Privacy Policy
Last Updated: August 30, 2023
We, Room15.Digital, represented by individual entrepreneur Oleksandr Bielinskyi, Tax ID Number 3297706533, located at 42 Petro Kalnyshchevsky Ave, 49051, Dnipro (hereinafter referred to as "We," "Room15.Digital"), pay special attention to matters of user information confidentiality on our website, located at https://room15.digital/ (hereinafter referred to as the "Website").
This document explains how we process confidential information and why you should not be concerned about the protection of your personal data.
Why We Collect Your Personal Data
We collect and process your personal data based on the following legal grounds: (i) performance of a contract; (ii) legal obligations; (iii) legitimate interests (e.g., improving our services, preventing fraud); and (iv) user consent (where applicable, such as for marketing communications. This also enables us to establish communication with you.
What Constitutes Personal Data
Personal data refers to information related to a user that allows for the identification of their identity. Personal data we collect may include, but is not limited to:
- Name and surname;
- Location data;
- Email address;
- Phone number;
- IP address;
- Device and browser information;
- User behavior data (e.g., pages visited, session duration).
In accordance with applicable legislation, data processing encompasses any actions involving your personal information. Such actions include collection, organization, storage, utilization, structuring, transmission of information by any means, and more.
Information We Collect
Room15.Digital collects, processes, and stores information voluntarily provided by users through contact forms on the website and questionnaires for specific types of services, which users can find detailed information about on our website.
We may collect information such as:
- Name and surname.
- Email address.
- Company name.
- Geographic presence of the client's product.
- Client's needs and plans.
This is a non-exhaustive list that may be expanded or shortened in the future.
Who Has Access to Your Data
Our Website operates not in isolation but through the collective efforts of numerous employees and subcontractors. In order to ensure high-quality services, we engage employees and collaborate with independent contractors. Consequently, some of your personal data may be shared with third parties or external services.
We may share your personal data with:
- Cloud hosting and data storage providers (e.g., AWS, Google Cloud).
- Payment processors (e.g., PayPal, Stripe).
- Marketing platforms (e.g., Mailchimp, Google Ads).
- Analytics services (e.g., Google Analytics).
- Legal authorities, if required by law."
If we transfer personal data outside the European Economic Area (EEA), we ensure that appropriate safeguards are in place, such as Standard Contractual Clauses (SCCs) approved by the European Commission or other legally recognized mechanisms.
While we take appropriate measures to ensure cookie data protection, we are not responsible for how third-party services process your data. We recommend reviewing their privacy policies separately.
Data Retention Period
We retain user data for as long as it is minimally necessary to achieve the purposes for which it was collected.
We retain your personal data for the following periods:
- For contractual obligations: throughout the duration of our cooperation and up to 5 years after termination (to comply with tax and legal obligations).
- For marketing purposes: until you withdraw your consent or request deletion.
- For analytics and service improvements: data is anonymized and stored indefinitely.
The Website stores client information throughout the entire period of cooperation. Subsequently, this data is archived and preserved. Deletion of certain data is not feasible, such as information from tax documents, details within comprehensive backup copies, and so forth.
How We Ensure Personal Data Protection
We implement both technical and organizational measures to safeguard the personal information of our users/clients from unauthorized processing, unauthorized access, and accidental loss or damage. We continuously enhance our personal data security measures to align with the latest technological advancements.
Technical Security Measures
We store passwords in dedicated programs and implement two-factor authentication wherever feasible.
The data on the Website is stored using dependable hosting providers and additional software safeguards to protect the servers.
Organizational Security Measures
We do not disclose information regarding website visits, conversion rates, sales figures, and other confidential client data that could harm them if it falls into the hands of competitors. Exceptions are made when we have agreed with you to publish this information, or when it is already public.
We conduct regular training sessions with our employees on the protection of user's personal data.
We have delineated areas of responsibility and functional duties among our employees to prevent situations where critical data is accessible to many employees unnecessarily. We also grant limited access to employees and regularly review the relevance of access permissions granted.
We do not disclose our users' personal data to third parties, except in cases where such disclosure is required by competent government authorities in accordance with applicable laws.
Cookie Files
Cookie files are small text files that are downloaded to your computer or other device when you visit our website or other websites on the internet. They allow the website to remember your preferences and past actions to enhance your user experience. If you wish to change your cookie settings, you can do so through your browser's settings. For additional information, you can refer to our Cookie Policy.
GDPR (General Data Protection Regulation)
For users from the European Union, we are prepared to guarantee compliance with the fundamental provisions concerning the protection of personal data adopted in the EU.
Under the General Data Protection Regulation (GDPR), users have the following rights:
- Right to access – You can request details about the personal data we process about you.
- Right to rectification – If your data is inaccurate or incomplete, you have the right to correct it.
- Right to erasure ('right to be forgotten') – You can request deletion of your personal data under certain conditions.
- Right to restrict processing – You may request to limit processing of your data in specific cases.
- Right to data portability – You can obtain a copy of your data in a structured, machine-readable format.
- Right to object – You can object to data processing based on our legitimate interests or direct marketing.
- Right to withdraw consent – If processing is based on your consent, you may withdraw it at any time.
Requests to Room15.Digital
Room15.Digital endeavors to promptly address inquiries from visitors regarding the collection, processing, and storage of their personal data. To exercise your data protection rights, you may submit a request to hi@room15.digital. We will respond within one month, as required by GDPR. If necessary, this period may be extended by two additional months due to complexity, in which case we will inform you of the delay. We will inform the user of such an extension within 1 month of receiving the request and provide reasons for the delay.
Disclaimer
We respect the privacy of our users and strive to adhere to the rules outlined in our policy. However, we cannot guarantee 100% data preservation, especially for information also publicly accessible on the internet or in the presence of factors beyond our control and influence that may lead to information disclosure.
We do not assume responsibility for adverse consequences and any damages, including lost profits, arising from restricted access to the website or its visitation and utilization of the information posted therein.
Furthermore, we wish to note that Room15.Digital may contain links to third-party resources not affiliated with our website. We do not accept responsibility for the completeness, accuracy, and truthfulness of the information posted on such websites and do not guarantee the preservation of confidential data left by visitors on these sites. Before accessing other websites, please familiarize yourself with their privacy policies.
Notification
In the event of a breach of user personal data protection, we promptly inform both the affected users and the competent supervisory authority for data protection. In doing so, we exert every effort to minimize such risks. If we become aware of a data breach that affects your personal data, we will notify you and the relevant data protection authority within 72 hours, as required under GDPR.
Changes and Amendments
We aspire to continual growth and development of our Website, and therefore, from time to time, we may make changes and updates to this policy.
Any modifications to this document will be posted on our website, so we recommend periodically reviewing this page to ensure your agreement with any changes.
If you continue to use our website after amendments to this privacy policy have been made, we assume that you agree with the changes.
Contact Information
Thank you for your attention to our privacy policy. If you have any questions, please feel free to contact us at hi@room15.digital.