GDPR

Thepesia Corporate Advisory Privacy Statement

GDPR

Thepesia Corporate Advisory Privacy Statement

Thepesia Corporate Advisory considers data privacy an essential component of business. Our data protection policy and practices focus on the proper, lawful processing and exchange and storage of personal information and on ensuring confidentiality, integrity and availability. For the purpose of this statement, the term Thepesia Corporate Advisoryrefers to the entire group of companies or, as the case may be, to each individual company. Thepesia Corporate Advisoryprocesses and stores personal data in the EU and is able to demonstrate at any time compliance with European Union law and the principles set out in this document.This privacy statement is a complete privacy policy applicable to the online activities of thepesia.com. This statement explains the types of information we collect from customers and how we use that information. Our website complies with the General Data Protection Regulation (“GDPR”), (Regulation (EU) 2016/679), which is a binding legislative act. The GDPR creates new rights for individuals and strengthens some existing rights under Directive 95/46 / EC. Directive 95/46 / EC will be replaced from 25 May 2018. This declaration is in line with the GDPR and therefore with Directive 95/46 / EC and national rules until they expire on 25 May 2018.This privacy statement is the responsibility of the Legal Team of Thepesia Corporate Advisory, which has overall responsibility for ensuring compliance. The Data Protection Officer (DPO) is responsible for implementing our privacy policy, which is intrinsically linked to the privacy statement. DPO ensures day-to-day compliance and is involved in all matters related to the protection of personal data. Thepesia Corporate Advisoryshould be considered as a data controller and it will determine the purposes and methods of processing the data entered and collected online.The Data Protection Officer (DPO) is responsible for implementing our privacy policy, which is intrinsically linked to the privacy statement. DPO ensures day-to-day compliance and is involved in all matters related to the protection of personal data. Thepesia Corporate Advisoryshould be considered as a data controller and it will determine the purposes and methods of processing the data entered and collected online.The Data Protection Officer (DPO) is responsible for implementing our privacy policy, which is intrinsically linked to the privacy statement. DPO ensures day-to-day compliance and is involved in all matters related to the protection of personal data. Thepesia Corporate Advisoryshould be considered as a data controller and it will determine the purposes and methods of processing the data entered and collected online.

Principles

Thepesia Corporate Advisory data protection policy is based on the following data protection principles:

  • The processing of personal data will be done in a legal, fair and transparent manner;
  • The collection of personal data will be done only for specified, explicit and legitimate purposes and the data will not be further processed in a manner incompatible with those purposes;
  • The collection of personal data will be adequate, relevant and limited to the information necessary for the purpose of processing;
  • Personal data will be accurate and, where necessary, updated;
  • All necessary measures shall be taken to ensure that incorrect data are deleted or corrected without delay;
  • The personal data will be kept in a form that allows the identification of the data subject and for a period not longer than the one in which the personal data are processed;
  • All personal data will be kept confidential and stored in a manner that ensures the necessary security;
  • Personal data will not be shared with third parties unless necessary for the purpose of providing services under the agreements;
  • Data subjects have the right to request access to, rectification and deletion of personal data, to oppose or restrict the processing of data as well as the right to data portability.

Personal data

Personal data means any information that may be linked to an identified or identifiable natural person (subject person). Personal data includes all types of direct or indirect information (ie used in connection with other data) relating to the subject person, such as name, date of birth, addresses, e-mail addresses, telephone numbers, etc.

Collection of personal data

Users of our website who wish to benefit from our services and provide us with information may be asked to provide personal data so that Thepesia Corporate Advisory can operate and improve its services and business. This means that the initial process is to collect personal data to determine if the complaint is eligible. If the complaint proves viable, Thepesia Corporate Advisorycontacts the company that made the complaint, all in the interest of the client. We will also collect the candidate’s address when applying for a position in our company. We collect personal data for other purposes such as statistics, administration and communication, IT and security management, physical security, authentication and authorization systems, support systems,collaboration on internal projects and organizational teams and activities. We will process personal data only for a specified, explicit and legitimate purpose or for a purpose required by local law in the countries in which we operate.

Use of personal data

We will use personal data only for the purpose for which it was collected and we will store the data only for as long as is necessary for that purpose. We will retain the customer’s information for as long as his account is active, to provide services to him, to comply with our legal obligations or for any of the purposes mentioned above. Access to personal data is strictly limited to Thepesia Corporate Advisory staff, company subsidiaries and associates who hold the necessary authorization and a clearly defined need to use the data.

Use of Cookies

The Thepesia Corporate Advisory website and its partners use cookies or similar technologies to ensure the best user experience and to analyze trends, manage the website, track customer use of the website and collect demographic information. about the user base that and whole. Cookies are small text files that are placed on the client’s device to track usage and record preferences. Our cookies do not contain information that can identify people. We collect certain information automated by using cookies and tracking technologies such as Internet Protocol (IP) addresses, browser type, Internet Service Provider (ISP), page references / outputs, pages viewed on our site ( eg HTML pages,graphics), operating system, date / time and / or series of clicks to analyze that overall trend and manage the site. Users of the site may control the use of cookies at the browser level, but if the user decides to disable cookies this action will limit certain features and functions in our website and services.

Disclosure of personal data

Personal data will not be disclosed to third parties unless disclosure is necessary in order to provide our services. We occasionally sign contracts with other companies and business partners working on our behalf, such as external attorneys to process compensation for compensation, technical companies for processing and delivering the systems and technologies that develop our products and services, and in these cases we will disclose the necessary information. Service providers will be allowed to obtain only the personal data necessary to deliver their services. We will not disclose personal data to third parties in order to allow them to market their products and services to our customers. If users do not want us to disclose personal data to these companies,they are asked to contact the DPO, Eugen Lascu, at the e-mail address: eugen.lascu@thepesia.comIn certain situations Thepesia Corporate Advisoryis required to disclose personal data in response to requests from supervisors to meet GDPR requirements. We will also disclose personal information if required by law, for example to comply with a subpoena or other legal process, when we believe in good faith that disclosure of data is necessary to protect our rights, the safety of customers or the safety of others, the investigation fraud or in response to a government request.en In some cases, Thepesia Corporate Advisoryis required to disclose personal data in response to requests from supervisors to comply with GDPR requirements. We will also disclose personal information if required by law, for example to comply with a subpoena or other legal process, when we believe in good faith that disclosure of data is necessary to protect our rights, the safety of customers or the safety of others, the investigation fraud or in response to a government request.en In some cases, Thepesia Corporate Advisoryis required to disclose personal data in response to requests from supervisors to comply with GDPR requirements. We will also disclose personal information if required by law, for example to comply with a subpoena or other legal process, when we believe in good faith that disclosure of data is necessary to protect our rights, the safety of customers or the safety of others, the investigation fraud or in response to a government request.customer safety or the safety of others, investigating fraud or in response to a government request.customer safety or the safety of others, investigating fraud or in response to a government request.

Security of processing

We will process the data securely, apply and maintain appropriate technical measures to protect personal data against accidental or unlawful destruction or loss, alteration, disclosure or unauthorized access, especially when the processing involves the transmission of data over a network and against any other form of illegal processing. Questions related to personal data security can be sent to the DPO, Eugen Lascu , e-mail: eugen.lascu@thepesia.com

Access and rectification or deletion of personal data

Customers have the right to request at any time access to, rectification, deletion or restriction of the processing of data collected by us. To help us keep your personal information up to date, we encourage users to keep us informed of any changes or discrepancies. To view or change your personal information, to obtain information about the length of time for which Thepesia Corporate Advisoryintends to retain personal data or for other questions about personal data, or if you wish to request, we will inform you if, at the request of a third party, we have stored or we have processed any of your personal data, please contact DPO, Eugen Lascu, e-mail: eugen.lascu@thepesia.com

Marketing emails

Thepesia Corporate Advisory reserves the right to send customers marketing emails with their consent. This specific form of consent must be given freely, specifically and precisely informed. These requests are met when customers have chosen to receive marketing emails (actively approved). Customers will always have the right to object, upon request and at no cost, to the processing of personal data for direct marketing purposes without having to provide concrete justifications. Customers can do this by clicking on the “Unsubscribe” link that appears in the e-mails we send you or they can send us a message at privacy@Thepesia Corporate Advisory.ro. Once the customer has objected, that customer’s personal data will no longer be processed for direct marketing.  Marketing emails contain information that we find interesting to the customer, as well as breaking news about our products and services.

Responsibility

Thepesia Corporate Advisoryis responsible and will be able to demonstrate at any time compliance with the GDPR and the principles set out in this document. Thepesia Corporate Advisory will maintain under its responsibility an archive of processing activities containing the information requested by the GDPR and, where necessary, will make the information available to the supervisory authorities. The privacy statement is the responsibility of the Thepesia Corporate Advisory Legal Team. Any questions related to this privacy policy can be addressed to the DPO, Eugen Lascu, e-mail: eugen.lascu@thepesia.com

Complaints

Customers have the right to file a complaint regarding the processing of their personal data. All questions and complaints will be processed by the DPO in a timely manner and in accordance with internal procedures. In the unlikely event that customers have suffered damages due to a breach of their rights under the personal data protection policy and Thepesia Corporate Advisory has not dealt with the complaint properly, customers have the opportunity to submit a complaint to the higher authority. Complaints can be sent to the DPO, Eugen Lascu, e-mail: eugen.lascu@thepesia.com

Changes to this policy

This policy may be updated from time to time, for example following changes in relevant legislation or changes in corporate structure in Thepesia Corporate Advisory. If changes are made to the material, customers will be notified by e-mail or via the website before the changes take effect. We encourage customers to check this page periodically for updates on our privacy practices.

Contacts

THEPESIA CORPORATE ADVISORYSRL

35 Alexandru Constantinescu Street, Sector 1, Bucharest, Romania

E-mail: eugen.lascu@thepesia.com

Effective from: May 25, 2018

Privacy policy

This site is owned by Thepesia Corporate Advisory SRL, a limited liability company, with wholly private capital, Romanian legal entity, registered at the Bucharest Trade Register Office under no. J.40 / 12958/2002 unique registration code 15081364, fiscal attribute RO. THEPESIA CORPORATE ADVISORY SRL has its headquarters in Bucharest, 35 Alexandru Constantinescu Street and has as main object of activity: Finacial Services . Thepesia respects the confidentiality of each client, being aware of the importance of this. Thepesia is the sole owner of any information collected on the sites we manage. We do not sell, share or rent this information to others. Your site hosted by us, server, forums, other sites. The information you make publicly known,including any discussion forums, chat rooms or sites is available to anyone visiting that public space.  Thepesia Corporate Advisory cannot protect the information you make known in these locations. Additionally, the Thepesia Corporate Advisory site may contain links to other sites unrelated to Thepesia Corporate Advisory. Thepesia Corporate Advisory cannot protect the information you make public on these sites and recommends that you read the Privacy Policies of those sites.Thepesia Corporate Advisory cannot protect the information you make public on these sites and recommends that you read the Privacy Policies of those sites.Thepesia Corporate Advisory cannot protect the information you make public on these sites and recommends that you read the Privacy Policies of those sites.

Exceptions and limitations

Although this privacy statement exists, Thepesia Corporate Advisory cooperates fully with officials in any investigation related to any content (including private or personal electronic communications transmitted to Thepesia Corporate Advisory) or illegal activity of any user of the Services, taking reasonable steps to and protect property rights. For the limited purposes of performing such cooperation and in accordance with applicable laws, Thepesia Corporate Advisory may be required to disclose information that may lead to the identification of persons. Additionally, Thepesia Corporate Advisory may decide to monitor communications of any kind (I) in order to comply with laws, regulations or governmental requests; (II) whether such disclosure is necessary or appropriate for the operation of Thepesia Corporate Advisory;(III) to protect the property rights of Thepesia Corporate Advisory or others.

Miscellaneous

Thepesia Corporate Advisory may request from the Customers the following data: name and surname, e-mail address, billing address, personal numerical code, telephone number, fax number, name and legal form in case of legal entities, registration number at the Trade Register, Code Tax or Unique Registration Code. If a Thepesia Corporate Advisory customer orders through our site the registration, reservation or extension of a web domain, it will be necessary to provide Customer data to third parties such as: Internet Corporation For Assigned Names and Numbers – ICANN – for international domains , National Computer Network (RNC) – for domains with the extension “.RO”. These data are not disclosed to any natural or legal person except Thepesia Corporate AdvisorySRL and the third parties mentioned above in any form.Thepesia Corporate Advisory SRL guarantees the confidentiality of information. The Client’s information can be accessed by the respective Client and by Thepesia Corporate AdvisorySRL based on a username and a password that differs from client to client. The site www.Thepesia Corporate Advisory.ro is protected by the newest and most powerful security techniques and methods. The personal information sent by users on this site is protected both when using the site online and offline. This Privacy Policy is subject to Romanian domestic law. In case of dispute, an amicable settlement will be tried first, within 30 working days from the registration of the complaint at the Thepesia Corporate Advisory headquarters. If no agreement is reached after this period,the court from the same administrative structure with the Thepesia Corporate Advisory headquarters will be considered competent. Your privacy is important to us. This commitment to confidentiality explains to you what personal data THEPESIA CORPORATE ADVISORYSRL collects from you, through our interactions with you and through our products and services, as well as how we use those data and the legal basis of the processing. which we do whether you are our customer or our employee. Our privacy policy includes the following information:through our interactions with you and our products and services, as well as how we use that data and the legal basis for the processing we do whether you are our customer or our employee. Our privacy policy includes the following information:through our interactions with you and our products and services, as well as how we use that data and the legal basis for the processing we do whether you are our customer or our employee. Our privacy policy includes the following information:

  • What is personal data?
  • What personal data do we collect?
  • What is the legal basis for processing this data?
  • What is the purpose and how do we use your data?
  • Data retention period
  • Who do we share the data with?
  • What rights do you have as a data subject?
  • Link to cookies policy.

What is personal data

“Personal data” refers to unique individual data, ie any information about an identified or identifiable natural person (“data subject”), related to name, address, Personal Numeric Code, IP or telephone number. Site visitors are those targeted persons, ie an identified or identifiable natural person. An identifiable natural person is a person who can be identified, directly or indirectly, in particular by reference to an identifying element, such as a name, an identification number, location data, an online identifier, or one or more many specific elements, specific to his physical, physiological, genetic, mental, economic, cultural or social identity. Always, when we request your personal data, we will explain to you the purpose for which we are needed,where we keep your data, it has access to it. We also inform you that whenever you want, we provide you with the information we have about you and we can delete it if you ask us to do so.

2. What personal data we collect

THEPESIA CORPORATE ADVISORY SRL collects data to operate efficiently and provide you with the best experiences related to our products and services. Provide some of this data directly, voluntarily, for example, when:

  • create an account on the site THEPESIA CORPORATE ADVISORY SRL,
  • manage your account on www.thepesia.com
  • send a search query to WhoIS to check if a web domain is free,
  • order a product or service
  • make an online payment
  • add a comment on our blog,
  • contact us for assistance through the ticketing system at www.otrs.com
  • call us for assistance. Please note that we do NOT record any telephone conversations we have with you.
  • send us a contact form for technical assistance or customer relations

Or provide identification data indirectly through your IP address. We do not use your IP address to identify you, but we inform you that it is stored when you access our site. You have the right to request the deletion of the IP. We obtain some of this data (such as IP) by recording how you interact with our site, for example, using technologies such as cookies. We also obtain data from third parties. We protect data obtained from third parties in accordance with the practices described in this undertaking, as well as any additional restrictions imposed by the data source. These third-party sources vary over time, but include: Service providers help us determine a location based on your IP address, to customize certain products by location.Online payment provider – which sends us the data on the online payment made for the services / products You can choose in connection with the data we collect. When you are asked to provide personal data, you can refuse. But if you choose not to provide data that is required to provide a product or feature, you may not be able to use that product or feature. The personal data we collect, depending on the interactions you have with our site, are as follows: to create an account on our site or if you create a new account using your email address.When you are asked to provide personal data, you can refuse. But if you choose not to provide data that is required to provide a product or feature, you may not be able to use that product or feature. The personal data we collect, depending on the interactions you have with our site, are as follows: to create an account on our site or if you create a new account using your email address.When you are asked to provide personal data, you can refuse. But if you choose not to provide data that is required to provide a product or feature, you may not be able to use that product or feature. The personal data we collect, depending on the interactions you have with our site, are as follows: to create an account on our site or if you create a new account using your email address.to create an account on our site or if you create a new account using your email address.to create an account on our site or if you create a new account using your email address.

  • Name and surname – for identification
  • Email address – for communication and account validation
  • Password – to secure your account

The data provided when placing an order, which you provide us voluntarily:

  • Your name and surname
  • Email Address
  • Billing address
  • Phone number

The personal data requested at the time of sending the order are used ONLY for issuing the invoice according to the legislation in force, the Fiscal Code Credentials. We collect passwords and similar security information used to authenticate and access your account on our website. Payment data. We collect the data needed to process your payment if you make a purchase, such as the payment instrument number (for example, credit card number) and the security code associated with your payment instrument. Video monitoring. If you enter the headquarters of THEPESIA CORPORATE ADVISORY SRL your image can be registered by our security cameras. (link to the security policy regarding video monitoring) Employee data – we collect First and last name, Personal numerical code, Address,Telephone number, Health data, Marital status, Cultural data, Economic data. If you use hosting services, THEPESIA CORPORATE ADVISORY SRL collects customer data (including content), support data and administrator data. We also collect the information you provide to us and the content of the messages you send us, such as feedback or questions and information you provide to customer support.such as feedback or questions and information that you provide to customer support.such as feedback or questions and information that you provide to customer support.

3. What is the legal basis for processing this data?

The data that you provide us voluntarily (name, surname, telephone, email address, CNP) (ie those that you send by placing an order) the legal basis is to take steps at the request of the data subject before concluding a contract ( Article 6 (1) (b) of Regulation (EU) 679/2016). We use the data to issue the tax invoice. Regarding the data you provide us voluntarily by posting a comment on an article on the blog or on the page of a product on the online store, the basis of processing is our legal obligation to support the exercise of the right to information, but also our legitimate interest to provide transparency and information blog readers. Your consent is not required if the processing is necessary to take steps to conclude a contract,fulfillment of a legal obligation or legitimate interest. Regarding the data that we collect automatically by using cookies or other similar technologies, the basis for processing is consent. Once accessing the site, users can offer their granular consent for each category of cookie that we use through our site. You can withdraw this consent at any time by written request and addressed to the Personal Data Protection Officer at the email address privacy@Thepesia Corporate Advisory.ro Regarding the video monitoring at our headquarters, the legal basis is the security of the perimeter according to Law no. 333/2002 on the protection of objectives, assets, values ​​and protection of persons, republished in 2017 – Application Norm Annex 2 art. 1 lit. It’s alsowe use personal data for our employees, in order to carry out the Employment Contract. The processing of these personal data has as legal basis the Government Decision no. 500/2011 on the General Register of Employees with subsequent amendments and completions and Law 53/2003 on the updated Labor Code.

4. What is the purpose of data collection and how do we use your personal information?

THEPESIA CORPORATE ADVISORYSRL uses the data we collect for two basic purposes, described in detail below: (1) to carry out our activity and provide the products and services we offer For these purposes, we combine the data we collect for to give you a more optimized, more coherent and personalized experience. Providing and improving our products. We use the data to provide products, improve them and carry out the essential operations of our activities. These include operating products and services, maintaining and improving their performance, developing new features, conducting research, and providing customer support. Examples of uses include the following: Supply of products. We use the data to transact with you.and supply you our products. Often, these products include personalized features and recommendations that improve productivity and enjoyment, and automatically personalize your product experience based on the data we have about your activities, interests, and location.

Data related to your card

We need the cardholder’s name, card number, CVV code and expiration date. – This data is required for payment processing. IBAN account – to be able to make payments to you in case of return. Customer support. We use the data to diagnose product problems and provide other customer service and support services. Product improvement. We use the data to continually improve our products, including adding new features or capabilities. Security, safety and dispute resolution. We use the data to protect the security and safety of our products and our customers, to detect and prevent fraud, to confirm the validity of software licenses, to resolve disputes and to implement agreements.Our products and security features may interrupt the activity of malicious software applications and may notify users if malicious software has been detected on their devices. Order history through invoices stored in your user account on the site, as paid or unpaid invoices Advertising. THEPESIA CORPORATE ADVISORY SRL does not use what you say in e-mails, chats, documents, photos or other personal files to direct advertisements to you. We do not have access to files that you send by email or that publish them on your sites. Information about your phone, laptop or tablet and how you use the site The information you give us when you browse the site, including the IP address, device type and, of your choice,data about your location. We also save information about how you use our site. How we use the information about your phone, laptop or tablet and how you use the site. We improve your experience on the site, offering you the version best adapted to your device. – We offer you the best shopping and site navigation experience possible. We protect the site – To prevent and detect fraud against you or our site.We protect the site – To prevent and detect fraud against you or our site.We protect the site – To prevent and detect fraud against you or our site.

5. Retention period

We store personal data only for the period necessary to achieve the purposes, but not more than 5 years from the last visit to the site or the last interaction with us. If we have issued you an invoice, your data will be stored for 10 years, according to the law. If you are an employee of the company, your data will be kept for a period of 75 years, according to the Labor Code.

6. Who we share personal data with

We will not disclose your information to third parties for use in their own marketing or commercial purposes without your consent. However, we may disclose your information to the following entities: Service Providers. We may disclose your information to other companies that provide services to us and act as proxies, such as companies that assist us with billing or send emails on our behalf. These entities are selected with particular care to ensure that they meet specific personal data protection requirements. These entities have a limited ability to use your information for purposes other than providing us with services; The information provided by you,containing identification data may be used for the purpose of drawing up employment documents and other documents relating exclusively to employment relationships or for commercial communications or responses to requests sent by you, and in case of legitimate requests, will be sent to state authorities:

  • Territorial labor inspectorate,
  • Employment Agency,
  • Judicial Authorities
  • To other parties with your consent or instructions.

In addition to the disclosures described in this Privacy Policy, we may disclose information to third parties to whom you consent or request to make such disclosure. We share your personal data with your consent or if it is needed to complete a transaction or deliver a product that you have ordered.

7. What rights do you have as a data subject?

The protection of individuals with regard to the processing of personal data is a fundamental right. Article 8 (1) of the Charter of Fundamental Rights of the European Union (‘the Charter’) and Article 16 (1) of the Treaty on the Functioning of the European Union (TFEU) provide for the right of everyone to the protection of personal data concerning him or her. The rights of data subjects with regard to the protection of individuals with regard to the processing of personal data and on the free movement of such data:

  • the right to information and access;
  • the right to intervene on the data;
  • the right to rectification;
  • the right to delete data;
  • the right to restrict processing;
  • the right to data portability;
  • opposition law and automated individual decision-making, including profiling;
  • the right to file a complaint with the supervisory authority (www.dataprotection.ro).

You can view, edit and delete your personal data from the account on www.Thepesia Corporate Advisory.ro by request sent by email to privacy@Thepesia Corporate Advisory.ro. You may also choose to collect and use your data from Thepesia Corporate Advisory. You may withdraw your consent by written request to the Personal Data Protection Officer at privacy@Thepesia Corporate Advisory.ro

8. Cookies policy

Cookies and similar technologies

Thepesia Corporate Advisory SRL uses cookies (small text files placed on your device) and similar technologies to provide our websites and services online and to help collect data. The text of a cookie often consists of a string of numbers and letters that uniquely identifies your computer, but may also contain other information. Thepesia Corporate AdvisorySRL uses cookies and similar technologies for several purposes, depending on the product.