Binah Entertainment Kft.
1021 Budapest, Üdülő út 29 | Tax: 32397871-2-41 | EU VAT: HU32397871

PRIVACY POLICY / ПОЛИТИКА КОНФИДЕНЦИАЛЬНОСТИ
Revision date / Дата редакции: 12 January 2026

1. What This Privacy Policy Governs / Что регулирует настоящая Политика
1.1. This Privacy Policy (hereinafter "Policy") describes how Binah Entertainment Kft., company registration number [CÉGJEGYZÉKSZÁM — ЗАПОЛНИТЬ], tax number 32397871-2-41, EU VAT number HU32397871, acting as the data controller within the meaning of the General Data Protection Regulation (EU) 2016/679 ("GDPR"), Hungarian Act CXII of 2011 on Informational Self-Determination and Freedom of Information, and Hungarian Act CVIII of 2001 on Electronic Commerce (Ekertv.) (hereinafter "Controller"), collects, uses, transfers, stores, and otherwise processes personal information of natural persons.
1.2. This Policy applies to all information, including personal data within the meaning of applicable EU and Hungarian law, that the Controller receives about you in connection with your use of the website www.integrium.eu, including all pages and subdomains, as well as associated bots, services, and linked platforms (hereinafter collectively "Website and Services"), and in the course of concluding and performing any agreements and contracts with you.
1.3. This Policy applies to the processing of personal data of all users and clients, regardless of which country or device you use to access the Website and Services, and regardless of whether the interaction takes place entirely electronically or through other means of communication.
1.4. The Services are primarily directed at persons located within the European Union and European Economic Area. The Controller does not target services at persons located in the Russian Federation and does not store personal data on servers located in the Russian Federation.
1.5. Binah Entertainment Kft. may receive personal information about you both directly from you and from its partners whose websites, programs, products, or services you use, as well as from other sources containing publicly available personal data, to the extent permitted by applicable law. Where partners transfer personal data to the Controller, such transfer is carried out only on the legal bases provided by the GDPR and in accordance with agreements between the Controller and each partner.
1.6. The Controller does not collect personal data through social media platforms' analytical tools (tracking pixels, SDKs, conversion APIs, or similar technologies). Where the Controller maintains accounts on social media platforms (Instagram, Facebook, Telegram), communication through these platforms is governed by the respective platform's own terms of service and privacy policy. Social Media Channels are used for advertising and responding to inquiries only; all orders and payments are processed through the Website. Personal data provided by users via direct messages on social media platforms is processed by the Controller only to the extent necessary for responding to inquiries and providing information about Services, and is transferred to the Controller's own systems for further processing in accordance with this Policy.
1.7. Use of the Website and Services may be subject to additional terms, including user agreements, offers, and specific conditions for particular programs, products, and services. Such documents may supplement this Policy regarding personal data processing or establish special rules for specific types of processing. In case of discrepancy, the specific terms prevail, provided they do not contradict mandatory data protection law.
2. Data Controller / Кто обрабатывает информацию
Data Controller: Binah Entertainment Kft.
Registered office: 1021 Budapest, Üdülő út 29
Tax number: 32397871-2-41 | EU VAT: HU32397871
Company registration number: [CÉGJEGYZÉKSZÁM — ЗАПОЛНИТЬ]
Managing Director: Leonid Gutkin
Email: integrium.eu@gmail.com
Data Protection Contact: integrium.eu@gmail.com
Note: The Controller has assessed its processing activities against Article 37(1) GDPR and determined that appointment of a Data Protection Officer (DPO) is not required, as the Controller's core activities do not consist of processing operations requiring regular and systematic monitoring of data subjects on a large scale, nor processing of special categories of data on a large scale. The above contact serves as the designated point of contact for all data protection matters.
Website: www.integrium.eu
3. Purposes of Processing / Цели обработки
3.1. The protection of your personal information and your privacy is of paramount importance to the Controller. When you use the Website and Services, the Controller protects and processes your personal information in strict accordance with applicable legislation.
3.2. Personal data is processed exclusively for the purposes necessary for providing consulting and educational services, maintaining the Website and Services, and complying with EU and Hungarian law. Processing is carried out only to the extent necessary to achieve the following purposes:
3.3. Conclusion and performance of contracts
Personal data is used for reviewing applications, preparing, concluding, and performing contracts for consulting and educational services, delivering consultations and educational programs, maintaining client interaction history, and ensuring proper performance of obligations.
3.4. Client communication
Personal data is processed to respond to your inquiries, provide necessary materials, explanations, notifications about changes in services, as well as to organize consultations, meetings, and other interactions within the framework of services provided.
3.5. Payment processing and financial accounting
Personal data is used for issuing invoices, processing payments, maintaining accounting and tax records, preparing primary documents, storing payment-related information, and fulfilling obligations established by financial legislation.
3.6. Compliance with legal obligations
Personal data is processed to comply with Hungarian and EU law, including accounting and tax regulations, consumer protection requirements, and responding to lawful requests from government authorities.
3.7. Website and Services operation, monitoring, and security
Personal data may be processed to support the technical operation of the Website and Services, prevent unauthorized access and abuse, detect and resolve technical issues, and ensure data protection and infrastructure stability.
3.8. Improving service quality and business development
Personal data is used for analyzing client needs, studying interest in various consulting and educational products, improving the content and structure of the Website and Services, developing new formats of participation and interaction, and for internal analytics and professional activity planning.
3.9. Marketing communication and service information
With your consent or within the limits of legitimate interest, the Controller may use your contact data to send information about new services, updates, events, educational materials, and other related communications. You may opt out of such communications at any time.
3.10. In all cases, processing is carried out only to the extent necessary for the specific purpose, and legal bases are determined in accordance with GDPR requirements and disclosed in this Policy.
4. Categories of Personal Data Collected / Какие данные собираются
4.1. The Controller collects and processes only those personal data that are necessary for providing consulting and educational services, ensuring the operation of the Website and Services, and complying with EU and Hungarian law. The scope of collected information depends on whether you use specific features, create an account, or interact with the Controller through forms, bots, or other communication channels.
4.2. If you use the Website without registration, the Controller receives a limited set of technical data. If you create an account or provide data as part of a consultation or educational program, this information may be linked and used within your client profile.
4.3. The Controller assumes that the information you provide is accurate, current, and sufficient, and that you update your data in a timely manner if it changes.
(a) Personal information provided voluntarily
Full name; country of residence; contact details including phone number and email address; information provided when filling out forms, sending messages, booking a consultation, enrolling in an educational program, or entering into a contract; data you provide in the course of a consultation or educational program, if necessary for the service purpose.
(b) Technical information collected automatically
IP address; date and time of access; browser and device technical data; cookie data and similar technologies; information about interaction with Website and Services elements.
(c) Activity and usage data
Data on pages, sections, or features used; course progress, completion status, quiz scores, session duration; navigation and interaction history; data on use of bots and services related to consulting and educational products.
(d) Payment information
Data on the fact and method of payment; partial payment identifiers necessary for accounting and transaction confirmation. The Controller does not receive full payment card data if the payment is processed by a third-party payment provider.
(e) Communication data
Content of emails, chat messages, consultation notes, support tickets, files shared during sessions.
(f) Information from partners
The Controller may receive data from partners or services through which you interact with consulting and educational services (e.g., booking services, payment systems, communication platforms). Such transfers are permitted only on legal bases in accordance with the GDPR.
4.4. The Controller does not intentionally request or collect special categories of personal data (racial/ethnic origin, political views, health data, biometric data, etc.). If you voluntarily provide such data during a consultation or communication, the Controller processes it on the basis of your explicit consent (Article 9(2)(a) GDPR), obtained through the Informed Consent for Processing of Sensitive Data form. In the absence of such consent, or after its withdrawal, the Controller may process such data only to the extent necessary for establishing, exercising, or defending legal claims (Article 9(2)(f) GDPR).
4.5. The Controller takes additional measures to protect any special categories of personal data, including restricting access, minimizing scope and retention period, and applying enhanced technical and organizational security measures.
4.6. The Controller does not carry out automated decision-making that significantly affects your rights and freedoms, and does not use personal data for profiling that may lead to legal consequences for you.
4.7. The Controller does not collect data for the purpose of creating a "user portrait" to the degree that could significantly affect your rights and freedoms.
5. Legal Bases for Processing / Правовые основания обработки
5.1. The Controller processes personal data only where there is a sufficient legal basis under GDPR and Hungarian law.
5.2. Article 6(1)(b) GDPR — Performance of a contract
Processing necessary for concluding and performing contracts, including consulting service agreements, educational program enrollments, Website terms of use, and other agreements. This includes ensuring Website functionality, providing access to materials, organizing communications, processing requests, and preparing documents.
5.3. Article 6(1)(c) GDPR — Legal obligation
Processing necessary for compliance with legal obligations, including accounting and tax requirements under Hungarian Act C of 2000 on Accounting (retention of invoicing data: 8 years from invoice date), consumer protection obligations, and responses to lawful requests from authorities.
5.4. Article 6(1)(f) GDPR — Legitimate interest
Processing necessary for the Controller's legitimate interests where such processing does not unduly affect your interests, fundamental rights, and freedoms. The Controller conducts a balancing test and takes measures to ensure its legitimate interests do not override your legal protections. This includes: understanding how you interact with the Website and Services; improving and personalizing services; offering relevant services and materials; ensuring security and fraud prevention (log data: 12 months); internal analytics and business planning.
5.5. Article 6(1)(a) GDPR — Consent
Where processing cannot be based on contract, legal obligation, or legitimate interest, it is carried out on the basis of your separate, freely given, informed, and unambiguous consent. This includes: email marketing (double opt-in; until withdrawal of consent); analytics cookies (26 months or until withdrawal); video recording of consultations (separate consent; max 12 months).
5.6. When requesting consent, the Controller ensures it is freely given, specific, informed, and unambiguous, expressed through a clear affirmative action (e.g., checking a box, selecting settings, confirming an action). You may withdraw consent at any time. Withdrawal does not affect the lawfulness of processing carried out prior to withdrawal, but may result in inability to provide certain services.
5.7. You have no legal obligation to provide personal data when simply visiting the Website. However, where personal data is necessary for contract performance, service delivery, or legal compliance, non-provision may make it impossible to conclude a contract or provide services.
6. Retention Periods / Сроки хранения

Data Category / Purpose

Retention Period

Basis

Contract performance (orders, access, accounts)

Duration of contract + 5 years

Hungarian Civil Code limitation period

Invoicing and accounting records

8 years from invoice date

Hungarian Act C of 2000 (Számviteli törvény)

Consulting session data, notes

Duration of engagement + 2 years

Contract + legitimate interest

Educational program progress and records

Duration of access + 2 years

Contract performance

Customer support communications

Duration of contract + 1 year

Contract + legitimate interest

Email marketing data

Until withdrawal of consent

Consent (Art. 6(1)(a))

Analytics / cookies data

26 months / until consent withdrawn

Consent (Art. 6(1)(a))

Security logs (IP, access logs)

12 months

Legitimate interest (Art. 6(1)(f))

Video recordings of consultations

Max 12 months / until consent withdrawn

Explicit consent (Art. 6(1)(a))

Consent-based data (general)

Until withdrawal

Consent (Art. 6(1)(a))


6.1. Personal data is retained only for the period necessary to achieve the processing purposes and comply with legal requirements. Retention is determined by the nature of services, contractual obligations, accounting/tax law, and GDPR minimization principles.
6.2. When personal data is no longer needed and no legal basis for retention exists, the Controller ensures its deletion, destruction, or irreversible anonymization, with appropriate security measures to prevent unauthorized access and recovery.
6.3. The Controller regularly reviews stored data for relevance, redundancy, and compliance with retention periods.
7. Data Security / Как защищены данные
7.1. The Controller takes all necessary legal, organizational, and technical measures to protect personal data from unauthorized access, accidental loss, alteration, destruction, disclosure, misuse, and any other forms of processing inconsistent with GDPR requirements.
7.2. In most cases, processing is carried out automatically using information systems that do not require personnel access to data. Where access is required, it is granted only to persons who need it for specific tasks within their professional duties and only to the extent required.
7.3. All persons with access to personal data must comply with the Controller's internal rules on confidentiality, integrity, and security. Confidentiality obligations continue after termination of employment or engagement.
7.4. Technical and organizational measures include: (a) encrypted transmission channels and encryption technologies; (b) storage on protected servers in compliance with EU requirements; (c) regular software updates; (d) access controls and user rights differentiation; (e) activity monitoring to detect unauthorized access; (f) data backup and recovery; (g) technical mechanisms preventing unauthorized modification and destruction; (h) risk assessments based on the nature and scale of processed data.
7.5. All security measures account for the current state of technology, economically reasonable implementation costs, the nature and volume of data, potential risks to your rights and freedoms, and GDPR requirements. The Controller regularly evaluates effectiveness and updates measures as needed.
8. Recipients and Data Transfers / Кому передаются данные
8.1. The Controller may transfer personal data only where necessary for the processing purposes stated in this Policy, in compliance with the GDPR and Hungarian law, strictly within applicable legal bases and security measures.
8.2. Internal transfers
Access is granted only to persons who need it for their professional duties. Such persons must maintain confidentiality and use data only for purposes specified in this Policy.
8.3. Third-party transfers
The Controller may transfer personal data to third parties processing data either as independent controllers or as processors acting on documented instructions. These include:
(a) Partners providing technical solutions, digital tools, and platforms necessary for consulting and educational activities, Website operation, material exchange, information storage, online interactions, and booking.
(b) IT service providers, consultants, and persons involved in Website security, including threat detection, fraud prevention, and anomalous activity analysis.
(c) Payment organizations: banks, payment instrument providers, international payment systems, and other financial institutions involved in payment processing.
(d) Accounting software providers — for invoicing and financial record-keeping.
(e) Email service providers — for transactional and marketing emails.
(f) Video conferencing platforms — for online consultations.
(g) Course/LMS platforms — for delivering Educational Programs.
(h) Analytics providers — for website analytics (with consent).
8.4. Other transfers
(a) Hungarian tax authorities (NAV) — as required by law.
(b) Courts, law enforcement, and government authorities — in response to lawful requests.
(c) Professional advisors (lawyers, accountants) — under confidentiality obligations.
(d) Successors in case of reorganization, asset transfer, or other forms of legal succession.
(e) Any third party with your separate consent, only within the scope of consent given.
(f) Third parties where necessary to protect the legal rights of the Controller or others, including in cases of breach of terms, this Policy, or applicable law.
8.5. The Controller does not sell personal data to third parties.
8.6. All transfers are carried out within the necessary scope, with security measures required by GDPR. The Controller requires recipients to maintain confidentiality, ensure security, and prohibit use for purposes other than those for which data was transferred.
9. International Data Transfers / Трансграничная передача
9.1. Personal data is primarily processed and stored within the European Union / European Economic Area. The Controller does not store personal data on servers located in the Russian Federation.
9.2. Personal data may be transferred and processed outside the EU/EEA where the Controller's service providers are located in third countries (e.g., US-based cloud or payment services). In such cases, the Controller ensures appropriate safeguards under Articles 44-49 GDPR.
9.3. Safeguards include: (a) European Commission adequacy decisions (e.g., EU-US Data Privacy Framework for certified US entities); (b) Standard Contractual Clauses (SCCs) adopted by the European Commission; (c) additional technical and organizational measures including encryption, pseudonymization, and access restrictions.
9.4. You are informed about the fact and legal basis of international transfers, and about potential risks that may persist despite the Controller's safeguards, in accordance with current guidance from European data protection authorities.
9.5. Copies of relevant safeguards may be obtained by contacting integrium.eu@gmail.com.
10. Your Rights / Ваши права
10.1. You have all rights granted to data subjects under the GDPR and Hungarian law. The Controller ensures their implementation in good faith, in a timely manner, and in full compliance with applicable legislation.
(a) Right of access (Art. 15): You may request confirmation of processing, a copy of your data, and information about purposes, categories, recipients, and retention periods.
(b) Right to rectification (Art. 16): You may request correction of inaccurate or completion of incomplete data. If you have an account, you may update data through the interface.
(c) Right to erasure (Art. 17): You may request deletion where data is no longer necessary, consent is withdrawn, or processing is unlawful. This right is limited where retention is required by law (e.g., invoices: 8 years).
(d) Right to withdraw consent (Art. 7(3)): You may withdraw consent at any time. Withdrawal does not affect lawfulness of prior processing but may result in inability to provide certain services.
(e) Right to restriction of processing (Art. 18): You may request temporary cessation of processing in certain circumstances.
(f) Right to object (Art. 21): You may object to processing based on legitimate interest, including certain analytics or marketing. For direct marketing, the right to object is absolute.
(g) Right to data portability (Art. 20): You may receive your data in a structured, machine-readable format (JSON, CSV) where processing is based on consent or contract.
(h) Right not to be subject to automated decision-making (Art. 22): The right not to be subject to decisions based solely on automated processing with legal or significant effects.
10.2. How to exercise your rights
(a) Use available features in your account, if applicable.
(b) Send a request to integrium.eu@gmail.com or by post to 1021 Budapest, Üdülő út 29.
(c) The Controller responds within 1 month (extendable by 2 months for complex requests, with notification within the first month). Response is provided free of charge unless manifestly unfounded or excessive.
(d) Identity verification is required before processing requests.
11. Withdrawal of Consent / Отзыв согласия
11.1. If processing is based on consent, you may withdraw it at any time. Withdrawal does not affect lawfulness of prior processing.
11.2. Withdrawal may result in cessation of services that cannot be provided without consent-based processing.
11.3. To withdraw consent, use settings in the Services (if available) or contact the Controller at integrium.eu@gmail.com. The Controller will cease consent-based processing, except where continued processing is required for legal obligations or defense of legal claims.
12. Right to Lodge a Complaint / Право на жалобу
12.1. You have the right to lodge a complaint with the competent supervisory authority. In Hungary:
Nemzeti Adatvédelmi és Információszabadság Hatóság (NAIH)
Address: 1055 Budapest, Falk Miksa utca 9-11.
Phone: +36 (1) 391-1400
Email: ugyfelszolgalat@naih.hu
Website: www.naih.hu
12.2. Residents of other EU/EEA states may lodge a complaint with the supervisory authority of their country of habitual residence (Art. 77 GDPR).
13. Data Breach Notification / Уведомление о нарушениях
13.1. In the event of a personal data breach, the Controller notifies NAIH within 72 hours (Art. 33 GDPR), unless the breach is unlikely to result in risk to rights and freedoms.
13.2. Where the breach is likely to result in high risk, the Controller communicates to affected data subjects without undue delay (Art. 34 GDPR).
13.3. The Controller maintains a Data Breach Register documenting all breaches, effects, and remedial actions.
14. Children's Data / Данные несовершеннолетних
14.1. Services are primarily directed at persons aged 16 and over. The Controller does not knowingly collect personal data from children under 16 without the verifiable consent of a parent or legal guardian. Persons under 16 may use the Services only with such consent, in accordance with Section 2.3a of the General Terms and Conditions. If the Controller discovers that personal data of a child under 16 has been collected without proper parental consent, such data is deleted promptly.
15. Changes and Updates / Изменения Политики
15.1. The Controller may periodically review and update this Policy. The Controller undertakes not to make substantial changes that would unreasonably restrict your rights or change legal bases without proper notification.
15.2. Material changes affecting processing scope, purposes, data categories, recipients, or your rights will be communicated in advance or at the time of taking effect, via the Website (notice, banner, or pop-up) and, where possible, via email.
15.3. The current version is always available on the Website. The revision date at the top indicates whether the Policy has changed. Where applicable law requires separate consent for certain changes, such changes take effect only upon obtaining consent.
16. Questions and Suggestions / Вопросы и предложения
The Controller welcomes your questions and suggestions regarding this Policy. You may use integrium.eu@gmail.com to send requests about exercising your rights or complaints regarding incorrect processing of your personal data.

Binah Entertainment Kft.
Managing Director: Leonid Gutkin
Email: integrium.eu@gmail.com

ПОЛИТИКА КОНФИДЕНЦИАЛЬНОСТИ
Дата редакции: 12 января 2026 г.
Перевод на русский язык для удобства. Юридически обязывающая — английская версия.

1. Что регулирует настоящая Политика
1.1. Настоящая Политика описывает, как Binah Entertainment Kft., рег. номер [CÉGJEGYZÉKSZÁM — ЗАПОЛНИТЬ], налоговый номер 32397871-2-41, EU VAT HU32397871, действующая как контролёр персональных данных в соответствии с GDPR (ЕС) 2016/679, венгерским Законом CXII 2011 г. и Законом CVIII 2001 г. об электронной коммерции (Ekertv.), собирает, использует, передаёт, хранит и иным образом обрабатывает персональные данные.
1.2. Политика применяется ко всей информации, которую Контролёр получает о вас в связи с использованием сайта www.integrium.eu, включая все страницы, поддомены, ботов и связанные сервисы, а также в ходе заключения и исполнения договоров.
1.3. Услуги ориентированы на лиц, находящихся на территории ЕС/ЕЭЗ. Контролёр не направляет услуги на лиц, находящихся на территории РФ, и не хранит персональные данные на серверах в РФ.
1.4. Контролёр не собирает персональные данные через аналитические инструменты соцсетей (пиксели, SDK). Коммуникация через Instagram, Facebook, Telegram регулируется условиями соответствующих платформ. Каналы соцсетей используются для рекламы и ответов на запросы; все заказы и оплаты осуществляются через Сайт. Данные из директ-сообщений обрабатываются только для ответов на запросы и предоставления информации об Услугах.
2. Контролёр данных
Binah Entertainment Kft.
Адрес: 1021 Budapest, Üdülő út 29 | Налоговый: 32397871-2-41 | EU VAT: HU32397871
Директор: Leonid Gutkin | Email: integrium.eu@gmail.com
Примечание: Контролёр оценил свою деятельность по критериям ст. 37(1) GDPR и установил, что назначение Уполномоченного по защите данных (DPO) не требуется. Контактное лицо по вопросам защиты данных указано выше.
3. Цели обработки
3.1. Заключение и исполнение договоров: обработка заявок, оказание консультационных и образовательных услуг, сопровождение клиентов.
3.2. Коммуникация: ответы на запросы, уведомления, организация консультаций.
3.3. Финансовый учёт: выставление счетов, обработка платежей, бухгалтерский и налоговый учёт.
3.4. Юридические обязанности: соблюдение законодательства Венгрии и ЕС.
3.5. Безопасность: защита Сайта, предотвращение несанкционированного доступа.
3.6. Улучшение услуг: анализ потребностей, развитие продуктов.
3.7. Маркетинг: при наличии согласия — рассылки о новых услугах. Отписка в любое время.
4. Категории данных
(а) Добровольно предоставленные: ФИО, страна, email, телефон, данные из форм и консультаций.
(б) Технические: IP, дата/время, браузер, устройство, cookies.
(в) Данные активности: посещённые страницы, прогресс курсов, история обращений.
(г) Платёжные: факт и способ оплаты (полные данные карт не хранятся).
(д) Коммуникации: переписка, заметки консультаций, обращения в поддержку.
4.4. Контролёр не собирает намеренно специальные категории данных (ст. 9 GDPR). Если вы добровольно сообщаете такие данные в ходе консультации, обработка осуществляется на основании вашего явного согласия (ст. 9(2)(a) GDPR), полученного через форму согласия на обработку чувствительных данных. При отзыве согласия — обработка только для защиты правовых требований (ст. 9(2)(f)).
4.5. Автоматизированного принятия решений и профилирования не осуществляется.
5. Правовые основания
(а) Ст. 6(1)(b) — исполнение договора.
(б) Ст. 6(1)(c) — юридическая обязанность (счета: 8 лет по Számviteli törvény).
(в) Ст. 6(1)(f) — законный интерес (безопасность: логи 12 мес; аналитика; улучшение услуг).
(г) Ст. 6(1)(a) — согласие (маркетинг: double opt-in; cookies: 26 мес; видеозапись: макс 12 мес).
Согласие можно отозвать в любое время. Отзыв не влияет на законность предшествующей обработки.
6. Сроки хранения
Исполнение договора: срок договора + 5 лет. Счета: 8 лет. Консультации: срок + 2 года. Образовательные программы: срок доступа + 2 года. Поддержка: срок + 1 год. Маркетинг: до отзыва согласия. Аналитика: 26 мес. Логи безопасности: 12 мес. Видеозапись: макс 12 мес.
7. Безопасность данных
Шифрование, защищённые серверы, контроль доступа, мониторинг, резервное копирование, регулярные обновления. Доступ — только уполномоченным лицам.
8. Кому передаются данные
Партнёрам (хостинг, платёжные системы, бухгалтерия, email-сервисы, видеосвязь, LMS, аналитика). NAV (налоговая). Суды — по запросу. Юристам — под обязательством конфиденциальности. Контролёр не продаёт данные.
9. Международная передача
Данные хранятся и обрабатываются преимущественно в ЕС/ЕЭЗ. Контролёр не хранит данные на серверах в РФ. При передаче данных за пределы ЕС (например, в США, где расположены облачные/платёжные провайдеры) — применяются решения об адекватности, SCC и дополнительные меры шифрования.
10. Ваши права
Доступ (ст. 15), исправление (ст. 16), удаление (ст. 17), ограничение (ст. 18), переносимость (ст. 20), возражение (ст. 21), отзыв согласия (ст. 7(3)), защита от автоматических решений (ст. 22).
Запросы: integrium.eu@gmail.com или почтой на 1021 Budapest, Üdülő út 29. Ответ: 1 месяц (продление ещё на 2 месяца, т.е. до 3 месяцев, для сложных запросов). Бесплатно.
11. Отзыв согласия
Вы вправе отозвать согласие в любое время, обратившись по адресу integrium.eu@gmail.com или изменив настройки cookie. Отзыв не влияет на законность обработки, осуществлённой до момента отзыва. После отзыва Контролёр прекращает обработку на основании согласия, но может продолжить обработку на ином правовом основании (например, исполнение договора или юридическая обязанность).
12. Право на жалобу
NAIH: 1055 Budapest, Falk Miksa utca 9-11. Тел: +36 (1) 391-1400. Email: ugyfelszolgalat@naih.hu. Сайт: www.naih.hu.
Резиденты других стран ЕС — надзорный орган своей страны (ст. 77 GDPR).
13. Уведомление о нарушениях
Контролёр уведомляет NAIH в течение 72 часов (ст. 33). При высоком риске — уведомление субъектов (ст. 34).
14. Данные несовершеннолетних
14.1. Услуги ориентированы преимущественно на лиц от 16 лет. Контролёр не собирает данные лиц младше 16 лет без подтверждённого согласия родителя или законного представителя. Лица младше 16 лет могут пользоваться Услугами только с таким согласием (см. п. 2.3a GTC). При обнаружении данных лица младше 16 лет без надлежащего согласия — данные удаляются.
15. Изменения Политики
Контролёр вправе обновлять Политику. О существенных изменениях — уведомление на Сайте и/или по email. Актуальная версия всегда на Сайте.