Privacy Policy – Devify Solutions SRL
Privacy Policy – Devify Solutions SRL
Last updated: 12 September 2025
Last updated: 12 September 2025
This notice explains how we collect, use, disclose and protect personal data. It is intended to meet GDPR transparency requirements. It is not legal advice.
This notice explains how we collect, use, disclose and protect personal data. It is intended to meet GDPR transparency requirements. It is not legal advice.
1. Who we are (Data Controller)
1. Who we are (Data Controller)
Devify Solutions SRL
Address: Romania, Ilfov county, Pantelimon, street Ariesului nr. 29
Identification number (CUI/VAT): RO52324255
Trade Register number: J2025060910009
Email: contact@devify.ro
Phone: +40 774 638 831
If you have questions about this policy or how we handle your data, contact us at the email above.
Devify Solutions SRL
Address: Romania, Ilfov county, Pantelimon, street Ariesului nr. 29
Identification number (CUI/VAT): RO52324255
Trade Register number: J2025060910009
Email: contact@devify.ro
Phone: +40 774 638 831
If you have questions about this policy or how we handle your data, contact us at the email above.
2. What data we collect
2. What data we collect
Contact details: name, email address, phone number, company, role.
Project details: project type, estimated budget, timing, free-text message.
Usage/technical data: IP address, device and browser info, pages viewed, interactions, cookies (see /cookies).
Lead sources: our website forms, TikTok Instant Form, email/phone, meetings, referrals.
Contact details: name, email address, phone number, company, role.
Project details: project type, estimated budget, timing, free-text message.
Usage/technical data: IP address, device and browser info, pages viewed, interactions, cookies (see /cookies).
Lead sources: our website forms, TikTok Instant Form, email/phone, meetings, referrals.
3. Why we process data & legal bases
3. Why we process data & legal bases
Responding to inquiries, quotes and pre-contract steps – Art. 6(1)(b) GDPR.
Delivering services and managing contracts – Art. 6(1)(b) GDPR.
Marketing communications (email/SMS/retargeting) with opt-in – Art. 6(1)(a) GDPR (consent); you may withdraw consent anytime.
Analytics, service improvement, security, fraud prevention – Art. 6(1)(f) GDPR (legitimate interests).
Legal/compliance (invoicing, accounting, tax, disputes) – Art. 6(1)(c) GDPR.
Responding to inquiries, quotes and pre-contract steps – Art. 6(1)(b) GDPR.
Delivering services and managing contracts – Art. 6(1)(b) GDPR.
Marketing communications (email/SMS/retargeting) with opt-in – Art. 6(1)(a) GDPR (consent); you may withdraw consent anytime.
Analytics, service improvement, security, fraud prevention – Art. 6(1)(f) GDPR (legitimate interests).
Legal/compliance (invoicing, accounting, tax, disputes) – Art. 6(1)(c) GDPR.
4. How we collect data
4. How we collect data
Directly from you via our forms (site and TikTok Instant Form), email, phone or meetings. Automatically via cookies and similar technologies when you use our site (see /cookies).
Directly from you via our forms (site and TikTok Instant Form), email, phone or meetings. Automatically via cookies and similar technologies when you use our site (see /cookies).
5. How long we keep data
5. How long we keep data
Leads/prospects: up to 24 months from the last interaction or until you withdraw consent (whichever occurs first). Clients/contract data: retained as required by applicable law (e.g., financial record-keeping). Cookies/analytics: as listed in /cookies. When retention ends, we anonymize or securely delete the data.
Leads/prospects: up to 24 months from the last interaction or until you withdraw consent (whichever occurs first). Clients/contract data: retained as required by applicable law (e.g., financial record-keeping). Cookies/analytics: as listed in /cookies. When retention ends, we anonymize or securely delete the data.
6. Who we share data with
6. Who we share data with
We use trusted processors/service providers for hosting, CRM, email delivery, analytics, advertising platforms (including social media), and professional advisors. These providers act under data processing agreements and only per our instructions.
International transfers: If data is transferred outside the EEA (e.g., to the United States), we use appropriate safeguards such as EU Standard Contractual Clauses. Details available on request.
We use trusted processors/service providers for hosting, CRM, email delivery, analytics, advertising platforms (including social media), and professional advisors. These providers act under data processing agreements and only per our instructions.
International transfers: If data is transferred outside the EEA (e.g., to the United States), we use appropriate safeguards such as EU Standard Contractual Clauses. Details available on request.
7. Your rights
7. Your rights
You can request:
Access to your data, rectification, erasure, restriction, portability;
Objection to processing based on legitimate interests and, at any time, to direct marketing;
Withdrawal of consent (where processing is based on consent).
To exercise your rights, email contact@devify.ro
You also have the right to lodge a complaint with the Romanian data protection authority (ANSPDCP):
anspdcp@dataprotection.ro | +40 318 059 211 | Bd. G-ral Gheorghe Magheru 28–30, Sector 1, 010336, Bucharest, Romania.
You can request:
Access to your data, rectification, erasure, restriction, portability;
Objection to processing based on legitimate interests and, at any time, to direct marketing;
Withdrawal of consent (where processing is based on consent).
To exercise your rights, email contact@devify.ro
You also have the right to lodge a complaint with the Romanian data protection authority (ANSPDCP):
anspdcp@dataprotection.ro | +40 318 059 211 | Bd. G-ral Gheorghe Magheru 28–30, Sector 1, 010336, Bucharest, Romania.
8. Children
8. Children
Our services are not directed to children. For information society services in Romania, the age of consent is 16. We do not knowingly collect data from persons under 16.
Our services are not directed to children. For information society services in Romania, the age of consent is 16. We do not knowingly collect data from persons under 16.
9. Security
9. Security
We implement appropriate technical and organizational measures to protect personal data (access controls, encryption in transit, least-privilege access, staff confidentiality, and periodic reviews).
We implement appropriate technical and organizational measures to protect personal data (access controls, encryption in transit, least-privilege access, staff confidentiality, and periodic reviews).
10. Cookies
10. Cookies
See /cookies for details about cookie types, purposes, durations and your consent choices.
See /cookies for details about cookie types, purposes, durations and your consent choices.
11. Changes to this policy
11. Changes to this policy
We may update this policy from time to time. We will publish the updated version and date above
We may update this policy from time to time. We will publish the updated version and date above