Privacy Policy
1. Data Controller
Neotronix SRL — data controller under EU Regulation 2016/679 (GDPR).
DPO Contact: dpo@neotronix.ro
2. Data Collected
- CNP (Personal Numeric Code) — for buyer identification on the fiscal invoice
- Name and address — for invoice completion per the Fiscal Code
- CIF (Tax ID) — public business data, not personal data
- Email address — for sending modification confirmation
- Phone (optional) — for contact if needed
- IP address — automatically collected for security (fraud prevention)
3. Purpose
Data is processed exclusively for completing/modifying buyer details on issued fiscal invoices, in compliance with Romanian Law 227/2015 (Fiscal Code) and ANAF regulations.
4. Legal Basis
- Art. 6(1)(b) GDPR — contractual/fiscal obligation necessity
- Art. 6(1)(f) GDPR — legitimate interest (security, fraud prevention) — for IP address
- Art. 6(1)(a) GDPR — consent — for phone number (optional field)
- Romanian Law 190/2018 Art. 5 — CNP processing permitted for fiscal purposes
5. Retention Period
- Fiscal data (CNP, name, address on invoice): 10 years per Fiscal Code
- Email and phone: 30 days after invoice processing, unless needed for further communication
- Audit log (IP, actions): 1 year
6. Your Rights
Under GDPR, you have the right to:
- Access your personal data
- Rectify inaccurate data
- Erase data (where legally permitted — fiscal data cannot be erased before the retention period expires)
- Data portability
- Object to processing
- Lodge a complaint with ANSPDCP (Romanian National Supervisory Authority)
To exercise your rights, contact: dpo@neotronix.ro
7. Cookies
This site uses only session cookies (strictly necessary for operation). No tracking, analytics, or advertising cookies are used.
8. Data Transfers
Data is stored on servers located in Romania/EU. No data transfers to third countries take place.