CustomerEagle · Partner Network

Partner Privacy Notice

Last updated: 7 October 2026

RSG Digital trading as CustomerEagle · KvK 42085647 · Blauwven 7, 5508 RC Veldhoven, the Netherlands.

1. Controller and scope

RSG Digital, trading as CustomerEagle, is the controller for Partner applications, accounts, referral administration and finance records. This notice covers applicants, individual Partners and business contacts. The main CustomerEagle Privacy Policy covers the public website and separate Service use. Customer workspace content is governed by the customer’s instructions and our DPA.

2. Data and purposes

We process the name, email, password hash, website, partner type and identifiers you provide; business, country, VAT and payout details; verification and session records; campaign links and codes, restricted referral summaries, commission and payout records; and correspondence and security audit records. We use these to review applications, operate accounts, attribute referrals, calculate commissions, verify payout details, pay commissions, prevent abuse and handle disputes. We do not give Partners access to customer workspaces or End User conversations.

3. Legal bases

Account administration and commission services rely on performance of a contract with an individual Partner. Processing business representatives’ details and protecting the Program rely on legitimate interests in operating a secure referral program, subject to their rights. Tax and accounting records rely on legal obligations. Necessary operational emails concern applications, security, statements and payments. Optional marketing requires consent where applicable and offers an opt-out. Referral tracking in the customer journey requires the applicable tracking choice; entering a code remains available without that tracking.

4. Retention

We keep account information while needed for the Program relationship. After closure, information is retained only as needed for outstanding commissions, disputes, fraud prevention or a legal obligation, then deleted or anonymised. Accounting records are generally retained for seven years where Dutch law requires this. Session and verification records have expiry periods and are cleaned by the maintenance worker. Audit and financial records can remain longer where required to preserve financial history or establish or defend a claim. Contact [email protected] for the retention applicable to your record.

5. Recipients and transfers

Authorised CustomerEagle staff and hosting, transactional-email and security providers process data as needed. Banks or payout providers receive information needed to pay commissions; accountants, advisers and authorities receive information where necessary or legally required. We do not sell Partner personal data. The main Privacy Policy and DPA describe infrastructure provider categories and international-transfer safeguards; the public subprocessor list concerns providers processing customer Service data and is not a complete list of recipients for Partner accounts. Where required for transfers outside the EEA, we use an applicable adequacy decision or Standard Contractual Clauses and necessary supplementary measures.

6. Security and browser storage

The portal uses a necessary HTTP-only session cookie for sign-in, secured over HTTPS in production, and temporary verification/reset records. Public referral links lead to a separate consent choice before referral tracking storage on the main website. The Partner portal does not load advertising or analytics trackers. Access to private portal data is scoped to the authenticated Partner; passwords are stored as hashes.

7. Your rights

Email [email protected] to request access, correction, erasure, restriction or portability where applicable, object to legitimate-interest processing or withdraw consent. We may verify identity and respond within one month; for complex or numerous requests we may extend by up to two further months and explain within the first month. You can complain to the Dutch Autoriteit Persoonsgegevens or another competent supervisory authority. Rights may be limited by legal recordkeeping and other applicable requirements.

8. Changes and related documents

We update this notice when practices change and provide additional notice of material changes where required. Program questions go to [email protected]; privacy questions go to [email protected]. See the Partner Network Terms, main Privacy Policy, DPA and data-deletion instructions linked below.

Partner terms · Partner privacy · Service terms · Main privacy policy · DPA · Data deletion