6. Sharing and Disclosure of Personal Data

We treat your personal data with strict confidentiality and do not sell your data. Personal data may be shared with trusted third parties only to the extent necessary:

  • IT and Infrastructure Service Providers: Data processors that provide website hosting, cloud storage, email communication, customer relationship management (CRM), project collaboration tools, and accounting software.

  • Professional Advisors: External accountants, tax advisers, legal counsel, and banking institutions.

  • Project Subcontractors: Freelancers and specialist subcontractors engaged under contract and bound by strict confidentiality and data protection obligations.

  • Public Authorities: Tax authorities (Skattestyrelsen), regulatory bodies, or law enforcement where disclosure is required by statutory law or court order.

All data processors act under binding Data Processing Agreements (DPAs) requiring them to implement appropriate technical and organizational security measures and process data solely according to our instructions.

7. Data Controller

Unless explicitly stated otherwise, Favorable ApS is the Data Controller responsible for the processing of your personal data:

Favorable ApS
CVR No.: 46745760

Address: Ørestads boulevard 49T. 2300, Copenhagen, Denmark.
Email: privacy@favorable.dk


8. Data Controller vs. Data Processor Roles

  • Favorable as Data Controller: We act as Data Controller for personal data collected in connection with our website, general inquiries, client relationship management, sales, direct contracting, supplier management, and our statutory bookkeeping and administration.

  • Favorable as Data Processor: When providing consulting services where we access, manage, or process personal data exclusively on behalf of and under the direct instructions of a client (for example, accessing client CRM systems, managing client lead lists, or configuring client marketing automation tools), Favorable acts as a Data Processor. In such cases, our processing is governed by a separate Data Processing Agreement (DPA) entered into with the client.


9. International Data Transfers

As a rule, we store and process personal data within the European Union (EU) and European Economic Area (EEA).

If personal data is transferred to a recipient or service provider outside the EU/EEA (third country), we ensure an adequate level of data protection in compliance with GDPR Chapter V by relying on:

  • European Commission adequacy decisions (including the EU-U.S. Data Privacy Framework for certified entities); or

  • The European Commission’s Standard Contractual Clauses (SCCs), accompanied by supplementary technical and organizational safeguards where necessary.


10. Data Retention

We retain your personal data only for as long as necessary to fulfill the purposes for which it was collected, or as required by applicable laws:

  • Client, Project, and Contact Records: Retained for the duration of the commercial relationship and generally for up to 3 to 5 years following project completion or last active engagement, in accordance with Danish statutory limitation periods (Forældelsesloven).

  • Invoices and Financial Records: Retained for 5 full financial years plus the current financial year in accordance with the Danish Bookkeeping Act (Bogføringsloven § 12).

  • General Inquiries: Inquiries that do not lead to a commercial engagement are deleted when no longer relevant, typically within 12 to 24 months.


11. Cookies and Analytics

Our website uses only strictly necessary technical cookies required for website functionality and security.

We do not currently deploy non-essential tracking cookies, advertising pixels, or third-party behavioral analytics tools. If such tools are implemented in the future, this policy and our cookie notice will be updated, and explicit consent will be obtained prior to placement.


12. Security Measures

We implement appropriate technical and organizational measures to protect personal data against unauthorized access, alteration, disclosure, accidental loss, or unlawful destruction. These measures include access controls, encrypted communications, secure password protocols, and strict confidentiality undertakings with all team members and subcontractors.


13. Your Rights as a Data Subject

Under Chapter III of the GDPR, you have several rights regarding your personal data:

  • Right of Access (Art. 15): You have the right to obtain confirmation as to whether we process personal data about you and to receive a copy of that data.

  • Right to Rectification (Art. 16): You have the right to have inaccurate or incomplete personal data corrected.

  • Right to Erasure / "Right to be Forgotten" (Art. 17): You have the right to request the deletion of your personal data where retention is no longer necessary, unless we are legally required or entitled to retain it.

  • Right to Restriction of Processing (Art. 18): You have the right to restrict processing under certain conditions (e.g., while data accuracy is verified).

  • Right to Data Portability (Art. 20): You have the right to receive personal data you provided to us in a structured, commonly used, and machine-readable format.

  • Right to Object (Art. 21): You have the right to object to processing based on our legitimate interests (Art. 6(1)(f)).

  • Right to Withdraw Consent (Art. 7(3)): Where processing is based on your consent, you may withdraw your consent at any time without affecting the lawfulness of processing prior to withdrawal.

To exercise any of your rights, please contact us at privacy@favorable.dk We will respond to your request within one month.


14. Complaints to the Supervisory Authority

If you have concerns about our processing of your personal data, we encourage you to contact us directly so we can address them.

You also have the right You have the right to file a complaint with the Danish Data Protection Agency if you are dissatisfied with the way we process your personal data. You can find the contact details of the Danish Data Protection Agency at www.datatilsynet.dk


15. Updates to this Policy

We may update this Privacy Policy from time to time to reflect operational, legal, or regulatory changes. The latest version will always be available with the updated effective date.

Favorable

Scroll To Top

Copyright © Favorable ApS 2026. All right reserved.

Favorable

Scroll To Top

Copyright © Favorable ApS 2026. All right reserved.

Favorable

Scroll To Top

Copyright © Favorable ApS 2026.

All right reserved.