General Data Protection Statement
This Privacy Policy sets out the data processing principles and security standards governing the website scandi-passage.online. We are committed to processing all personal data transparently, securely, and in full compliance with the European Union General Data Protection Regulation (EU Regulation 2016/679 - GDPR), the UK Data Protection Act, and applicable international privacy frameworks.
1 Data Controller Identification
The designated entity responsible for the collection and processing of personal data on this website is:
Organization / Name: scandi-passage.online
Registered Address: [email protected]
Contact Email:support@Calea Victoriei 45, Sector 1, 010062 București, Romania
Telephone: en
Website: https://Calea Victoriei 45, Sector 1, 010062 București, Romania
2 Categories of Data We Collect
We strictly adhere to data minimization principles and collect only the information necessary to provide a stable, functional, and secure service:
- Technical & Telemetry Data (Server Logs): IP address (anonymized), browser user-agent and version, operating system, referrer URL, timestamps, and transfer volumes.
- User Inquiry Data: Full name, email address, and message content submitted voluntarily via contact forms.
- Technical Preferences & Session Identifiers: Minimal state tokens stored in client storage for theme selection, language configuration, and cookie consent recording.
3 Legal Bases for Processing (Art. 6 GDPR)
Legitimate Interest (Art. 6(1)(f) GDPR)
To safeguard infrastructure integrity, prevent fraud and cyberattacks (DDoS), and diagnose operational errors.
Explicit Consent (Art. 6(1)(a) GDPR)
For optional communication preferences and non-essential analytical cookies.
Contractual Fulfillment (Art. 6(1)(b) GDPR)
To respond directly to user-initiated service inquiries and support requests.
Legal Obligation (Art. 6(1)(c) GDPR)
To comply with applicable statutory, accounting, and regulatory compliance duties.
4 Cookie Policy & Tracking Technologies
We use essential cookies strictly required for core functionality, security verification, and accessibility settings. We do not engage in unauthorized third-party cross-site profiling without consent.
5 Data Retention & Security Measures
All transmitted data is encrypted in transit using industry-standard SSL/TLS 256-bit protocols. Log data is automatically purged on a rolling cycle within 30 to 90 days. User inquiry correspondence is kept only as long as necessary to address the matter.
6 Your Rights under GDPR & International Law
You are entitled to exercise your statutory rights at any time without charge:
- Right to Access (Art. 15 GDPR) — Obtain confirmation and a copy of your processed personal data.
- Right to Rectification (Art. 16 GDPR) — Request correction of inaccurate or incomplete records.
- Right to Erasure (Art. 17 GDPR) — Request deletion of personal data where legal grounds allow.
- Right to Restriction of Processing (Art. 18 GDPR) — Restrict data processing under contested conditions.
- Right to Data Portability (Art. 20 GDPR) — Receive your data in a structured, machine-readable format.
- Right to Object (Art. 21 GDPR) — Object to processing based on legitimate interests.
To exercise any of these rights, contact our Data Protection Team at support@Calea Victoriei 45, Sector 1, 010062 București, Romania.
7 Right to Lodge a Complaint
If you believe that the processing of your data infringes upon statutory data protection laws, you retain the right to lodge a formal complaint with your local Data Protection Supervisory Authority.
8 Updates and Contact Details
We may update this Privacy Policy periodically to reflect procedural or regulatory adjustments. The current version will always be accessible on this page.
Last updated: 8/25/2026