GDPR Notice (EU / EEA)
Last updated: May 17, 2026
- EU / EEA
This page summarises how Millimetric complies with the EU General Data Protection Regulation (Regulation (EU) 2016/679, "GDPR"). It is supplemental to our Privacy Policy and our Data Processing Agreement.
Roles
Millimetric, Inc. acts as data controller for personal data of its customers and prospects, and as data processor for Visitor analytics data on behalf of its customers.
Legal bases
The legal bases we rely on are described in our Privacy Policy, Section 3.
International transfers (Art. 44–49)
Customer analytics data is, by default, stored in the EU region. Where any transfer outside the EEA does occur — for example, to a US-based subprocessor — we rely on the European Commission's Standard Contractual Clauses (Decision 2021/914) and, where applicable, the EU-US Data Privacy Framework.
Your rights (Art. 12–22)
- Access the data we hold about you.
- Rectification of inaccurate data.
- Erasure ("right to be forgotten").
- Restriction of processing.
- Portability of data you provided to us.
- Object to processing based on legitimate interests.
- Not be subject to solely automated decision-making with legal effects.
- Withdraw consent where consent is the legal basis.
- Lodge a complaint with your local supervisory authority.
To exercise these rights, email privacy@millimetric.ai. We respond within one month (extendable by two further months for complex requests, with notice).
EU representative (Art. 27)
Because Millimetric is established outside the EU, we have appointed an EU representative under Article 27 GDPR. You may contact our representative on matters related to the processing of your personal data:
Prighter GmbH
Schellinggasse 3/10
1010 Vienna, Austria
Online form: prighter.com
(If you are a Millimetric customer, please CC privacy@millimetric.ai so we can respond directly.)
Data Protection Officer
Although we are not strictly required to appoint a DPO, our privacy contact is privacy@millimetric.ai.
Supervisory authorities
You have the right to lodge a complaint with the supervisory authority in your Member State. A list is available at edpb.europa.eu/members.
ePrivacy & cookies
Millimetric does not set cookies, fingerprints, or cross-site tracking identifiers on Visitors. The SDK does write a first-party mm_aid identifier to localStorage for audience measurement — see our Cookie Notice for details. Whether that requires user consent under the ePrivacy Directive depends on your jurisdiction and use case; some national regulators (e.g. France's CNIL) provide an audience-measurement exemption, but you should form your own view with counsel.