1. Who processes your data
onecorespark.com is operated by ONE CORE SPARK S.R.L. (“One Core Spark”). Under Regulation (EU) 2016/679 (GDPR), the company may act as data controller for personal data collected directly through this website and in commercial relationships with prospects, customers, suppliers and partners.
2. Data we may collect
Depending on your interaction with us, we may process your name, company, email address, telephone number, message content, technical information required for website security and information connected to a commercial or contractual relationship.
3. Purposes and legal bases
Personal data may be used to respond to enquiries, prepare proposals, provide services, administer contracts, comply with legal obligations, protect systems and defend legal rights or legitimate interests. Where analytics is enabled, we rely on consent for non-essential analytics technologies.
4. Contact form
Information submitted through the contact form is used to assess and respond to your request. Please do not send passwords, private keys, payment-card data or other access secrets through the form.
5. Recipients and service providers
Where necessary, personal data may be accessed by authorised personnel and by technical providers supporting hosting, email, security, backup or analytics. Where required, processors are subject to contractual data-protection obligations.
6. Transfers outside the EEA
If we use providers that involve international data transfers, such transfers will be handled using GDPR-recognised mechanisms where applicable, such as adequacy decisions or Standard Contractual Clauses.
7. Retention period
We retain personal data only for as long as necessary for the purpose for which it was collected and for any periods required by tax, accounting, contractual or legal-defence obligations. Enquiries that do not lead to a commercial relationship may be deleted or anonymised when no longer needed.
8. Your rights
Subject to the conditions of the GDPR, you may request access, rectification, erasure, restriction, portability or object to certain processing. Where processing is based on consent, you may withdraw that consent without affecting the lawfulness of processing carried out before withdrawal.
9. Complaints
If you believe your data-protection rights have been infringed, you can contact us first at gdpr@onecore.ro. You also have the right to lodge a complaint with the Romanian National Supervisory Authority for Personal Data Processing (ANSPDCP) or another competent supervisory authority where applicable.
10. Security
We apply reasonable technical and organisational measures based on the nature of the data and the identified risks. No method of transmission over the internet can be guaranteed to be absolutely secure.
11. Changes
We may update this policy to reflect legal, technical or operational changes. The current version is published on this page together with the date of the latest update.