Privacy Policy – S&E IT
Effective Date: Oktober 1, 2025
S&E IT (hereinafter referred to as “S&E IT,” “we,” “our,” or “us”) is committed to protecting the privacy and personal data of our clients, partners, and visitors. This Privacy Policy explains in detail how we collect, use, process, disclose, and protect your personal data in compliance with international data protection laws, including but not limited to:
- General Data Protection Regulation (GDPR – EU/EEA)
- California Consumer Privacy Act / California Privacy Rights Act (CCPA/CPRA – USA)
- Lei Geral de Proteção de Dados (LGPD – Brazil)
- Personal Information Protection and Electronic Documents Act (PIPEDA – Canada)
- Personal Data Protection Act (PDPA – Singapore, other regions)
- and other applicable local privacy regulations worldwide.
By using our website, applications, or services, you acknowledge that you have read and understood this Privacy Policy.
1. Definitions
- Personal Data – any information relating to an identified or identifiable natural person (e.g., name, email, ID number, IP address).
- Processing – any operation performed on personal data (collection, storage, use, disclosure, deletion, etc.).
- Controller – S&E IT, which determines the purposes and means of processing.
- Processor – third-party service providers who process data on our behalf (e.g., hosting, payment processors).
2. Information We Collect
We may collect the following categories of data:
2.1 Personal Information
- Name, surname, title, company details.
- Contact details (email, phone number, physical address).
- Account credentials (username, password).
- Billing and payment information.
2.2 Technical Information
- IP address, device identifiers, browser type, operating system.
- Geolocation data (if enabled).
- Access logs, session data.
- Cookies and similar technologies.
2.3 Behavioral and Usage Data
- User interactions with our website, applications, and services.
- Order history and support communications.
- Preferences, settings, and feedback.
2.4 Information from Third Parties
- Payment service providers, analytics platforms, marketing partners.
- Publicly available data (business directories, social networks).
3. Legal Basis for Processing (GDPR & International Equivalents)
We process personal data only when we have a valid legal basis, which may include:
- Consent – when you voluntarily provide information or agree to receive marketing.
- Contract – when processing is necessary to perform a contract with you (e.g., service delivery, payment processing).
- Legal Obligation – when required to comply with legal or regulatory requirements.
- Legitimate Interest – when processing is necessary for our legitimate business purposes (e.g., fraud prevention, service improvement, analytics), provided it does not override your fundamental rights.
- Vital Interest – in rare cases, to protect someone’s life or safety.
4. Purposes of Data Processing
We use your personal data for the following purposes:
1. To provide, maintain, and improve our IT solutions and services.
2. To process orders, payments, and fulfill contractual obligations.
3. To respond to inquiries, support requests, and feedback.
4. To send service updates, security alerts, and administrative communications.
5. To personalize services, offers, and marketing communications (with consent).
6. To conduct research, analytics, and performance monitoring.
7. To comply with applicable laws, regulations, and legal processes.
8. To prevent fraud, misuse, and unauthorized access.
5. Data Sharing and International Transfers
- We do not sell personal data.
- Data may be shared with:
- Trusted service providers (cloud hosting, payment processors, IT support).
- Business partners, subcontractors, and affiliates.
- Governmental or regulatory authorities when legally required.
- Data may be transferred internationally. When data is transferred outside your jurisdiction, we apply safeguards such as:
- Standard Contractual Clauses (SCCs),
- Binding Corporate Rules (BCRs),
- or other recognized legal mechanisms.
6. Data Retention
- Personal data is retained only as long as necessary for the purposes outlined in this Policy.
- Financial and legal records may be retained longer in compliance with applicable law.
- After expiration of retention periods, data is securely deleted or anonymized.
7. Data Security
We apply strict security measures, including:
- Encryption (in transit and at rest).
- Secure server infrastructure and firewalls.
- Role-based access controls.
- Regular audits, monitoring, and incident response procedures.
While we strive to protect your data, no method of storage or transmission is 100% secure.
8. Cookies and Tracking Technologies
- We use cookies, local storage, tracking pixels, and analytics tools.
- Types of cookies:
- Essential cookies – required for website functionality.
- Analytical cookies – used for performance and traffic monitoring.
- Marketing cookies – used to deliver relevant advertising (with consent).
- You may disable cookies in browser settings, but some features may not function properly.
9. Your Rights
Depending on your jurisdiction, you may have the following rights:
- Right of Access – obtain confirmation of whether we process your data.
- Right to Rectification – request correction of inaccurate data.
- Right to Erasure (“Right to be Forgotten”) – request deletion of your data.
- Right to Restrict Processing – request limited use of your data.
- Right to Data Portability – receive your data in machine-readable format.
- Right to Object – object to processing based on legitimate interests or marketing.
- Right to Withdraw Consent – at any time, without affecting previous processing.
- Right to File a Complaint – with your local data protection authority.
10. Children’s Privacy
- Our services are not intended for individuals under 16 years of age (or the minimum age defined by local laws).
- We do not knowingly collect data from children.
- If a child has provided data without parental consent, please contact us for deletion.
11. Third-Party Services
Our services may contain links to third-party websites or integrate with external services (e.g., payment systems, analytics). We are not responsible for their privacy practices, and users should review their policies separately.
12. Changes to This Policy
- We may revise this Privacy Policy periodically.
- Updates will be published on our website with the new effective date.
- Continued use of our services constitutes acceptance of updated terms.
13. Contact Information
If you have any questions about this Privacy Policy or your personal data rights, please contact us:
📧 Email: info@sande-it.com
📞 Phone: +380 95 826 79 87