Privacy policy
This privacy policy informs you about how we process your personal data. We process personal data when you visit our website or use our applications, enter into a client relationship or another contractual relationship with us, purchase services or products from us, apply to work for us, or otherwise deal with us.
We will inform you in good time about additional processing activities not mentioned in this privacy policy. The processing of your personal data is subject to the Swiss Data Protection Act and, where applicable, the EU General Data Protection Regulation (GDPR).
Our company
The company listed below is responsible for processing your data, unless otherwise communicated:
Capberg Capital AGDreikönigstrasse 12
8002 Zürich
Switzerland
If you have any concerns about data protection or wish to exercise your rights, please contact the office listed above through our enquiry form.
Processing of personal data
“Personal data” means all information relating to an identified or identifiable natural person. “Data processing” means any handling of personal data, in particular its acquisition, storage, use, modification, disclosure, archiving, deletion or destruction.
When processing personal data, we observe the principles of data protection law. Where necessary, we process personal data only with your prior consent. We process personal data that we receive from you or third parties. Where permitted and appropriate, we may obtain personal data ourselves, for example from publicly accessible sources such as the internet, newspapers and reports.
If you provide us with personal data belonging to other persons, you must be authorised to do so, for example by obtaining permission from the data subject. The data must be correct. Please also ensure that they have read and understood this privacy policy.
The terms personal data, personal information and data are used interchangeably in this privacy policy.
Data processing
Visitors to our website
We process personal data when you visit our website. In particular, we may process technical data such as the IP address, browser used, operating system and cookie data. Further information on visiting our website and the associated data processing is set out in section 10.
Clients
We process personal data received during the initiation and course of a client relationship. We receive the data directly from you while providing our investment-management or advisory services, through third parties such as banks, asset managers or auditors, or obtain it ourselves.
- Master data, such as name, address, contact details, date of birth, gender, nationality, social-media profiles and copies of identification documents
- Contractual data required to process the contractual relationship, such as the type of contract, services and financial data
- Data required to fulfil our due-diligence obligations, including identification and background checks
- Data on your preferences, including requested products and services
- Financial information
- Communication data
Application procedures
We generally process data received from you or third parties in connection with your application or obtained by us. This may include master and communication data, information from your CV and references, information from reference persons, extracts from official registers and information obtained through further checks. It is possible that sensitive personal data will be processed. If your consent is required, we will inform you separately.
Business partners and other third parties
We process personal data received as part of the initiation or conduct of a business relationship with you, a business partner or in another context. This may include master data, contractual data, communication data and information obtained through further checks.
Purpose of processing
The purpose and manner in which we process personal data depend on how you deal with us. We process data in particular for the recording, administration and processing of client, contractual and employment relationships, including:
- Providing our services or offering our products
- Fulfilling contractual obligations
- Processing job applications
- Fulfilling due-diligence obligations, including Know Your Customer checks
- Developing services and products
- Marketing, events, market and opinion research, statistical surveys and customer acquisition
- Sending publications, event information and newsletters
- Media monitoring
- Asserting legal claims and defending legal disputes and official proceedings
- Preventing and investigating criminal offences and other misconduct
We also process data to communicate with you, exchange information, respond to requests, manage relationships and enable you to assert your rights. Communication may take place by letter, email, telephone, social media, chat, website forms or other common means.
Data may also be processed to ensure compliance with laws, regulations, authority requirements and internal rules; to operate our website; to safeguard our legitimate interests and rights; and to ensure business operations, accounting, risk management, operational security, training and the clarification of facts or misconduct.
Data transfer and transmission abroad
We may share your data with third-party recipients where necessary based on your consent, where they require it to fulfil our contractual or legal obligations, to carry out their tasks, or to protect our legitimate interests.
- Consultants, marketing or translation companies, IT providers and other external service providers, banks, asset managers, insurance companies, auditors and associations
- Our contractual partners, including our customers and potentially your employer
- Public bodies and authorities, including FINMA and tax authorities, where a legal or supervisory obligation or quality control applies
- Third parties with access to personal data processed when our website is visited
- Alternative delivery recipients, recipients of payments and services, parties to corporate transactions, lawyers and industry organisations
Recipients may involve further third parties. We restrict processing by selected third parties where possible, for example contractually. Recipients may be located in Switzerland or Europe and, in exceptional cases, in other countries.
If a recipient is located in a country without adequate legal data protection and is not subject to a recognised framework, additional safeguards may be required, such as specific contractual data-protection clauses. Exceptions may apply, including in connection with a contract, legal proceedings abroad, an overriding public or private interest, or your consent.
Information, correction, deletion and restriction
You have the right to request information about which of your data we process. You may also request that your personal data be corrected, blocked or deleted.
You may be entitled to receive certain personal data relating to you in a structured, commonly used and machine-readable format and to transmit it yourself, or through us, to another controller. If our processing is based on your consent, you have the right to withdraw that consent.
You also have the right to assert claims through legal channels and to file a complaint with the competent authority in Switzerland or abroad. To exercise your rights, please contact the office listed in section 2 in writing. Your rights may be restricted or unavailable in certain circumstances; if so, we will inform you accordingly.
Duration of retention
In principle, personal data is retained only until the purpose of the processing has been achieved. Personal data is not deleted where we are required to retain it under legal or regulatory requirements, official orders or contractual agreements.
Different retention periods may apply where claims may be asserted against our company, where we are otherwise legally obliged to retain data, or where we have an overriding interest in retention, for example for evidence and documentation purposes.
Data security
To ensure the confidentiality, integrity, availability and traceability of the data we store and process, we take extensive technical and organisational security precautions within our area of responsibility. These precautions are regularly reviewed and adapted to technological developments.
- Access restrictions and controls
- Data backups
- IT network and security solutions
- Encryption of data carriers and transmissions
- Directives, training and controls
Use of our website
Log files
Visiting our website or applications generally results in data processing. Log files may contain the name of the retrieved file, the date and time of retrieval, the volume of data transferred, a message about successful retrieval, your browser, operating system and requesting domain, and the IP address. This data is evaluated to improve our services and generally does not allow conclusions to be drawn about you.
Data use
We use collected information to provide our products and services, answer questions, and operate and improve our websites and applications. We do not disclose personal data submitted online to third parties unless this serves one of the purposes listed in section 5 or, where necessary, you have given prior consent. Data may be disclosed to the recipients listed in section 6.
Enquiry form and email delivery
When you submit our enquiry form, we process the information you provide, including your name, contact details, message and consent, so that we can receive and respond to your request. The message is transmitted through Resend, a service operated by Plus Five Five, Inc. Data may therefore be processed in the United States and by Resend's authorised subprocessors, subject to the applicable contractual safeguards. Please do not include account numbers or confidential financial information. Further information is available in Resend's privacy policy.
Protection against automated submissions
We use Cloudflare Turnstile on the enquiry form to distinguish legitimate submissions from automated abuse. When the form is displayed or submitted, Cloudflare may process technical information such as your IP address, browser and device information, and the outcome of the security check. This processing serves the secure and reliable operation of the website. Further information is available in Cloudflare's privacy policy.
Google Maps
The schematic location illustration is displayed without contacting Google. An interactive Google map is loaded only after you actively select it. At that point, your browser connects to Google and may transmit technical data such as your IP address, browser information and the requested location. Google is responsible for its own processing. Further information is available in Google's privacy policy.
User profiles
As a matter of principle, we do not create personal user profiles. Information requested from our website may be stored in anonymised form to provide services or for evaluation purposes, including which content is accessed and which pages are visited most frequently.
Use of cookies
Cookies are small text files sent to your browser by a web server and stored on your device for later retrieval. Cookies may be used to determine usage frequency, the number of users and the end of a visit, and to improve usability and access to the website. This anonymised usage data is not combined with personal data.
Most browsers accept cookies automatically. You can deactivate cookie storage, request notification before cookies are stored, or prevent installation through your browser settings. Some functions of the website may then not be available in full.
Changes
This privacy policy may be amended at any time without prior notice. The most recent version published on our website or sent to you by another means applies. Unless otherwise agreed, this privacy policy does not form part of a contract concluded with you.
Update date: 20 September 2026