Privacy Policy
We respect your privacy. Read more about how we protect your data.
Privacy Policy
Last updated: 13 August 2026
At GROW, we care about how your personal information is handled. This Privacy Policy explains what information we collect, why we collect it, how we use it, who we share it with, and the rights you have under applicable data protection law, including the General Data Protection Regulation (GDPR).
1. Who we are
GROW is the data controller responsible for the processing of personal data described in this Privacy Policy.
GROW
Station
Howitzvej 30
2000 Frederiksberg
Denmark
CVR: 42316903
Phone: +45 42 71 61 25
Email: info@grow.dk
2. When we collect personal information
We may process personal information when you:
Visit grow.dk or other websites operated by GROW
Contact us
Sign up for our newsletter
Join GROW.Lab or another GROW community
Create a member profile
Participate in events, programmes, courses or other activities
Make a payment, purchase a membership or make a donation
Participate in surveys or provide feedback
Interact with our content or advertising
We only collect information that is relevant to the purpose for which it is processed.
3. Website and Framer
Our website is built and hosted using Framer.
When you visit our website, technical information may be processed, including:
IP address
Browser and device information
Operating system
Pages visited
Date and time of visits
Technical information necessary to deliver and secure the website
We process this information where necessary to operate, maintain and secure our website and based on our legitimate interests in providing a functional and secure website, cf. GDPR Article 6(1)(f).
Framer may process personal data on our behalf in connection with hosting and operating the website.
Non-essential tracking technologies are addressed separately below and are based on your consent.
4. When you contact us
If you contact us through our website, by email or through another communication channel, we may process:
Your name
Email address
Phone number, if provided
Organisation and role, if relevant
The content of your message
Other information you choose to provide
We process this information in order to respond to your request.
Depending on the nature of your inquiry, our legal basis will be either taking steps at your request before entering into an agreement, cf. GDPR Article 6(1)(b), or our legitimate interest in communicating with people who contact GROW, cf. Article 6(1)(f).
5. Memberships and GROW.Lab
GROW.Lab activities are hosted through Circle.
When you create an account or become a member, we may process information such as:
Name
Email address
Phone number, if provided
Profile photo
Location, if provided
Profile information
Membership status
Participation in events and activities
Posts, comments and other content you choose to share
Communication with GROW and other community interactions
Transaction and membership information
We process this information to create and administer your account, provide your membership, operate the community and enable you to participate in GROW activities.
Where this processing is necessary to provide a membership or service you have requested, our legal basis is GDPR Article 6(1)(b).
Certain processing related to community administration, moderation, security and improvement may also be based on our legitimate interests, cf. GDPR Article 6(1)(f).
Circle processes personal information in connection with operating the platform. Circle may also process certain usage information for its own purposes in accordance with its own privacy terms.
Please be mindful that information you post in community areas may be visible to other members according to the settings of the relevant community space.
6. Events, programmes and activities
When you register for or participate in an event, programme, course, workshop or other GROW activity, we may process:
Name
Email address
Phone number
Organisation or role, where relevant
Registration and attendance information
Information necessary to organise the activity
Payment and transaction information
Information you voluntarily provide in connection with your participation
We process this information to administer and deliver the activity you have signed up for.
The legal basis is normally GDPR Article 6(1)(b).
Where information is required for accounting or other statutory purposes, we process it under GDPR Article 6(1)(c).
7. Payments and Stripe
We use Stripe to process payments for memberships, events, programmes and other paid activities where applicable.
When you make a payment, Stripe may process information such as:
Name
Email address
Billing information
Payment method information
Transaction information
Device and technical information
Information used for fraud prevention and security
GROW may receive transaction information necessary to administer your purchase, such as payment status, amount, date and transaction reference.
Your full payment card details are handled through Stripe's payment infrastructure and are not intended to be stored by GROW.
Our processing of transaction information is necessary to fulfil our agreement with you, cf. GDPR Article 6(1)(b), and to comply with accounting and other legal obligations, cf. Article 6(1)(c).
Stripe may also process certain personal data as an independent data controller for purposes including fraud prevention, payment network requirements and compliance with legal obligations.
8. Newsletter and communications
If you sign up to receive our newsletter or other marketing communications, we process information such as:
Your name
Email address
Subscription status
Information necessary to document your consent
We process this information based on your consent, cf. GDPR Article 6(1)(a).
You can withdraw your consent at any time by using the unsubscribe link included in our emails or by contacting us at info@grow.dk.
Withdrawing your consent does not affect the lawfulness of processing that took place before the withdrawal.
We may retain limited documentation of your consent after you unsubscribe where necessary to demonstrate compliance with applicable law.
9. Cookies, Google Analytics and Meta Pixel
We use cookies and similar technologies on our website.
Some technologies are necessary for the website to function. Other technologies are used only after you have given your consent through our cookie settings.
Google Analytics
We use Google Analytics to understand how visitors use our website and to improve its content, structure and performance.
Depending on your interaction with the website, Google Analytics may process information about:
Pages visited
Time and duration of visits
Interactions with the website
Browser and device information
Approximate geographic information
Online identifiers and cookie information
Google Analytics is activated only where the required consent has been provided.
The legal basis for our use of Google Analytics is your consent, cf. GDPR Article 6(1)(a).
Meta Pixel
We use the Meta Pixel to understand the effectiveness of our communication and advertising on Meta platforms such as Facebook and Instagram.
Depending on your consent and interaction with our website, information may be sent to Meta about actions such as:
Visiting particular pages
Clicking links
Registering or signing up
Other relevant website interactions or conversions
Browser, device and cookie identifiers
We only activate Meta Pixel where the required consent has been provided.
The legal basis is your consent, cf. GDPR Article 6(1)(a).
In connection with certain processing through Meta Business Tools, GROW and Meta may have respective or joint responsibilities under data protection law.
You can withdraw or change your cookie consent at any time through our Cookie Settings.
More detailed information about the individual cookies, their providers, purposes and duration is available in our Cookie Policy / Cookie Settings.
10. Who we share information with
We do not sell your personal information.
We may share or make information available to service providers where necessary to operate GROW and provide our services.
These currently include providers within categories such as:
Framer – website hosting and infrastructure
Circle – community, memberships and online activities
Stripe – payments
Google – website analytics
Meta – advertising measurement and marketing
Other IT, communication, administration and professional service providers where necessary
Where a provider processes information solely on our behalf, we require appropriate contractual and data protection safeguards.
We may also disclose personal information where:
We are required to do so by law or an authority
It is necessary to establish, exercise or defend legal claims
You have asked or authorised us to do so
11. Transfers outside the EU/EEA
Some of the service providers we use are international organisations and may process personal data outside Denmark or the European Economic Area.
Where personal data is transferred to a country outside the EU/EEA, we ensure that an appropriate legal transfer mechanism is used where required.
Depending on the provider and destination, this may include:
An adequacy decision from the European Commission
The EU–US Data Privacy Framework where applicable
The European Commission's Standard Contractual Clauses
Other safeguards permitted under applicable data protection law
12. How long we keep your information
We retain personal information only for as long as necessary for the purposes for which it was collected or where we are legally required to retain it.
In general:
Membership and community information is retained while your account or membership is active and afterwards only for as long as reasonably necessary for administration, documentation, legal obligations or legitimate interests.
Event and programme information is retained for as long as necessary to administer and document the activity.
Payment and accounting records are retained as required under Danish accounting legislation. Accounting material is generally retained for five years from the end of the financial year to which it relates.
Newsletter information is processed until you unsubscribe or withdraw your consent. Limited documentation may be retained afterwards where necessary to demonstrate that our communications complied with applicable law.
Contact inquiries and correspondence are deleted or anonymised when they are no longer reasonably necessary, unless we need to retain them because of an ongoing relationship, legal obligation or potential legal claim.
Analytics and marketing data is retained according to our configured retention periods and the applicable settings and policies of Google, Meta and our cookie management system.
We regularly assess whether information should still be retained.
13. Your rights
Under the GDPR, you may have the right to:
Request access to the personal information we hold about you
Request correction of inaccurate information
Request deletion of your information
Request restriction of processing
Object to certain processing
Receive certain information in a portable format
Withdraw consent where processing is based on consent
Lodge a complaint with a supervisory authority
These rights are not absolute and may depend on the circumstances and legal basis for the processing.
To exercise your rights, contact us at:
We may need to verify your identity before responding to a request.
14. Complaints
If you are concerned about how GROW processes your personal information, you are welcome to contact us first.
You also have the right to lodge a complaint with the Danish Data Protection Agency:
Datatilsynet
Further information is available through Datatilsynet's official website.
15. Security
We take appropriate technical and organisational measures to protect personal information against accidental or unlawful destruction, loss, alteration, unauthorised disclosure or access.
No online service can guarantee absolute security, but we continuously consider the measures appropriate to the nature of the information we process and the risks involved.
16. Third-party websites
Our website and community may contain links to websites or services operated by third parties.
When you leave a GROW service and interact directly with another organisation's website or service, that organisation's own privacy policy will apply to its processing.
17. Changes to this Privacy Policy
We may update this Privacy Policy when our activities, services, technology or legal obligations change.
The current version will always be made available on our website. If we make significant changes that materially affect how we process your information, we will provide additional notice where appropriate.
18. Contact
If you have questions about this Privacy Policy or how GROW processes personal information, contact:
GROW
Station
Howitzvej 30
2000 Frederiksberg
Denmark
CVR: 42316903
Phone: +45 42 71 61 25
Email: info@grow.dk