Privacy Policy
Last updated: September 22, 2024
Introduction
This Privacy Policy describes how Svetlikus, Oblikovalska Praksa in Svetovanje, Žiga Svetlik s.p. ("Svetlikus", "we", "us", "our") collects, uses, and protects your information when you use our design services and website svetlikus.com.
This Privacy Policy explains what information of yours will be collected, how the information will be used, and how you can control the collection, correction, and/or deletion of information. We will not knowingly use or share your information with anyone except as described in this Privacy Policy.
1. Data Controller Information
The Data Controller for the purposes of GDPR and other applicable data protection laws is:
Svetlikus, Oblikovalska Praksa in Svetovanje, Žiga Svetlik s.p.
Address: Dolsko 14a, 1262 Dol pri Ljubljani, Slovenia - EU
Tax ID: SI52214281
Registration Number: 316-02-00021-2022
Email: ziga@svetlikus.com
2. Information We Collect
2.1 Information You Provide
When using our services, you may provide us with:
- Personal Information:
- Name
- Email address
- Phone number
- Company information
- Professional role/title
- Payment information
- Project Information:
- Design briefs
- Brand guidelines
- Reference materials
- Feedback and comments
- Project specifications
2.2 Information Collected Through Our Tools
We collect and process information through our professional service platforms:
- Project Management (Productive.io):
- Project timelines
- Task assignments
- Time tracking data
- Project communications
- Milestone tracking
- Design Collaboration (Figma):
- Design feedback
- Design iterations
- Comments and annotations
- Design asset management
- Communication (Slack):
- Project discussions
- File sharing records
- Team communications
- Meeting notes
- Payment Processing (Stripe):
- Payment information
- Billing addresses
- Transaction history
- Subscription data
3. How We Use Your Information
3.1 Primary Purposes
We use your information for:
- Service Delivery:
- Providing design services
- Project management
- Client communication
- Quality assurance
- Account Management:
- Account setup and maintenance
- Authentication and security
- Service personalization
- Technical support
- Business Operations:
- Billing and accounting
- Service improvement
- Legal compliance
- Security maintenance
3.2 Legal Basis for Processing
We process your information under the following legal bases:
- Contract Performance:
- Delivering agreed services
- Processing payments
- Managing subscriptions
- Providing support
- Legal Obligations:
- Tax compliance
- Business regulations
- Data protection laws
- Professional standards
- Legitimate Interests:
- Service improvement
- Security measures
- Business development
- Portfolio management
- Consent:
- Marketing communications
- Optional features
- Data sharing
- Analytics
4. Data Storage and Security
4.1 Storage Methods
We store your information:
- On secure servers within the EU
- Using encrypted transmission
- With access controls
- In compliance with GDPR
4.2 Security Measures
We implement:
- Technical Measures:
- Data encryption
- Firewall protection
- Access logging
- Regular backups
- Organizational Measures:
- Staff training
- Access controls
- Security policies
- Regular audits
5. Data Sharing and Third Parties
5.1 Service Providers
We share data with:
- Project Management:
- Design Tools:
- Communication:
- Payment Processing:
5.2 Data Protection Agreements
All third-party providers:
- Are GDPR compliant
- Have data processing agreements
- Implement security measures
- Follow data protection standards
6. Your Rights Under GDPR
6.1 Core Rights
You have the right to:
- Access your data
- Rectify inaccurate data
- Erase your data
- Restrict processing
- Data portability
- Object to processing
- Withdraw consent
6.2 Exercising Your Rights
To exercise these rights:
- Contact us at ziga@svetlikus.com
- Provide identity verification
- Specify your request
- Receive response within 30 days
7. Data Retention
7.1 Retention Periods
We retain data for:
- Active Clients:
- Duration of service
- Legal requirements
- Business purposes
- Former Clients:
- Legal obligations
- Tax requirements
- Portfolio purposes
7.2 Data Deletion
We delete data:
- Upon request (where legal)
- After retention period
- When no longer needed
- Following legal requirements
8. International Transfers
8.1 Transfer Mechanisms
We transfer data using:
- EU Standard Contractual Clauses
- Adequacy decisions
- Appropriate safeguards
- Privacy Shield (where applicable)
8.2 Transfer Safeguards
We ensure:
- Adequate protection levels
- Security measures
- Data processing agreements
- Compliance monitoring
9. Children's Privacy
We do not knowingly:
- Collect data from under-16s
- Target services to children
- Process children's data
- Market to children
10. Changes to This Policy
10.1 Updates
We may update this policy:
- To reflect service changes
- For legal compliance
- To improve clarity
- For operational needs
10.2 Notification
We will notify you of changes through:
- Email notification
- Website notices
- Service announcements
- Account updates
11. Contact Information
For privacy inquiries:
Email: ziga@svetlikus.com
Svetlikus, Oblikovalska Praksa in Svetovanje, Žiga Svetlik s.p.
Address: Dolsko 14a, 1262 Dol pri Ljubljani, Slovenia - EU
Tax ID: SI52214281
Registration Number: 316-02-00021-2022
Registration Authority: AJPES
12. Supervisory Authority
You have the right to lodge a complaint with:
Information Commissioner of the Republic of Slovenia
Address: Dunajska cesta 22, 1000 Ljubljana, Slovenia -EU
Website: https://www.ip-rs.si/
13. Effective Date
This Privacy Policy is effective as of September 22, 2024.