Privacy Policy
The purpose of this privacy policy is to inform visitors of the kingdroid.eu website (hereinafter: the Website) in a clear and transparent manner about the purpose, legal basis, duration and manner in which the data controller processes the personal data provided through the Website, as well as the rights available to data subjects.
1. The data controller's identity and contact details
The operator of the Website and the controller of personal data:
- Company name: KING DROID S.R.L.
- Registered office: Cârța nr. 261, Harghita County (jud. Harghita), Romania
- Company registration number (Registrul Comerțului): J19/10/2024
- Tax identification number (CUI): 49390070
- Email: info@kingdroid.eu
- Website address: https://kingdroid.eu
The data controller does not carry out any data processing that would require the appointment of a data protection officer (DPO), and therefore does not employ one. You may contact us with any data protection questions at the email address above.
2. The purpose and scope of this policy
The scope of this policy covers the processing of personal data provided through the contact form available on the Website. Through the Website, the data controller processes personal data solely via the contact form; beyond this, it does not operate any registration, newsletter service, user account or other data collection.
3. Applicable legislation
- Regulation (EU) 2016/679 (GDPR) of the European Parliament and of the Council;
- the Romanian law implementing the GDPR, Legea nr. 190/2018;
- Legea nr. 506/2004 on the protection of data in the electronic communications sector.
4. The data processed, and the purpose, legal basis and duration of processing
Filling in and submitting the contact form is voluntary. The form only requests the data necessary to make contact.
The personal data processed:
- Name: for identifying the data subject and for a personalised form of address;
- Email address: for sending a reply to the enquiry and for keeping in contact;
- Message content: for answering the enquiry and preparing the requested information or quote. Please do not provide, beyond the data strictly necessary for a reply, any further personal data in the message text, in particular data belonging to special categories.
The purpose of processing: handling the contact initiated by the data subject, receiving and answering incoming questions, enquiries and quote requests, and keeping in contact with the data subject.
The legal basis for processing:
- the data subject's voluntary consent by submitting the form [Article 6(1)(a) GDPR];
- where the enquiry aims at concluding a contract or requesting a quote, taking steps at the request of the data subject prior to entering into a contract [Article 6(1)(b) GDPR];
- the data controller's legitimate interest in answering the enquiries addressed to it [Article 6(1)(f) GDPR].
The duration of processing: the data controller processes the personal data for as long as necessary to answer the enquiry and to fulfil the purpose of the contact. Where the legal basis for processing is consent, we process the data until the consent is withdrawn. After the purpose has been fulfilled, the personal data is deleted, unless its retention is required by law.
5. The manner of processing
The data provided in the contact form is forwarded by the system in the form of an email message to the data controller's info@kingdroid.eu address, where the data controller accesses and processes it for the purpose of answering the enquiry. The data is not used for automated decision-making or profiling.
6. Data processors
For the technical handling of the processing, the data controller uses the assistance of data processors belonging to the following categories:
- Hosting provider – serving the Website and the contact form, and the technical transmission and storage of the data transmitted through the Website.
- Email (mail) provider – receiving, forwarding and storing the emails containing the messages sent from the form.
Upon request, the data controller provides information about the current, named identity of the data processors used.
7. Data security measures
The data controller takes appropriate technical and organisational measures to protect the personal data processed. In particular:
- the Website and data transmission take place over an encrypted (HTTPS/SSL) connection;
- only authorised persons have access to the incoming emails and the mailbox;
- the data controller ensures that the systems used are kept up to date and protected.
8. Cookies
The Website does not use cookies, and does not employ any web analytics, tracking or profiling solution (e.g. Google Analytics, Facebook Pixel). The fonts needed for display are served from our own server, so no data is transmitted to any third-party provider while you browse. Therefore, using the Website does not require any cookie consent (cookie bar).
9. Data transfers, transfers to third countries
The data controller does not transfer personal data to third parties – with the exception of the data processors – unless required to do so by law or by an official or court decision. The data controller does not transfer personal data to a third country outside the European Economic Area, unless the service of the data processor used technically justifies it; in such a case, the data transfer takes place solely with the appropriate safeguards required by the GDPR.
10. The rights of the data subject
In connection with the processing of their personal data, the data subject has the following rights, which they may exercise using the data controller's contact details above:
- Right of access – you may request information about your processed data and the circumstances of the processing.
- Right to rectification – you may request the rectification of inaccurate data and the completion of incomplete data.
- Right to erasure (“right to be forgotten”) – where the statutory conditions are met, you may request the erasure of your data.
- Right to restriction of processing – in the cases specified by law.
- Right to object – you may object to processing based on legitimate interest.
- Right to data portability – you may receive your data in a machine-readable format.
- Right to withdraw consent – you may withdraw your consent at any time; the withdrawal does not affect the lawfulness of processing carried out beforehand.
The data controller fulfils the request within one month of its submission at the latest.
11. Remedies
If you feel that the data controller has infringed your rights relating to the protection of your personal data, please first contact us using the details above. In addition, you may lodge a complaint with the supervisory authority or bring an action before a court. As the data controller is a company registered in Romania, the competent supervisory authority is:
- Name: Autoritatea Națională de Supraveghere a Prelucrării Datelor cu Caracter Personal (ANSPDCP) – the National Supervisory Authority for Personal Data Processing
- Registered office: B-dul G-ral. Gheorghe Magheru nr. 28–30, Sector 1, 010336 Bucharest, Romania
- Phone: +40 318 059 211
- Email: anspdcp@dataprotection.ro
- Website: www.dataprotection.ro
The data subject may also turn to the court competent for their place of residence or stay.
12. Amendments to this policy
The data controller reserves the right to amend this policy unilaterally, in particular in the event of a change in legislation. The policy in force at any given time is continuously available on the Website.
Effective date of this privacy policy: 9 July 2026.
← Back to home