Privacy Policy

Last updated: August 26, 2026

1. Introduction

DALEO Synergy ("we", "our", or "us") is committed to protecting your privacy and personal data. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you visit our website www.daleosynergy.eu or use our services.

We are based in Slovakia and comply with the General Data Protection Regulation (GDPR) and applicable EU and Slovak data protection laws.

2. Data Controller

DALEO Synergy
Email: business@daleosynergy.eu
Phone: +421 915 793 317
Website: www.daleosynergy.eu

3. Information We Collect

3.1 Information You Provide Directly

We collect information that you voluntarily provide to us, including:

  • Contact Information: Name, email address, phone number, company name
  • Communication Data: Messages sent through our contact forms
  • Newsletter Subscriptions: Email address for newsletter delivery
  • Consultation Requests: Business requirements, security needs, project details

3.2 Information Collected Automatically

When you visit our website, we may automatically collect:

  • Technical Data: IP address, browser type, operating system, device information
  • Usage Data: Pages visited, time spent on pages, links clicked, referring URLs
  • Cookies: See our Cookie Policy section below

4. Legal Basis for Processing (GDPR)

We process your personal data based on the following legal grounds:

  • Consent: When you subscribe to our newsletter or submit contact forms
  • Legitimate Interest: To improve our services, analyze website usage, and prevent fraud
  • Contractual Necessity: To fulfill service agreements and respond to inquiries
  • Legal Obligation: To comply with applicable laws and regulations

5. How We Use Your Information

We use the collected information for the following purposes:

  • Responding to your inquiries and consultation requests
  • Sending newsletters and marketing communications (with your consent)
  • Improving our website and services
  • Analyzing usage patterns and trends
  • Ensuring security and preventing fraud
  • Complying with legal obligations
  • Maintaining business records

6. Data Sharing and Disclosure

We do not sell your personal data. We may share your information with:

  • Service Providers: Hosting providers, email service providers, analytics tools (only as necessary to provide services)
  • Legal Requirements: When required by law or to protect our legal rights
  • Business Transfers: In connection with mergers, acquisitions, or asset sales

All third-party service providers are required to maintain appropriate security measures and process data only as instructed by us.

7. International Data Transfers

Your data may be transferred to and processed in countries outside the European Economic Area (EEA). When we transfer data internationally, we ensure appropriate safeguards are in place, such as:

  • EU-U.S. Data Privacy Framework certification
  • Standard Contractual Clauses approved by the European Commission
  • Adequacy decisions by the European Commission

8. Data Retention

We retain your personal data only for as long as necessary:

  • Contact Inquiries: 3 years from last contact
  • Newsletter Subscriptions: Until you unsubscribe
  • Service Contracts: Duration of contract + 7 years (for legal compliance)
  • Website Analytics: 12 months. Analytics records are aggregated statistics and contain no name, email address or IP address — see section 10

9. Your Rights Under GDPR

You have the following rights regarding your personal data:

  • Right of Access: Request copies of your personal data
  • Right to Rectification: Request correction of inaccurate data
  • Right to Erasure: Request deletion of your data ("right to be forgotten")
  • Right to Restrict Processing: Request limitation of data processing
  • Right to Data Portability: Receive your data in a structured, machine-readable format
  • Right to Object: Object to processing based on legitimate interests
  • Right to Withdraw Consent: Withdraw consent at any time (without affecting lawfulness of prior processing)

To exercise any of these rights, contact us at business@daleosynergy.eu. We will respond within 30 days.

10. Cookies and Tracking Technologies

We use no tracking cookies. We set no advertising, profiling or social media cookies, we embed no third-party pixels or trackers, and we do not sell or share any browsing data.

10.1 What We Store on Your Device

If you only read the public website, we store nothing on your device at all.

If you sign in to the client or administration area, your sign-in session is kept in your browser's local storage so that you stay signed in between pages. This storage is strictly necessary to provide a service you have asked for, and it is cleared when you sign out. Blocking it in your browser settings will prevent you from signing in, but the rest of the website will work normally.

Because we store nothing optional on your device, no consent is required under Article 5(3) of the ePrivacy Directive, and we therefore do not show a cookie consent banner.

10.2 Website Analytics

We measure website usage with Umami, an open-source analytics tool that we host ourselves at analytics.daleosynergy.eu. The data stays under our control: it is not shared with an advertising network and is not used to build a profile of you.

Umami sets no cookies and stores nothing on your device. Your IP address is used only while your request is being handled — to derive an approximate location (country) and a one-way hash that lets us count a visit — and is never stored. That hash is salted with a value that is rotated on a fixed schedule, so visits cannot be correlated back to an IP address or linked across rotations. We cannot identify you from analytics data, connect it to an enquiry you send us, or follow you to other websites.

The tracker honours your browser's "Do Not Track" setting: if you have it enabled, no analytics data is collected from your visit. We rely on legitimate interest (Article 6(1)(f) GDPR) for this measurement, and you may object at any time using the contact details in section 15.

11. Data Security

We implement appropriate technical and organizational measures to protect your personal data, including:

  • Encryption of data in transit (HTTPS/TLS)
  • Encryption of data at rest
  • Regular security assessments
  • Access controls and authentication
  • Employee training on data protection

However, no method of transmission over the internet is 100% secure. We cannot guarantee absolute security.

12. Children's Privacy

Our services are not directed to individuals under 16 years of age. We do not knowingly collect personal data from children. If you become aware that a child has provided us with personal data, please contact us immediately.

13. Changes to This Privacy Policy

We may update this Privacy Policy from time to time. We will notify you of material changes by:

  • Posting the updated policy on this page with a new "Last Updated" date
  • Sending an email notification (if you are subscribed to our newsletter)

Your continued use of our services after changes indicates acceptance of the updated policy.

14. Complaints to Supervisory Authority

You have the right to lodge a complaint with a supervisory authority if you believe we have not complied with data protection laws.

Slovak Data Protection Authority (Úrad na ochranu osobných údajov):
Hraničná 12
820 07 Bratislava
Slovakia
Website: dataprotection.gov.sk

15. Contact Us

If you have questions or concerns about this Privacy Policy or our data practices, please contact us:

Email: business@daleosynergy.eu
Phone: +421 915 793 317
Website: www.daleosynergy.eu