GDPR Compliance Statement

    At sandos.online, we are committed to protecting the privacy and personal data of our users. This GDPR Compliance Statement explains how we comply with the General Data Protection Regulation (GDPR), which applies to users located in the European Economic Area (EEA). Even if you are accessing our website from outside the EEA, we aim to follow strong data protection principles globally.


    1. What Is GDPR?

    The General Data Protection Regulation (GDPR) is a data protection law designed to give individuals more control over their personal data and to standardize data protection laws across the European Union.

    Under GDPR, personal data refers to any information that can directly or indirectly identify an individual, such as:

    • Name
    • Email address
    • IP address
    • Online identifiers

    sandos.online respects these principles and processes data lawfully and transparently.


    2. Lawful Basis for Data Processing

    We only collect and process personal data when there is a lawful basis to do so, including:

    • User consent
    • Legitimate interest (such as improving website functionality)
    • Legal obligations

    Personal data is never collected without a clear purpose.


    3. Types of Personal Data We Collect

    sandos.online may collect the following personal data:

    • Name and email address (when voluntarily submitted via contact forms)
    • IP address and device information
    • Browser type and usage behavior

    We do not collect sensitive personal data such as biometric, health, or financial information.


    4. How We Use Personal Data

    Personal data collected on sandos.online is used for:

    • Responding to user inquiries
    • Improving website performance and content
    • Preventing spam, fraud, and abuse
    • Ensuring website security

    We do not use personal data for unauthorized marketing or profiling.


    5. Data Storage & Retention

    Personal data is stored only for as long as necessary to fulfill its intended purpose or to comply with legal obligations.

    When personal data is no longer required:

    • It is securely deleted
    • Or anonymized where applicable

    We take reasonable technical and organizational measures to safeguard stored data.


    6. User Rights Under GDPR

    Under GDPR, users have the following rights:

    • Right to access personal data
    • Right to rectification of incorrect data
    • Right to erasure (right to be forgotten)
    • Right to restrict processing
    • Right to data portability
    • Right to object to data processing

    Users may exercise these rights by contacting us through the Contact Us page.


    7. Consent Management

    Where required, sandos.online obtains user consent before collecting personal data. Users have the right to:

    • Withdraw consent at any time
    • Request data deletion

    Withdrawing consent will not affect the legality of data processing carried out prior to withdrawal.


    8. Third-Party Data Processors

    We may use trusted third-party services for:

    • Website analytics
    • Advertising
    • Hosting

    These service providers are required to comply with GDPR or equivalent data protection standards. sandos.online does not sell personal data to third parties.


    9. Cookies & Tracking Technologies

    Cookies may be used to:

    • Analyze website traffic
    • Improve user experience
    • Maintain website functionality

    Users can manage or disable cookies through browser settings. For more details, please review our Privacy Policy.


    10. Data Security Measures

    We implement appropriate security measures, including:

    • Secure hosting environments
    • Limited access to personal data
    • Regular website maintenance

    While we strive for strong security, no online system is completely risk-free.


    11. Data Breach Procedure

    In the unlikely event of a data breach that poses a risk to user rights:

    • We will take immediate corrective action
    • Affected users will be notified where legally required
    • Relevant authorities will be informed as per GDPR guidelines

    12. International Data Transfers

    If personal data is transferred outside the EEA, we ensure appropriate safeguards are in place to protect user data.


    13. Updates to This Statement

    This GDPR Compliance Statement may be updated to reflect changes in legal requirements or data practices. Updates will be published on this page.


    14. Contact for GDPR Concerns

    For GDPR-related questions, data access requests, or deletion requests, please contact us via the Contact Us page on sandos.online.