🛡️ DATA PROTECTION & GDPR COMPLIANCE

Privacy Policy & Data Processing (GDPR)

Your privacy and data security are our top priorities. Here is transparent information regarding how we process, store, and safeguard your personal data.

🔒 Guaranteed compliance with Regulation (EU) 2016/679 (GDPR) • DPO: privacy@smartsoftart.com

1. Data Controller Identity

Under the General Data Protection Regulation (GDPR) and applicable laws, the data controller is:

Operator: SmartSoftArt STUDIO
Company ID / IDNO: 1026023001849
Registered Address: Republica Moldova, Ungheni, Gherman
DPO Email: privacy@smartsoftart.com / support@smartsoftart.com

2. Categories of Personal Data

  • Identity & Contact Data: Nume, email, telefon, companie, cod fiscal / CUI.
  • Financial Data: Istoric facturi și plăți. Cardurile bancare sunt procesate exclusiv și securizat prin PayPal Europe.
  • Technical & Security Data: IP anonimizat, jurnale acces, parole criptate bcrypt.

3. Legal Basis & Processing Purposes

Processing is carried out in accordance with Art. 6 GDPR: service contract execution, statutory accounting obligations, legitimate security interests, and user consent.

4. Data Retention Period

Account data is retained for the duration of the contractual relationship. Invoicing records are archived in compliance with statutory fiscal requirements (5-10 years).

5. Your Rights Under GDPR (Art. 15-22)

1. Right of Access (Art. 15)
2. Right to Rectification (Art. 16)
3. Right to Erasure (Art. 17)
4. Data Portability (Art. 20)

6. Third Parties & Security Measures

We do not sell your data. Sharing occurs solely with indispensable authorized partners (PayPal Europe, European ISO 27001 datacenters). All connections are protected by 256-bit SSL/TLS encryption.