1. Controller of your personal data
The controller of personal data processed through www.danex.ro is DANEX ECHIPAMENTE S.R.L..
2. Scope of this policy
This policy explains what data we may process when you visit the website, contact us by email or enter into a professional or commercial relationship with Danex. Additional notices may apply to processing specific to a contract or project.
3. Categories of data processed
- Identification and contact data: first and last name, position, company, email address, phone number and other data you choose to provide.
- Correspondence data: message content, technical or commercial enquiries, documents and project-related information.
- Professional and commercial data: represented company, role in the project, enquiry history and information needed to manage the B2B relationship.
- Technical browsing data: IP address, browser/device type, technical logs, security information and, where applicable, data collected through cookies or similar technologies.
Please avoid sending special categories of personal data unless they are strictly necessary for the enquiry addressed to Danex.
4. Purposes and legal bases for processing
| Purpose | Data used | Legal basis |
|---|---|---|
| Responding to enquiries and preparing a collaboration | Contact data, correspondence, project information | Steps taken at the person's request before entering into a contract and/or legitimate interest in responding to B2B communications |
| Managing the commercial and contractual relationship | Professional and contact data, project information | Performance of a contract, legal obligations and legitimate interests |
| Compliance with legal obligations | Data required by applicable legislation | Legal obligation |
| Website security and abuse prevention | Technical data, logs, IP | Legitimate interest in digital-infrastructure security |
| Preferences and statistics, if enabled | Cookie / similar-technology data | Consent, where required by law |
5. Where the data comes from
We receive data mainly directly from you when you write to or communicate with the Danex team. Some technical data is generated automatically by your browser, website infrastructure or technical providers used to deliver and secure the site.
6. Who we may disclose data to
Access to data is limited to persons who need it for the purposes described. Where appropriate, data may be disclosed to:
- hosting, infrastructure, security, email or IT service providers;
- providers involved in the technical administration of the website;
- legal and tax advisers, auditors or other professional advisers;
- technical partners, only where necessary for your enquiry or project and where a legal basis exists;
- public authorities where disclosure is required by law.
Danex does not sell personal data to third parties.
7. Transfers outside the European Economic Area
If a technical provider processes data outside the European Economic Area, Danex will use providers and transfer mechanisms permitted by applicable legislation, such as adequacy decisions or standard contractual clauses, where appropriate.
8. How long we keep data
We retain data only for as long as necessary for the purpose for which it was collected and to comply with legal obligations.
- Enquiries that do not lead to a contractual relationship may generally be retained for up to 24 months, for continuity of communication and protection of legitimate interests.
- Data relating to projects and contracts is retained for the duration of the relationship and afterwards in accordance with statutory archiving, limitation, tax and accounting periods.
- Technical logs are retained for periods proportionate to security and diagnostic needs.
9. Your rights
Under Regulation (EU) 2016/679, you may have the right of access, rectification, erasure, restriction, portability and objection and, for processing based on consent, the right to withdraw your consent at any time.
You can send a request to office@danex.ro. To protect your data, we may request reasonable information to verify your identity. We will respond within the period required by law, usually no later than one month after receiving the request.
10. Data security
We apply technical and organizational measures appropriate to the nature of the data and associated risks, including access controls, infrastructure updates, limitation of administrative rights and measures to protect communications and systems.
11. Automated decisions
The Danex website is not designed to make decisions producing legal effects on users solely by automated means and does not perform automatic commercial profiling through the website's public features.
13. Updating this policy
This policy may be updated when the website, Danex processes, technical providers or legal framework change. The current version is the one published on this page.
14. Data-protection contact
For questions or to exercise your personal-data rights, write to office@danex.ro with the subject “Data protection”.