01 / ControllerDigital Applied s.r.o.
The controller is Digital Applied, s. r. o., company ID 52125670, VAT ID SK2120914510, Priemyselná 668/7, 821 09 Bratislava, Slovakia. For privacy requests, contact richard@digitalapplied.com.
02 / Current collectionBrowsing, suggestions and company access.
The website host processes technical request information, which can include IP addresses, requested URLs, timestamps and browser information, to deliver and secure the site. The basis is our legitimate interest in operating a secure publication. Hosting logs follow the provider configuration; the exact retention setting must be confirmed before public deployment. We do not maintain a separate visitor database in this edition.
When you submit a company domain, we store one company record and your stated interest privately in Supabase. We store an optional contact email for reader requests and a required company email for access requests. Email verification creates a Supabase Auth account and a company membership. We use this data to provide the requested service, assess suggestions and respond to enquiries. A signed browser identifier and short-lived, keyed IP digests help prevent duplicate requests and abuse. Avoid sending sensitive or unnecessary personal information.
03 / RetentionKeep only what is needed.
Routine suggestions and enquiries are reviewed for deletion after twelve months. Legal or privacy correspondence may be retained longer where needed to comply with obligations or establish, exercise or defend legal claims. We do not promise an automatic retention process that has not yet been implemented.
Account and membership records are retained while needed to provide and secure company access. Contact us to request account deletion or review of your data. Rate-limit digests expire within a day; expired bucket records are removed during subsequent lookups after a short cleanup buffer. Clearing browser cookies signs you out but does not delete server records.
04 / People in researchProfessional facts only where relevant.
Company information may include personal data when it identifies an individual. Relevant professional information may be used for independent commentary based on a documented legitimate-interest assessment and applicable expression and information protections. Public availability is not an exemption from data protection. You may object or request correction or erasure; we assess the applicable rights and explain the decision.
05 / Marketing and AISuggestions are not marketing consent.
We do not add people who suggest companies to a newsletter or advertising list. Any future marketing subscription will require a separate, optional choice and an easy way to stop. We do not sell personal data or use suggestion emails as material for AI research. Research concerns businesses, not automated decisions with legal or similarly significant effects on individuals.
06 / ProvidersUse only the services connected to this edition.
Vercel provides website hosting. Supabase stores company intake and account records in an EU project and handles authentication. Resend delivers verification emails. Google Workspace receives business correspondence, including mail to our Sequenced alias. Stripe payments and automated research APIs are not active. Analytics stays disabled until separately configured and consent-tested.
Where personal data is transferred outside the EEA, an applicable transfer basis and safeguards are required, such as an adequacy decision or standard contractual clauses. Relevant provider agreements, transfer arrangements and retention settings are to be confirmed before public deployment; copies or details may be requested from the controller.
07 / Your rightsAccess, correction, erasure and objection.
Email richard@digitalapplied.com to request access, rectification, erasure, restriction, portability where applicable or objection to processing. You may withdraw consent for any processing based on it without affecting prior lawful processing. We may request proportionate evidence of identity. We respond without undue delay, normally within one month, and explain any lawful extension or refusal. You may complain to the Slovak Office for Personal Data Protection at dataprotection.gov.sk or another competent supervisory authority. Rights depend on the processing and applicable law.