Privacy statement for third-party services

Johan uses a number of services from external parties. We may share (some of) your personal data with one or more of these suppliers. Our starting point is that these suppliers must be demonstrably compliant with the AVG and have a security policy that meets strict standards, such as the ISO 2700x series.

We enter into a processor agreement with all these suppliers. This guarantees you, the user, that your personal data is processed in accordance with the AVG, the General Data Protection Regulation.

We periodically audit our suppliers for their security and privacy policies.


These suppliers are:

  • True BV: for hosting our web application app.johan.nl and our data.
    We use the hosting party True BV to host our web servers and database servers on app.johan.nl. Hosting takes place in a Tier III data center in the Netherlands, which meets ISO27001, NEN750, ISO9001 and ISAE 3402 type II standards. Data is stored on dedicated servers in the Netherlands. No third-party storage capacity is used by the data center, including for our backups.

  • DigitalOcean: to host our corporate website.
    We use the hosting company DigitalOcean to host our web servers for www.johan.nl and support.johan.com.

  • Cloudflare: to secure our website.
    We use Cloudflare for additional security of network traffic to our web servers. Cloudflare does not perform or use any analysis on your personal data.

  • Google Analytics: to analyze the use of our website.
    JOHAN uses Google Analytics on the website www.johan.nl and support.johan.nl to analyze the use of the website and to compile reports on website activity. We have set this up as privately-friendly as possible, according to the guidelines set up for this purpose by the Personal Data Authority. Your IP address is only transmitted anonymously. "Data sharing" is turned off with Google Analytics and we do not use any other Google services in conjunction with Google Analytics. The retention period is set as short as possible.

  • Messagebird: for sending SMS messages.
    If you use two factor authentication to log in to our application app.johan.nl, we use Messagebird to be able to send you an SMS with a security code. The only thing we share with Messagebird for this is your cell phone number.

  • Postmark and Mailchimp: for sending email messages.
    To send you occasional email messages from app.johan.nl, we use Postmark. Mailchimp we use to send e-mail messages to our newsletter subscribers. In both cases, we only use your email address for this purpose. Other personal data is not shared with Postmark and/or Mailchimp.

  • Uploadcare: for storing images.
    We use Uploadcare as a content delivery network. We use this for storing images. We do not share any personal data with uploadcare.

  • Intercom: for handling support questions.
    We use the platform "Intercom" for handling support questions. When you send an e-mail message to support.johan.nl, your e-mail address is shared with Intercom. We do not share any other personal data of yours with Intercom. If you receive a response to a support question, it will be answered from johan.intercom-mail.com.

Have privacy-related questions? Email privacy@johan.nl