Data Processing Policy

1. General Provisions
This policy on personal data processing is compiled in accordance with the requirements of the "Personal Data Protection Law" and defines the procedure for processing personal data and measures to ensure the security of personal data taken by Ekaterina Denisova (hereinafter referred to as the "Controller").
1.1. The Controller's primary goal and condition for conducting its activities is to respect the rights and freedoms of individuals when processing their personal data, including protecting the rights to privacy, personal, and family secrets.
1.2. This Controller's policy regarding personal data processing (hereinafter referred to as the "Policy") applies to all information that the Controller may obtain about visitors of the website.

2. Key Definitions Used in the Policy
2.1. Automated processing of personal data – processing of personal data using computer technology;
2.2. Blocking of personal data – temporary cessation of personal data processing (except in cases where processing is necessary to clarify personal data);
2.3. Website – a collection of graphical and informational materials, as well as computer programs and databases, providing their accessibility on the internet via the network address;
2.4. Personal data information system – a set of personal data contained in databases, and the information technologies and technical means ensuring their processing;
2.5. Depersonalization of personal data – actions resulting in the inability to determine the affiliation of personal data to a specific User or other subject of personal data without using additional information;
2.6. Processing of personal data – any action (operation) or set of actions (operations) performed with or without the use of automation tools with personal data, including collection, recording, systematization, accumulation, storage, refinement (updating, modification), retrieval, use, transfer (distribution, provision, access), depersonalization, blocking, deletion, destruction of personal data;
2.7. Controller – a government agency, municipal authority, legal or natural person, acting independently or jointly with other entities, organizing and (or) conducting the processing of personal data, as well as determining the purposes of personal data processing, the composition of personal data subject to processing, actions (operations) performed with personal data;
2.8. Personal data – any information related directly or indirectly to a specific or identifiable User of the website;
2.9. User – any visitor of the website;
2.10. Provision of personal data – actions aimed at disclosing personal data to a specific person or a specific group of persons;
2.11. Dissemination of personal data – any actions aimed at disclosing personal data to an indefinite group of persons (transferring personal data) or providing access to personal data for an unlimited number of persons, including the publication of personal data in mass media, placement on information and telecommunication networks, or providing access to personal data in any other way;
2.12. Cross-border transfer of personal data – transfer of personal data to the territory of a foreign state to the authorities of a foreign state, foreign individuals, or foreign legal entities;
2.13. Destruction of personal data – any actions resulting in the irreversible destruction of personal data with the impossibility of further restoring the content of personal data in the personal data information system and/or the destruction of material carriers of personal data.

3. The Controller is authorized to process the following User's personal data:
3.1. Surname, First Name,
3.2. Email address;
3.3. Phone numbers;
3.4. Social media link;
3.5. Additionally, the website collects and processes anonymized data about visitors (including "cookie" files) using internet statistics services.
3.6. The above-mentioned data, further referred to as Personal Data, are collectively defined in this Policy.

4. Purposes of Personal Data Processing
4.1. The purpose of processing User's personal data is to inform the User through sending emails; providing access to services, information, and/or materials available on the website.
4.2. The Controller also has the right to send notifications to the User about new products and services, special offers, and various events. The User can always opt out of receiving informational messages by sending an email to the Controller at the email address with the subject line "Opt-Out from Notifications about New Products, Services, and Special Offers."
4.3. Anonymized User data collected through internet statistics services is used to gather information about User actions on the website, improve the website's quality and content.

5. Legal Basis for Personal Data Processing
5.1. The Controller processes the User's personal data only if they are provided and/or submitted by the User independently through special forms located on the website. By filling out the appropriate forms and/or submitting their personal data to the Controller, the User expresses their consent to this Policy.
5.2. The Controller processes anonymized User data if it is allowed in the User's browser settings (enabling the storage of "cookie" files and the use of JavaScript technology).

6. Procedure for Collecting, Storing, Transferring, and Other Types of Personal Data Processing
The security of personal data processed by the Controller is ensured through the implementation of legal, organizational, and technical measures necessary to fully comply with the requirements of the current legislation in the field of personal data protection.
6.1. The Controller ensures the security of personal data and takes all possible measures to prevent unauthorized access to personal data.
6.2. The User's personal data will never, under any circumstances, be transferred to third parties, except for cases related to compliance with the current legislation.
6.3. In case of inaccuracies in personal data, the User can update them independently by sending a notification to the Controller's email address, marked as "Update of Personal Data."
6.4. The processing period for personal data is unlimited. The User can revoke their consent to the processing of personal data at any time by sending a notification to the Controller via email to the Controller's email address, marked as "Revocation of Consent to Personal Data Processing."

7. Cross-Border Transfer of Personal Data
7.1. Before initiating the cross-border transfer of personal data, the Controller must ensure that the foreign state to which the transfer of personal data is intended provides reliable protection of the rights of personal data subjects.
7.2. Cross-border transfer of personal data to the territory of foreign states that do not meet the above requirements can only be carried out with the written consent of the personal data subject to the cross-border transfer of their personal data and/or the execution of an agreement involving the personal data subject.

8. Final Provisions
8.1. The User can obtain any clarifications on matters concerning the processing of their personal data by contacting the Controller via email at [email address].
8.2. Any changes to the policy of personal data processing by the Controller will be reflected in this document. The policy is in effect indefinitely until replaced by a new version.
8.3. The current version of the Policy is freely accessible on the internet at www.katerinadenisov.com