1.1. PLAETO SRL ("us", "we", "our") understands that your privacy is important to you. We are committed to protecting the privacy of our website visitors, service users, individual customers, and customer personnel.
1.2. This Policy applies where we are acting as a data controller with respect to the personal data of such persons; in other words, where we determine the purposes and means of the processing of that personal data.
1.3. We use cookies on our website. Insofar as those cookies are not strictly necessary for the provision of our website and services, we will ask you to consent to our use of cookies when you first visit our website.
2.1. In Section 2, we have set out the general categories of personal data that we process and, in the case of personal data that we did not obtain directly from you, information about the source and specific categories of that data.
2.2. We may process data enabling us to get in touch with you ("contact data"). The contact data may include your name, email address, telephone number, postal address, and/or social media account identifiers. The source of the contact data is you and/or your employer. If you visit our website using a social media account, we will obtain elements of the contact data from the relevant social media account provider.
2.3. We may process information contained in or relating to any communication that you send to us or that we send to you ("communication data"). The communication data may include the communication content and metadata associated with the communication. Our website will generate the metadata associated with communications made using the website contact forms.
2.4. We may process data about your use of our website and services ("usage data"). The usage data may include your IP address, geographical location, browser type and version, operating system, referral source, length of visit, page views and website navigation paths, as well as information about the timing, frequency, and pattern of your service use. The source of the usage data is our analytics tracking system.
2.5. We may also process sensitive data related to your allergies and food preferences, with your explicit consent.
3.1. In Section 3, we have set out the purposes for which we may process personal data and the legal bases of the processing.
3.2. Operations – We may process your personal data for the purposes of operating our website, processing and fulfilment of inquiries, and providing our services. The legal basis for this processing is our legitimate interests, namely the proper administration of our website, services, and business or the performance of an agreement between you and us and/or taking steps, at your request, to enter into such an agreement.
3.3. Relationships and communications – We may process contact data and/or communication data for the purposes of managing our relationships, communicating with you by email, SMS, and/or telephone, providing support services and complaint handling. The legal basis for this processing is our legitimate interests, namely communications with our website visitors, service users, individual customers, and customer personnel, the maintenance of relationships, and the proper administration of our website, services, and business.
3.4. Direct marketing – We may process contact data for the purposes of creating and delivering relevant marketing communications to you. The legal basis for this processing is your consent or our legitimate interests, namely promoting our products and services. You may opt-out of receiving marketing communications at any time by using the unsubscribe link in the email or contacting us using the contact details provided in Section 8.
3.5. Sensitive data – We may process sensitive data, such as your allergies and food preferences, for the purpose of providing you with personalized services. The legal basis for this processing is your explicit consent, which you may withdraw at any time.
3.6. Automated decision-making and profiling – We may process your personal data for the purpose of automated decision-making or profiling to improve our services. The legal basis for this processing is our legitimate interests, namely enhancing the user experience and tailoring our services to your needs. We ensure that there are no legal or significant effects on you as a result of this processing.
4.1. Plaeto has not yet appointed a Data Protection Officer (DPO). If a DPO is appointed in the future, their contact details will be made available in this Privacy Policy and on our website.
5.1. Plaeto does not transfer personal data to countries outside the European Economic Area (EEA).
6.1. Plaeto does not collect personal data from children.
7.1. Plaeto has implemented appropriate technical and organizational measures to ensure the security of personal data, including encryption, access control, and regular security assessments. We continually review and update our security measures to protect your personal data in accordance with applicable data protection laws.
8.1. In the event of a personal data breach, Plaeto will promptly notify the affected data subjects and the relevant supervisory authority, in accordance with applicable data protection laws. Our procedure includes assessing the scope and impact of the breach, taking necessary steps to contain the breach, and communicating with affected parties to mitigate any potential harm.
9.1. Plaeto does not share personal data with third-party recipients.
10.1. We are committed to retaining personal data for no longer than necessary for the purposes for which it was collected, as outlined in Section 3. We have established specific retention periods for each category of personal data processed, which are outlined below.
10.2. Contact data will be retained for a maximum of two years following the date of the most recent contact between you and us, unless you specifically request deletion of your data prior to this date.
10.3. Communication data will be retained for a maximum of two years following the date of the communication in question, unless you specifically request the deletion of your data prior to this date.
10.4. Usage data will be retained for a maximum of two years following the date of collection, unless you specifically request the deletion of your data prior to this date.
10.5. Notwithstanding the other provisions of this Section 10, we may retain your personal data where such retention is necessary for compliance with a legal obligation to which we are subject, or in order to protect your vital interests or the vital interests of another natural person.
11.1. As an individual whose personal data is processed by us, you have certain rights under data protection law. These include the right to:
a) Access your personal data;
b) Rectify inaccurate personal data and to complete incomplete personal data;
c) Erase your personal data;
d) Restrict processing of your personal data;
e) Object to processing of your personal data;
f) Data portability of your personal data to another organization or to you;
g) Lodge a complaint with a supervisory authority; and
h) Withdraw consent to the extent that the legal basis of our processing of your personal data is consent.
11.2. These rights are subject to certain limitations and exceptions under applicable data protection laws. To exercise any of your rights, please contact us using the contact details provided in Section 12.
11.3. We may ask you to provide proof of your identity before we respond to any request you make in relation to your rights.
11.4. In cases where our processing of your personal data is based on your consent, you have the right to withdraw that consent at any time. The withdrawal of consent will not affect the lawfulness of processing before the withdrawal.
12.1. We may update this Privacy Policy from time to time by publishing a new version on our website. You should check this page occasionally to ensure you are happy with any changes to this policy. We may notify you of significant changes to this policy by email or through the private messaging system on our website.
13.1. This website is owned and operated by PLAETO SRL.
13.1. You can contact us:
a) by post, at Romania, str. Prelungirea Ghencea, nr 45, bl. D3, sc. A, ap. 82, Bragadiru, Ilfov, 077025
b) using our website contact form;
c) by telephone, at +40737275743; or
d) by email at contact@plaeto.io.
14.1. This Privacy Policy shall be governed by and construed in accordance with the laws of Romania. Any disputes relating to this Privacy Policy shall be subject to the exclusive jurisdiction of the courts of Romania.