GDPR Compliance

Last updated: June 15, 2024

1. Introduction

At Forging Dev, we are committed to protecting and respecting your privacy in compliance with the EU General Data Protection Regulation (GDPR). This GDPR Compliance Policy outlines how we collect, use, and protect your personal data.

We have implemented appropriate technical and organizational measures to ensure that your data is processed in accordance with the GDPR principles. This page explains your rights under the GDPR and how you can exercise them.

2. Data Controller

Forging Dev acts as the Data Controller for personal data collected through our website and services. As the Data Controller, we determine the purposes and means of processing your personal data.

Our contact details are:

  • Company Name: Forging Dev
  • Address: Sibiu, Romania
  • Email: forgingdev37@outlook.com
  • Phone: +40 727 892 022

3. Personal Data We Collect

We may collect and process the following categories of personal data:

  • Identity Data: First name, last name, username, or similar identifier
  • Contact Data: Email address, telephone numbers, postal address
  • Technical Data: IP address, browser type and version, time zone setting, operating system, and platform
  • Usage Data: Information about how you use our website and services

4. Purpose and Legal Basis for Processing

We process your personal data for the following purposes and on the following legal bases:

Contract Performance

Processing necessary for the performance of a contract with you or to take steps at your request before entering into a contract:

  • To provide our web development and application services
  • To manage our relationship with you
  • To process and deliver your order

Legitimate Interests

Processing necessary for our legitimate interests, provided your interests and fundamental rights do not override those interests:

  • To improve our services and develop new features
  • To analyze the use of our website
  • To protect our business against fraud and other illegal activities

Consent

Processing based on your consent:

  • To send you marketing communications
  • To use cookies for non-essential purposes

Legal Obligation

Processing necessary to comply with our legal obligations:

  • To maintain business records for tax purposes
  • To respond to requests from regulatory authorities

5. Your Rights Under GDPR

Under the GDPR, you have the following rights regarding your personal data:

Right to Access

The right to request copies of your personal data that we hold

Right to Rectification

The right to request that we correct any inaccurate or incomplete personal data

Right to Erasure

The right to request that we delete your personal data in certain circumstances

Right to Restriction

The right to request that we restrict the processing of your personal data

Right to Data Portability

The right to request that we transfer your personal data to another organization or to you

Right to Object

The right to object to the processing of your personal data in certain circumstances

To exercise any of these rights, please contact us using the details provided in Section 9. We will respond to your request within one month. In certain circumstances, we may need to extend this period or charge a reasonable fee if your request is manifestly unfounded or excessive.

6. Data Security

We have implemented appropriate technical and organizational measures to protect your personal data against unauthorized or unlawful processing, accidental loss, destruction, or damage. Our security measures include:

  • Encryption of personal data where appropriate
  • Regular security assessments of our systems and services
  • Restricted access to personal data on a need-to-know basis
  • Regular testing of the effectiveness of our security measures
  • Staff training on data protection and security practices

While we make every effort to protect your personal data, no method of transmission over the Internet or electronic storage is 100% secure. We cannot guarantee the absolute security of your data.

7. International Transfers

We operate primarily within the European Economic Area (EEA). However, in some cases, your personal data may be transferred to, stored, or processed in countries outside the EEA where necessary for the provision of our services or other legitimate purposes.

When we transfer personal data outside the EEA, we ensure that appropriate safeguards are in place to protect your data, such as:

  • Transferring to countries that have been deemed to provide an adequate level of protection by the European Commission
  • Using specific contracts approved by the European Commission that give personal data the same protection it has in Europe
  • Implementing appropriate supplementary measures where necessary

8. Data Retention

We retain your personal data only for as long as necessary to fulfill the purposes for which we collected it, including for the purposes of satisfying any legal, accounting, or reporting requirements.

To determine the appropriate retention period for personal data, we consider:

  • The amount, nature, and sensitivity of the personal data
  • The potential risk of harm from unauthorized use or disclosure
  • The purposes for which we process the data
  • Whether we can achieve those purposes through other means
  • Legal, regulatory, and contractual requirements

In some circumstances, we may anonymize your personal data so that it can no longer be associated with you, in which case we may use such information without further notice to you.

9. Contact Us

If you have any questions about this GDPR Compliance Policy or our data practices, or if you wish to exercise any of your rights under the GDPR, please contact us at:

10. Complaints

If you have a concern about our privacy practices, including the way we have handled your personal data, you can report it to us using the contact details above.

You also have the right to lodge a complaint with your local data protection authority. In Romania, this is the National Authority for the Supervision of Personal Data Processing (ANSPDCP).

National Authority for the Supervision of Personal Data Processing

B-dul G-ral. Gheorghe Magheru 28-30, Sector 1, București

Website: www.dataprotection.ro

We value your privacy

We use cookies and similar technologies to enhance your browsing experience, analyze our traffic, and display personalized content and ads. By clicking "Accept All", you consent to our use of cookies. Learn more