← Back to Home
Privacy Policy
Last Updated: March 25, 2026
1. Introduction
AIS-tech ("we", "us", or "our") is committed to protecting your privacy and personal data. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you visit our website https://ais-tech.ai and use our services. We comply with the General Data Protection Regulation (GDPR), Croatian data protection laws, and the ePrivacy Directive.
This policy describes the data practices on our website and services. Where we process your data based on consent, we will ask for your explicit permission through clear opt-in mechanisms (such as our cookie consent banner). You can withdraw consent at any time.
2. Data Controller - Identity & Contact Details
Company Name: AIS-tech
Address: Šibenik, 22000, Croatia
Registration Number (MBS): 99108992
OIB: 37601888927
Email: [email protected]
Phone: +385 92 435 5555
Website: https://ais-tech.ai
3. Legal Bases for Processing
We process your personal data based on the following legal grounds under GDPR Article 6:
- Consent (Article 6(1)(a)): For marketing communications and analytics cookies
- Contractual Necessity (Article 6(1)(b)): For service delivery and customer support
- Legal Obligation (Article 6(1)(c)): For tax and accounting records
- Legitimate Interest (Article 6(1)(f)): For website functionality and security
4. Types of Personal Data Collected
We may collect the following categories of personal data:
- Identity Data: Name, email address, phone number
- Technical Data: IP address (anonymized), browser type, device information, operating system
- Usage Data: Pages visited, time spent on site, click patterns, referral sources
- Communication Data: Messages sent through contact forms, support requests
- Marketing Data: Newsletter preferences, communication preferences
5. Purpose of Data Collection
We collect and process personal data for the following purposes:
- Website functionality and service delivery
- Customer support and communication
- Analytics and performance monitoring (with consent)
- Marketing communications (with consent)
- Contact form processing
- Newsletter subscriptions
- Legal compliance and record keeping
6. Data Recipients & Third Parties
We may share your personal data with the following categories of recipients:
- Service Providers: Hosting services, email providers, analytics services
- Third-Party Tools: Google Analytics, Google Tag Manager (with consent)
- Business Partners: Only when necessary for service delivery
- Legal Authorities: When required by law or to protect our rights
International Transfers: Some of our service providers are located outside the European Economic Area (EEA). We ensure adequate protection through Standard Contractual Clauses or adequacy decisions (e.g., Google LLC is covered by adequacy decision).
7. Data Retention Period
We retain personal data for the following periods:
- Contact Form Data: 3 years from last contact
- Newsletter Subscriptions: Until unsubscribed + 1 year
- Analytics Data: 26 months (Google Analytics setting)
- Website Logs: 12 months
- Legal Compliance Data: As required by Croatian law (typically 7 years)
We regularly review and delete data that is no longer necessary for the purposes for which it was collected.
8. Your Rights Under GDPR (Articles 15-22)
Under the General Data Protection Regulation (GDPR), you have the following rights:
- Right to Access (Article 15): You can request a copy of your personal data we hold
- Right to Rectification (Article 16): You can request correction of inaccurate or incomplete data
- Right to Erasure (Article 17): You can request deletion of your personal data ("right to be forgotten")
- Right to Restriction of Processing (Article 18): You can request limitation of how we use your data
- Right to Data Portability (Article 20): You can request your data in a structured, machine-readable format
- Right to Object (Article 21): You can object to processing based on legitimate interests
- Right to Withdraw Consent (Article 7): You can withdraw consent at any time for consent-based processing
- Right to Lodge a Complaint: You can file a complaint with the Croatian Data Protection Agency (AZOP) at www.azop.hr
To exercise these rights, please contact us at [email protected].
9. Consent Management
Where we rely on consent for processing:
- Consent is obtained through clear opt-in mechanisms (checkboxes, cookie banner)
- You can withdraw consent at any time through our Cookie Settings in the website footer
- Withdrawal of consent does not affect the lawfulness of processing before withdrawal
- We maintain records of consent including date, time, and method of consent
10. Cookies & Tracking Technologies
We use cookies and similar tracking technologies on our website to enhance functionality, analyze performance, and provide personalized experiences. Cookies are small data files stored on your device.
For detailed information about the specific cookies we use, their purposes, and how to manage your cookie preferences, please see our Cookie Policy.
You can manage your cookie preferences at any time through the "Cookie Settings" link in our website footer.
11. Security Measures
We implement appropriate technical and organizational measures to protect your personal data against unauthorized access, alteration, disclosure, or destruction:
- Technical Safeguards: SSL/TLS encryption, secure hosting infrastructure, access controls, regular security updates
- Organizational Measures: Staff training on data protection, data minimization principles, regular security audits
- Backup & Recovery: Secure data backups with encryption, disaster recovery procedures
- Incident Response: Procedures for detecting, investigating, and responding to data breaches
12. Data Breach Procedure
In case of a personal data breach that poses a risk to your rights and freedoms:
- We will assess the risk to individuals within 72 hours of becoming aware of the breach
- High-risk breaches will be reported to AZOP (Croatian Data Protection Agency) within 72 hours
- Affected individuals will be notified without undue delay if the breach poses high risk to their rights
- We maintain detailed records of all data breaches and our response measures
13. Children's Privacy
Our services are not directed to individuals under the age of 16. In compliance with GDPR Article 8, we do not knowingly collect personal data from children under 16 without parental consent.
If you are a parent or guardian and believe your child has provided us with personal data without your consent, please contact us immediately at [email protected], and we will delete such information.
14. Changes to This Privacy Policy
We may update this Privacy Policy from time to time to reflect changes in our practices, legal requirements, or business operations:
- Material changes will be communicated via a prominent website banner or email notification
- The "Last Updated" date at the top of this page indicates when the policy was last modified
- Continued use of our website after changes become effective constitutes acceptance of the updated policy
- Previous versions of this policy are available upon request
15. Contact Us
If you have any questions about this Privacy Policy, wish to exercise your data protection rights, or have concerns about how we handle your personal data, please contact us:
- Email: [email protected]
- Phone: +385 92 435 5555
- Postal Address: AIS-tech, Šibenik, 22000, Croatia
- Registration Number (MBS): 99108992
16. Supervisory Authority
You have the right to lodge a complaint with the Croatian Data Protection Agency (Agencija za zaštitu osobnih podataka - AZOP) if you believe we have violated your data protection rights:
- Name: Agencija za zaštitu osobnih podataka (AZOP)
- Website: www.azop.hr
- Address: Selska cesta 136, 10000 Zagreb, Croatia
- Email: [email protected]
- Phone: +385 1 4609 000
17. Legal References
This Privacy Policy is based on and complies with:
- GDPR: Regulation (EU) 2016/679 (General Data Protection Regulation)
- ePrivacy Directive: Directive 2002/58/EC (ePrivacy Directive)
- Croatian Law: Zakon o provedbi Opće uredbe o zaštiti podataka (NN 42/2018)
- Supervisory Authority: Agencija za zaštitu osobnih podataka (www.azop.hr)
Effective Date: March 25, 2026
Version: 1.0
This Privacy Policy was last updated on March 25, 2026. We recommend reviewing this policy periodically for any changes.