Privacy Policy

Last updated: October 2025

1. Introduction

ASYNC INTEGRATIONS d.o.o. ('we', 'us', or 'our') is committed to protecting your privacy and personal data.

This Privacy Policy explains how we collect, use, store, and protect your personal information when you use our services or visit our website.

We comply with the EU General Data Protection Regulation (GDPR) and Croatian data protection laws.

By using our services, you consent to the practices described in this Privacy Policy.

2. Data Controller

The data controller responsible for your personal data is:

ASYNC INTEGRATIONS d.o.o.

Jurkovićeva ulica 20, 10000 Zagreb, Croatia

OIB: 90137473459

Email: hello@asyncintegrations.hr

Director: Andrija Radica

3. Data We Collect

We collect the following types of personal data:

Contact Information: Name, email address, phone number, company name, job title

Business Information: Company details, project requirements, technical specifications

Communication Data: Email correspondence, meeting notes, project communications

Payment Information: Invoicing details, payment history (payment card data is processed by Wise and we do not store it)

Technical Data: IP address, browser type, device information (collected automatically via our website)

Project Data: Any data you provide as part of project requirements or deliverables

4. How We Use Your Data

We use your personal data for the following purposes:

Service Delivery: To provide software development services, communicate about projects, and deliver agreed deliverables

Contractual Obligations: To fulfill our contractual obligations, send invoices, and process payments

Communication: To respond to inquiries, provide customer support, and send project updates

Legal Compliance: To comply with legal obligations, including tax and accounting requirements

Business Operations: To improve our services, analyze usage patterns, and manage our business

Marketing: With your consent, to send newsletters or promotional materials (you can opt-out anytime)

The legal basis for processing is:

• Contract performance (GDPR Article 6(1)(b))

• Legal obligations (GDPR Article 6(1)(c))

• Legitimate interests (GDPR Article 6(1)(f))

• Consent where required (GDPR Article 6(1)(a))

5. Data Storage and Security

We store your personal data securely using industry-standard security measures.

Data is stored on secure servers located in the European Economic Area (EEA) where possible.

We use encryption, access controls, and regular security audits to protect your data.

Access to personal data is limited to authorized personnel who need it for their work.

We retain your data for as long as necessary to fulfill the purposes outlined in this policy:

• Active client data: Duration of the business relationship plus 7 years (for accounting/tax purposes)

• Inquiry data: 2 years from last contact

• Marketing data: Until you withdraw consent

After the retention period, data is securely deleted or anonymized.

6. Cookies and Tracking

Our website uses minimal cookies:

Essential Cookies: We store your language preference locally to improve your user experience. This is considered a 'strictly necessary' cookie under GDPR and does not require consent.

No Tracking: We do not use analytics, advertising, or tracking cookies.

No Third-Party Cookies: We do not allow third-party cookies on our website.

You can disable cookies in your browser settings, but this may affect website functionality (e.g., language preference will not be saved).

7. Third-Party Services

We use the following third-party services that may process your personal data:

Wise (Payment Processing): We use Wise Europe SA for payment processing. Wise processes payment transactions according to their privacy policy. We do not store payment card details.

Email Services: We use email services for business communication. These providers may process your email data according to their privacy policies.

Hosting Providers: Our website and client deliverables may be hosted on third-party servers located in the EEA.

All third-party processors are required to comply with GDPR and maintain appropriate security measures.

We do not sell, rent, or share your personal data with third parties for marketing purposes.

8. Your Data Protection Rights

Under GDPR, you have the following rights:

Right of Access: Request a copy of your personal data we hold

Right to Rectification: Request correction of inaccurate or incomplete data

Right to Erasure: Request deletion of your data (subject to legal retention requirements)

Right to Restriction: Request limitation of processing in certain circumstances

Right to Data Portability: Receive your data in a structured, machine-readable format

Right to Object: Object to processing based on legitimate interests

Right to Withdraw Consent: Withdraw consent for marketing or other consent-based processing

Right to Lodge a Complaint: File a complaint with the Croatian Data Protection Agency (AZOP)

To exercise these rights, contact us at hello@asyncintegrations.hr

We will respond to your request within 30 days.

9. International Data Transfers

We primarily store data within the European Economic Area (EEA).

If data is transferred outside the EEA, we ensure appropriate safeguards are in place (such as Standard Contractual Clauses or adequacy decisions).

Any international transfers comply with GDPR Chapter V requirements.

10. Data Breach Notification

In the event of a personal data breach that poses a risk to your rights and freedoms, we will notify you and the relevant supervisory authority within 72 hours as required by GDPR.

We maintain incident response procedures to detect, investigate, and mitigate data breaches.

11. Children's Privacy

Our services are not directed at individuals under 18 years of age.

We do not knowingly collect personal data from children.

If we become aware that we have collected data from a child, we will delete it promptly.

12. Changes to This Policy

We may update this Privacy Policy from time to time.

The 'Last Updated' date at the top indicates when changes were made.

Material changes will be communicated via email to active clients.

Continued use of our services after changes constitutes acceptance of the updated policy.

13. Contact Us

For questions about this Privacy Policy or to exercise your data protection rights, contact us:

Email: hello@asyncintegrations.hr

Address: Jurkovićeva ulica 20, 10000 Zagreb, Croatia

Phone: +385 97 7877 127

Data Protection Authority: Croatian Data Protection Agency (Agencija za zaštitu osobnih podataka - AZOP) - www.azop.hr