Terms


Privacy Policy

Effective Date: October 1, 2025

Hi and welcome!

If you are reading this, it means you care about how your personal information is handled. That is great, because I care as well and take your privacy seriously.

This privacy policy explains what personal data I collect, what I do with it, and how I keep it safe. It has been created to ensure compliance with the EU General Data Protection Regulation (EU) 2018/679 (the “GDPR”).

I believe privacy should not be confusing. If anything in this policy is unclear, or if you would just like to double-check how your data is handled, feel free to reach out.

1. Who I Am

I am Sophia Durand, an international legal advisor based in the Netherlands. I run this website as a one-person business (eenmanszaak) and offer advisory services to clients around the world. Here are my official details:

  • Business Name: Durand International Legal Advisory

  • KvK (Chamber of Commerce) Number: 98351079

  • Email: sophia@durandlegal.com

  • Website: www.durandlegal.com

  • Registered in: The Netherlands

When it comes to your data, I am the data controller, which means I decide how and why your information is used. Rest assured, I do not sell your data, track you around the internet, or send unsolicited emails.

More details on all of this below.

2. What I Collect (and Why)

Depending on how you use this site, I may collect:

  • Name, email, and phone number (to respond to your messages or set up a call)

  • Company information (if you are reaching out on behalf of a business)

  • Any other information you voluntarily share in an email or in the inquiry form (to better understand and respond to your inquiry)

3. How I Collect It

I collect data when you:

  • Fill out an inquiry form

  • Email me directly

  • Browse my website (essential cookies may collect limited technical data)

4. Legal Basis for Processing

Under the GDPR, my legal bases for processing your personal data include:

  • Consent

  • Contract (

  • Legal obligations

  • Legitimate interest

5. Who I Share Your Data With

I do not sell your data. I only share it with:

  • Service providers I use to run my business (such as email, cloud storage, and accounting software)

  • Authorities, if legally required (including to comply with my tax and other legal obligations)

All third-party providers are expected to comply with applicable data protection laws.

6. Cookies & Website Tools

This website uses a few simple cookies to:

  • Help the site function properly

  • Understand basic usage patterns

I do not use tracking cookies or ad-related trackers.

7. How Long I Keep Your Data

I only retain your personal data for as long as it is necessary to fulfill the purpose for which it was collected or as required by applicable laws or regulations. Here is how long I generally retain data:

  • Emails & inquiries: 1 year

  • Client files & contracts: up to 7 years

  • Invoices & payment records: 7 years

8. Your Rights (And How to Use Them)

If you are located in the EU, you have certain rights under the GDPR, including:

  • Access – You have the right to request information about the personal data I hold about you.

  • Correction – If any of the information I have is incorrect or outdated, you can request that it be corrected.

  • Deletion – You can ask me to delete your personal information at any time. I will comply with your request unless I am legally required to retain the information.

  • Data portability – You may request a copy of your data in a commonly used, machine-readable format, and I’ll do my best to accommodate.

  • Objection or restriction – Unsatisfied or concerned about how your data is being used? You have the right to object to or request a restriction of processing.

To exercise any of these rights, please email me at sophia@durandlegal.com. I will respond as promptly as reasonably possible.

9. Keeping Your Data Safe

I take your privacy seriously and use appropriate safeguards to protect your data, including:

  • Encrypted email and document systems

  • Trusted cloud services with strong security practices

  • Password-protected devises and two-factor authentications where possible

10. Outside the EU?

I work with clients worldwide, so your data might be stored or processed outside the EU. When that happens, I ensure your data is protected through appropriate safeguards and by using trusted services with strong security practices.

11. Questions or Complaints?

Do you have a question about your data or how I use it? Feel free to reach out at any time.

If you are unsatisfied with how I handle your data, you also have the right to file a complaint with the Dutch data protection authority (Autoriteit Persoonsgegevens): https://autoriteitpersoonsgegevens.nl

12. Changes to This Policy

I may update this policy from time to time. The most current version will always be available on this page, with the date of the latest update clearly shown at the top.

Thank you for reading!


Quick Disclaimer

The content on this website is for general informational purposes only and does not constitute legal advice. While I strive to keep information accurate and up to date, I make no representations or warranties (express or implied) about the completeness, accuracy, suitability, or reliability of any content on this website.

Use of this site or contact through it does not establish a client relationship. I am not liable for any loss or damage arising from reliance on information provided on this site.

Finally, an important note about jurisdictions – I am admitted to practice law in the State of New York and the District of Columbia (United States of America). I am not registered as an advocaat with the Dutch Bar Association (Nederlandse Orde van Advocaten). As such, I do not provide legal representation in Dutch court proceedings or offer services or legal guidance or counsel reserved for registered advocaten under Dutch law.