GDPR Privacy Policy
At Bulgaria Business Registration, we take data privacy seriously and comply with the General Data Protection Regulation (GDPR). This policy outlines how we collect, use, store, and protect your personal data.
1. Data Controller
The data controller responsible for processing your data is:
Bulgaria Business Registration
Email: [email protected]
2. What Personal Data We Collect
We may collect the following types of personal data:
- Full Name
- Email Address
- Phone Number
- Company Information
- Billing and Payment Information
- IP Address and Browser Data
- Any additional data you provide voluntarily (e.g., contact forms, customer support inquiries)
3. How We Use Your Data
Your personal data is processed for the following purposes:
- Providing our services, including company registration in Bulgaria.
- Processing payments and issuing invoices.
- Responding to inquiries and customer support requests.
- Improving website functionality and user experience.
- Marketing communications (only with your explicit consent).
- Compliance with legal obligations.
4. Legal Basis for Processing Data
We process personal data based on the following legal grounds:
- Contractual Necessity: To provide services requested by you.
- Legitimate Interest: To improve our services and ensure security.
- Legal Obligation: To comply with tax, accounting, and legal regulations.
- Consent: For marketing communications and optional data collection.
5. Data Retention Period
We retain personal data only for as long as necessary to fulfill the purposes outlined in this policy, unless a longer retention period is required by law. The retention period may vary depending on the type of data:
- Contact Data: Retained as long as necessary for communication.
- Billing Information: Retained for at least 5 years for tax purposes.
- Marketing Data: Retained until you withdraw consent.
6. How We Protect Your Data
We implement security measures to protect your personal data from unauthorized access, alteration, disclosure, or destruction. These measures include:
- Data encryption.
- Secure access controls.
- Regular security audits.
- Strict access policies for employees and third-party providers.
7. Your Rights Under GDPR
Under GDPR, you have the following rights regarding your personal data:
- Right to Access: Request a copy of your personal data.
- Right to Rectification: Request corrections to inaccurate or incomplete data.
- Right to Erasure ("Right to Be Forgotten"): Request deletion of your data under certain conditions.
- Right to Restriction: Request limited processing of your data.
- Right to Data Portability: Request transfer of your data to another service provider.
- Right to Object: Object to processing of your data for marketing purposes.
- Right to Withdraw Consent: Withdraw consent at any time if processing is based on consent.
If you wish to exercise any of these rights, please contact us at [email protected].
8. Sharing of Data with Third Parties
We do not sell or rent your personal data. However, we may share data with trusted third-party service providers for the following purposes:
- Payment processing (e.g., banks and payment providers).
- Website analytics and performance tracking (e.g., Google Analytics).
- Legal compliance and law enforcement requests.
9. International Data Transfers
In some cases, your data may be transferred outside the European Economic Area (EEA). When this happens, we ensure appropriate safeguards are in place, such as:
- EU-approved standard contractual clauses.
- Data processing agreements with third parties.
- Certifications under international privacy frameworks.
10. Updates to This Privacy Policy
We reserve the right to update this GDPR Privacy Policy to reflect changes in legal requirements or business practices. Any updates will be posted on this page, and we may notify you via email or website notification.
11. Contact Information
If you have any questions about this GDPR Privacy Policy or your data protection rights, please contact us:
Email: [email protected]