Skip to main content

Privacy Policy (GDPR)

Your privacy is our priority.

1. Identification of the controller

Controller: SynapseCore s.r.o.
Trnavská cesta 106
821 01 Bratislava 27
Slovak Republic

Contact details:

2. Responsible person

3. Purposes of processing personal data

For B2B clients:

  • Contract performance — providing services, implementing solutions, technical support
  • Pre-contractual relations — handling inquiries, preparing offers, demo presentations
  • Invoicing and accounting — issuing invoices, keeping accounts
  • Communication — sending service information, technical support
  • Marketing — sending newsletters (only with consent)
  • Legal claims — asserting and defending legal claims

For website visitors:

  • Analytics — improving our services and website
  • Cookies — ensuring website functionality
  • Contact form — processing your request

We process personal data on the basis of:

  • Contract performance (Art. 6(1)(b) GDPR) — necessary for providing our services
  • Consent (Art. 6(1)(a) GDPR) — for marketing purposes
  • Legitimate interest (Art. 6(1)(f) GDPR) — to ensure service quality
  • Legal obligation (Art. 6(1)(c) GDPR) — accounting, tax obligations

5. Categories of personal data processed

Contact persons of B2B clients:

  • Identification data (first name, surname, title, position)
  • Contact data (email, phone)
  • Company data (name, Reg. No, Tax ID, address)
  • Communication history
  • Payment data (account number, billing details)

Website visitors:

  • IP address
  • Cookie identifiers
  • Browser and device data
  • Data entered in the contact form

6. Recipients of personal data

We may share your personal data with:

  • Accounting software — for invoicing and accounting
  • Cloudflare Web Analytics — for web analytics (cookie-less, doesn't track individual visitors)
  • Email provider — for sending emails
  • Cloud services (AWS/Google Cloud) — for data storage
  • Legal and tax advisors — where needed
  • Public authorities — where required by law

7. Transfer to third countries

Some tools (Cloudflare, AWS) may transfer data to the USA. These transfers are secured by:

  • EU Standard Contractual Clauses
  • Additional security measures

8. Data retention period

  • Contracts and invoices: 10 years (accounting legislation)
  • Email communication: 3 years after the end of cooperation
  • Marketing data: until consent is withdrawn
  • Cookies: depending on type (from session to 2 years)
  • Logs and records: 6 months

9. Your rights under GDPR

  • Right of access — to obtain confirmation of whether we process your personal data and access to it.
  • Right to rectification — correction of inaccurate and completion of incomplete data.
  • Right to erasure — erasure of data ("right to be forgotten").
  • Right to restriction — restriction of the processing of your data.
  • Right to portability — to obtain data in a structured format and transfer it.
  • Right to object — to object to processing for marketing purposes.
  • Right to withdraw consent — if processing is based on consent, you may withdraw it at any time.
  • Automated decision-making — the right not to be subject to automated decision-making.

Right to lodge a complaint with the supervisory authority:

Office for Personal Data Protection of the Slovak Republic
Hraničná 12, 820 07 Bratislava 27
Email: statny.dozor@pdp.gov.sk
Web: dataprotection.gov.sk

10. How to exercise your rights

You can exercise your rights:

  • By email: info@synapsecore.cloud
  • By post: SynapseCore s.r.o., Trnavská cesta 106, 821 01 Bratislava 27
  • By phone: +421 910 140 070

We will respond to your request within 30 days. In complex cases we may extend the deadline by a further 2 months (we will inform you).

Exercising your rights is free of charge. For repeated or manifestly unfounded requests we may charge a reasonable fee.

11. Automated decision-making and profiling

We do not carry out automated decision-making or profiling that would have legal effects or a similarly significant impact on data subjects.

12. Security of personal data

We have implemented appropriate technical and organizational measures:

  • Data encryption in transit (SSL/TLS)
  • Encryption of sensitive data at rest
  • Regular backups
  • Access on a "need to know" basis
  • Regular security audits
  • Employee training

13. Cookies

Detailed information about the use of cookies can be found in our Cookie policy.

14. Changes to these terms

We may update these terms from time to time. We will inform you of significant changes by email or via a notice on the website.

15. Obligation to provide data

For B2B clients: Providing the data necessary for contract performance is a contractual requirement. Without this data we cannot provide our services.

For marketing purposes: Providing data is voluntary.

16. Source of personal data

We obtain personal data:

  • Directly from you (contact form, email, phone)
  • From your company (contact persons of B2B clients)
  • From public sources (commercial register, company websites)

Effective date: January 1, 2025 Last updated: January 1, 2025

If you have any questions, don't hesitate to contact us at info@synapsecore.cloud.