
Ekaterina Alexieva
PRIVACY POLICY
1. DATA CONTROLLER
The data controller responsible for the processing of personal data through this website is:
EЪРКУЛ EOOD
UIC: 208749103
Registered office: Kurtovo Konare, Bulgaria
Website: www.ekaterinaalexieva.com
E-mail: ekaterina.alexievaa@gmail.com
For any questions regarding the processing of personal data, you may contact us at the e-mail address provided above.
2. WHAT PERSONAL DATA WE MAY PROCESS
Depending on how you use the website, we may process:
-
first and last name;
-
e-mail address;
-
telephone number, where provided;
-
information contained in an enquiry submitted by you;
-
information provided through forms or questionnaires;
-
information necessary to arrange a consultation;
-
information necessary for the performance of a contract;
-
information related to payments made;
-
data necessary for the issuance of accounting documents;
-
technical information about your device and browser;
-
IP address and information about your use of the website;
-
data obtained through cookies and similar technologies, where applicable.
We do not collect personal data that is not necessary for the relevant purpose.
3. PURPOSES FOR WHICH WE PROCESS PERSONAL DATA
3.1. Processing enquiries
When you contact us through a contact form or by e-mail, we use the information you provide to process and respond to your enquiry.
3.2. Arranging consultations
When you request a consultation, your data may be used to arrange the selected time, confirm the booking and communicate with you regarding the service.
3.3. Provision of services
Personal data may be processed for the purpose of entering into and performing a contract for the provision of services.
3.4. Payments
When you make a payment, certain data may be processed by the payment service provider used for the purpose of processing and confirming the payment.
3.5. Accounting and legal obligations
Personal data may be processed for the issuance and storage of accounting documents and for compliance with obligations arising from applicable legislation.
3.6. Website security and functionality
Certain technical data may be processed for the purposes of security, prevention of misuse and the proper functioning of the website.
3.7. Analytics and marketing
Where analytical or marketing tools are activated on the website, the relevant data will be processed only where the required consent has been obtained, where such consent is required by law.
4. LEGAL BASES FOR PROCESSING
Depending on the specific purpose, the processing of personal data may be based on:
-
the necessity to perform a contract or to take steps at the request of the data subject prior to entering into a contract;
-
compliance with a legal obligation;
-
the legitimate interests of the Data Controller, where the applicable legal requirements are met;
-
consent provided by the data subject.
Where processing is based on consent, consent may be withdrawn at any time. Withdrawal of consent does not affect the lawfulness of processing carried out before the withdrawal.
Consent must be freely given, specific, informed and unambiguous.
5. DISCLOSURE OF PERSONAL DATA TO THIRD PARTIES
Where necessary, personal data may be disclosed to:
-
hosting and technical service providers;
-
the platform through which the website is built and maintained;
-
online booking system providers;
-
payment service providers;
-
e-mail service providers;
-
accountants and accounting service providers;
-
technical support providers;
-
competent public authorities where required by law.
Only data necessary for the relevant purpose or for compliance with a legal obligation will be disclosed to third parties.
6. DATA PROCESSED BY THIRD-PARTY SERVICE PROVIDERS
The website may use third-party services, including technological, analytical, payment, communication or marketing services.
Depending on the specific service, these providers may process certain personal or technical data.
Where applicable, such processing is carried out on the basis of contractual arrangements and appropriate safeguards for the protection of personal data.
7. INTERNATIONAL DATA TRANSFERS
Some technology service providers may process data outside the European Economic Area.
Where applicable, such transfers are carried out in compliance with the requirements of the GDPR and on the basis of an appropriate legal basis and suitable safeguards.
8. DATA RETENTION
Personal data is retained only for the period necessary to fulfil the specific purpose for which it was collected, unless a longer period is required or permitted by law.
Enquiry data is retained for the period necessary to process the enquiry and for subsequent communication.
Data related to contractual relationships is retained for the duration of the contract and for the applicable statutory periods following its termination.
Accounting and tax documents are retained for the periods required by applicable legislation.
9. RIGHTS OF DATA SUBJECTS
Subject to the applicable legal conditions, you have the right to:
-
obtain access to your personal data;
-
request the correction of inaccurate or incomplete data;
-
request the deletion of your personal data;
-
request restriction of processing;
-
object to certain types of processing;
-
receive your personal data in a structured, commonly used and machine-readable format, where applicable;
-
withdraw consent where processing is based on consent;
-
not be subject to a decision based solely on automated processing, where the applicable legal conditions are met.
These rights may be subject to limitations in the cases provided for by applicable law.
10. EXERCISING YOUR RIGHTS
To exercise your rights, you may submit a request to:
The request should contain sufficient information to identify the requester and to enable us to process the specific request.
11. RIGHT TO LODGE A COMPLAINT
If you believe that the processing of your personal data violates applicable law, you have the right to lodge a complaint with the competent supervisory authority.
For the Republic of Bulgaria, this is:
Commission for Personal Data Protection (CPDP)
Address: 2 Prof. Tsvetan Lazarov Blvd., Sofia 1592, Bulgaria
E-mail: kzld@cpdp.bg
Website: www.cpdp.bg
12. DATA SECURITY
The Data Controller takes appropriate technical and organisational measures to protect personal data against accidental or unlawful destruction, loss, alteration, unauthorised disclosure or access.
Despite the measures taken, no system for transmitting or storing information over the internet can be guaranteed to be completely secure.
13. COOKIES
The website uses cookies and similar technologies depending on the functionalities activated on the website.
Detailed information about the cookies used, their purposes and how consent is managed is provided in the Cookie Policy.
14. CHANGES TO THIS PRIVACY POLICY
This Privacy Policy may be updated when there are changes to the way personal data is processed, the services used or applicable legislation.
The current version of the Privacy Policy is published at: