Skip to main content

Privacy Policy

How we handle your data

Last updated: March 2026

Data Controller

The data controller for this website is STOMAČKO DOO BEOGRAD (RAKOVICA), Borska 13B, 11000 Belgrade, Serbia. Company registration number (MB): 21977659. Tax identification number (PIB): 114140816. Contact: denis@stomacko.com.

Introduction

Stomačko ("we", "our", or "us") is committed to protecting your privacy. This Privacy Policy explains how we collect, use, and safeguard your information when you visit stomacko.tech. It is prepared in accordance with the Law on Personal Data Protection of the Republic of Serbia ("Zakon o zaštiti podataka o ličnosti", Official Gazette RS No. 87/2018) and the General Data Protection Regulation (GDPR) where applicable.

Data We Collect

We collect minimal data necessary for our website to function and improve:

  • Analytics data (page views, device type, general location) via Google Analytics
  • Information you voluntarily provide when contacting us (name, email, message)
  • Technical data (IP address, browser type) collected automatically for security and performance

Legal Basis for Processing

We process your personal data based on the following legal grounds:

  • Consent — for analytics cookies (you can accept or decline via our cookie banner)
  • Legitimate interest — for website security, performance monitoring, and abuse prevention
  • Contract performance — when you contact us regarding our services

How We Use Your Data

We use the collected data to:

  • Understand how visitors use our website
  • Respond to your inquiries
  • Improve our website and services
  • Ensure website security and prevent abuse

Cookies & Analytics

We use Google Analytics to understand website usage. This service uses cookies to collect anonymized data about your visit. You can control cookie preferences through our cookie banner or your browser settings. No analytics cookies are set until you provide consent.

Data Recipients

Your data may be shared with the following third-party service providers who process data on our behalf:

  • Google LLC (Google Analytics) — website usage analytics
  • Amazon Web Services (AWS) — website hosting infrastructure
  • Cal.com — if you schedule a meeting through our website

International Data Transfers

Some of our service providers (Google, AWS) are based in the United States or operate servers outside the European Economic Area. Where personal data is transferred internationally, appropriate safeguards are in place, including Standard Contractual Clauses (SCCs) as approved by the European Commission. Google Analytics is configured to anonymize IP addresses before data leaves the EU.

Data Retention

Analytics data is retained for 14 months (Google Analytics default setting). Contact form data (name, email, message) is retained for as long as necessary to respond to your inquiry and for a reasonable period afterward for record-keeping purposes. You may request deletion of your data at any time by contacting us.

Security Measures

We implement appropriate technical and organizational measures to protect your personal data against unauthorized access, alteration, disclosure, or destruction. This includes HTTPS encryption for all website traffic and secure hosting infrastructure.

Your Rights

Under the Law on Personal Data Protection and the GDPR (where applicable), you have the right to:

  • Access the personal data we hold about you
  • Request correction of inaccurate data
  • Request deletion of your data (right to erasure)
  • Restrict or object to processing of your data
  • Data portability — receive your data in a structured, machine-readable format
  • Withdraw consent at any time (without affecting the lawfulness of prior processing)
  • Lodge a complaint with the Commissioner for Information of Public Importance and Personal Data Protection (Poverenik za informacije od javnog značaja i zaštitu podataka o ličnosti) at www.poverenik.rs

Children's Data

This website is not directed at children under the age of 15, and we do not knowingly collect personal data from children. If you believe we have inadvertently collected data from a child, please contact us and we will promptly delete it.

Contact Us

For privacy-related inquiries or to exercise any of your rights, please contact us at denis@stomacko.com.

Policy Updates

We may update this policy from time to time. Changes will be posted on this page with an updated revision date. If we make material changes, we will make reasonable efforts to notify you.