Last updated: August 06, 2025
1. Introduction
STACC OÜ ("we," "our," or "us") is committed to
protecting and respecting your privacy. This Privacy Policy
explains how we collect, use, disclose, and safeguard your
information when you visit our website , use our services, or
interact with us.
2. Information We Collect
2.1 Personal Information
We may collect personal information that you voluntarily provide
to us when you:
- Fill out contact forms or request quotes
- Subscribe to our newsletter
- Engage our IT services
- Contact us directly via email or phone
This information may include:
- Name and contact information (email, phone number)
- Company name and business information
- Project requirements and technical specifications
-
Payment information (processed securely through third-party
processors)
2.2 Technical Information
We automatically collect certain information when you visit our
website:
- IP address and browser information
- Device information and operating system
- Pages visited and time spent on our website
- Referral source and website navigation patterns
3. How We Use Your Information
We use the collected information for the following purposes:
- Provide and maintain our IT services
- Respond to inquiries and provide customer support
- Process service requests and project quotes
- Send important updates about our services
- Improve our website and service offerings
- Comply with legal obligations
- Send marketing communications (with your consent)
4. Legal Basis for Processing
We process your personal information based on:
-
Contract performance: To fulfill our service
agreements
-
Legitimate interests: To improve our services
and communicate with clients
-
Consent: For marketing communications and
cookies
-
Legal compliance: To meet regulatory
requirements
5. Information Sharing and Disclosure
We do not sell, trade, or rent your personal information to
third parties. We may share your information in the following
circumstances:
-
Service Providers: With trusted third-party
providers who assist in our operations
-
Legal Requirements: When required by law or
to protect our rights
-
Business Transfers: In connection with
mergers, acquisitions, or asset sales
-
With Your Consent: When you explicitly agree
to share information
6. Data Security
We implement appropriate technical and organizational security
measures to protect your personal information against
unauthorized access, alteration, disclosure, or destruction.
These measures include:
- Encryption of sensitive data in transit and at rest
- Regular security assessments and updates
- Access controls and employee training
- Secure data centers and network infrastructure
7. Data Retention
We retain personal information only for as long as necessary to
fulfill the purposes outlined in this Privacy Policy, unless a
longer retention period is required or permitted by law.
Typically:
-
Contact information: Retained while you remain a client and
for 3 years after
-
Service records: Retained for 7 years for business and legal
purposes
-
Marketing data: Retained until you unsubscribe or object
8. Your Rights
Under applicable data protection laws, you have the right to:
-
Access: Request copies of your personal
information
-
Rectification: Request correction of
inaccurate information
-
Erasure: Request deletion of your personal
information
-
Restriction: Request limitation of processing
-
Portability: Request transfer of your
information
-
Objection: Object to processing based on
legitimate interests
-
Withdraw Consent: Withdraw consent for
processing
To exercise these rights, please contact us at [email protected].
9. Cookies and Tracking Technologies
Our website uses cookies and similar tracking technologies to
enhance your browsing experience. For detailed information about
our cookie practices, please see our
Cookies Policy.
10. International Data Transfers
As an Estonian company, we primarily process data within the
European Economic Area (EEA). If we transfer data outside the
EEA, we ensure appropriate safeguards are in place, such as:
- European Commission adequacy decisions
- Standard contractual clauses
- Binding corporate rules
11. Children's Privacy
Our services are not intended for children under 16 years of
age. We do not knowingly collect personal information from
children under 16. If we become aware that we have collected
such information, we will take steps to delete it promptly.
12. Changes to This Privacy Policy
We may update this Privacy Policy periodically to reflect
changes in our practices or applicable laws. We will notify you
of any material changes by:
- Posting the updated policy on our website
- Sending email notifications to registered users
- Providing notice through our services
13. Contact Information
If you have any questions, concerns, or requests regarding this
Privacy Policy or our privacy practices, please contact us:
14. Data Protection Officer
For matters specifically related to data protection and privacy,
you can also contact our Data Protection Officer at
[email protected].
Note: This Privacy Policy is governed by
Estonian law and EU data protection regulations, including the
General Data Protection Regulation (GDPR).