This Privacy Policy explains how Ronsoft S.R.L. (“Ronsofts”, “we”, “us”) processes personal data when you visit ronsofts.com, create an account, place an order, contact us or otherwise use our services. Ronsoft S.R.L. is the data controller for the processing described here.
1. Personal data we process
- Identity and contact data: name, billing address, country, email address, phone number and company details.
- Order and licence data: products, licence specifications, order number, transaction status, delivery records, support history and invoice data.
- Payment data: payment method, payment status and transaction reference. Full card details are handled by the payment service provider and are not stored by Ronsofts.
- Account data: login identifier, password hash, account preferences and order history.
- Technical and security data: IP address, browser and device information, timestamps, cookie identifiers, server logs and fraud-prevention signals.
- Communications: messages, withdrawal requests, complaints and files you voluntarily send to support.
2. Why we use personal data
| Purpose | Legal basis |
|---|---|
| Process orders, deliver digital products, provide invoices and customer support | Performance of a contract or steps requested before a contract |
| Accounting, tax, consumer-protection and record-keeping duties | Legal obligation |
| Prevent fraud, secure the website, defend legal claims and improve operational reliability | Legitimate interests, balanced against your rights |
| Send marketing communications where offered | Your consent; you may withdraw it at any time |
| Use non-essential analytics or advertising cookies | Your consent, where required |
We do not use solely automated decision-making that produces legal or similarly significant effects for customers. Payment and fraud providers may use automated risk tools under their own policies; an order flagged for review is not automatically treated as wrongdoing.
3. Who receives personal data
We share only the data reasonably necessary with service providers that help operate the store, including Hostinger for hosting, WooCommerce/Automattic technology, Stripe and its payment partners when enabled, email and customer-support providers, accounting and invoicing providers, professional advisers, fraud-prevention services, and the relevant software publisher or fulfilment partner where this is necessary to create or deliver the purchased entitlement.
Providers act under contract, their own legal obligations, or as independent controllers for services such as payment processing. We may disclose data to authorities where required by law or to protect legal rights. We do not sell personal data.
4. International transfers
Some providers may process data outside Romania or the European Economic Area. Where required, we rely on an adequacy decision, the European Commission’s Standard Contractual Clauses, or another lawful transfer safeguard. You may ask us for information about the safeguard relevant to your data.
5. Retention
- Order, invoice and accounting records: for the mandatory Romanian tax/accounting period, generally up to 10 years where applicable.
- Customer service, complaints and withdrawal records: normally 3 years after the matter closes, or longer if a claim is active.
- Account data: while the account is active and for a limited period after closure where needed for orders, security or legal claims.
- Security and server logs: normally up to 12 months unless an incident requires longer retention.
- Marketing data: until consent is withdrawn or the contact remains inactive beyond our review period.
When data is no longer needed, it is deleted or irreversibly anonymised.
6. Your rights
Subject to the GDPR and applicable law, you may request access, correction, deletion, restriction, portability, or object to processing based on legitimate interests. You may withdraw consent at any time without affecting earlier lawful processing. You may also lodge a complaint with the Romanian supervisory authority, the National Supervisory Authority for Personal Data Processing (ANSPDCP), or the authority in your country of residence.
Send requests to ronsoft2022@gmail.com. We may verify your identity before acting. We normally respond within one month, subject to lawful extensions for complex requests.
7. Security
We use access controls, encrypted HTTPS connections, maintained software, payment-provider tokenisation, backups and operational monitoring appropriate to the risks. No internet service is completely risk-free, but we review safeguards and restrict access to personnel and providers who need it.
8. Cookies and similar technology
Essential cookies keep the cart, checkout, account and security features working. Non-essential cookies are used only as described in our Cookie Policy and, where required, after consent.
9. Children
The store is intended for adults and business users. We do not knowingly request personal data from children under 16. If you believe a child has provided data, contact us.
10. Changes and contact
We may update this policy when services or legal requirements change. The current version and effective date are published on this page. Questions may be sent to ronsoft2022@gmail.com or by post to Ronsoft S.R.L., 417313 Miheleu, Comuna Lăzăreni 38, Romania.