Version 1.0 – Approved 1 February 2025
Vetnio AB affirms its full commitment to comply with Regulation (EU) 2016/679 (General Data Protection Regulation, “GDPR”) and all applicable Swedish data-protection legislation. The Board of Directors accepts ultimate responsibility for, and is able to demonstrate, GDPR compliance across all personal-data processing activities. In particular, Vetnio AB undertakes to:
This Statement will be reviewed at least annually, or immediately following any significant organisational, technological or regulatory change.
| Legal Entity | Vetnio AB |
| Company Registration No. | 559494-6807 |
| Registered Address | Grev Magnigatan 10, 114 55 Stockholm, Sweden |
| Main IT Locations / Data Centres | Sweden (primary), Germany (secondary) |
| Supervisory Authority | Swedish Authority for Privacy Protection (Integritetsskyddsmyndigheten – IMY) |
| Data Protection Officer | Max Henry Xie – max@vetnio.com |
All staff must authenticate using multi-factor authentication (MFA) and are authorised according to least-privilege principles.
Vetnio AB processes personal data only when at least one lawful basis under Article 6 GDPR applies (e.g., contract, consent, legitimate interests). Sensitive data (Article 9) is processed solely with an explicit derogation.
A full ROPA is maintained in accordance with Article 30 GDPR and is available to the Supervisory Authority upon request. Key elements recorded include:
Procedures are in place to honour all rights under Articles 12–23 GDPR (access, rectification, erasure, restriction, portability, objection, and automated decision-making). Requests are logged and fulfilled within statutory timeframes.
International transfers occur only to jurisdictions benefiting from an adequacy decision or under appropriate safeguards (e.g., Standard Contractual Clauses). A register of approved sub-processors is published at https://vetnio.com/sub-processors.
All incidents are assessed within 24 hours. Where a breach is likely to result in risk to individuals, IMY is notified within 72 hours and affected data subjects without undue delay, in line with Articles 33–34 GDPR.
All personnel must complete GDPR and information-security training upon hire and annually thereafter.
This Statement, together with supporting policies, is reviewed at least annually and after any material change to legislation, processing activities or organisational structure.
This GDPR Compliance Statement was approved by the Board of Directors of Vetnio AB on 1 February 2025.
Signed on behalf of the Board of Directors
| Name | Position | Signature | Date |
| Max Henry Xie | Chief Technology Officer | (signed) | 01-02-2025 |
Please fill out the form, and we will get back to you shortly.