CreativePoint

Privacy policy

What data this site collects, why, for how long, and the rights you have over it.

Who we are

The data controller is S.C. GLOBAL REFERENCE S.R.L., fiscal code (CUI) 37309820, Trade Registry no. J40/4430/2017, registered at Strada Crișul Repede no. 24, room 2, Bucharest, Romania — the operator of creativepoint.ro.

You can reach us at +40 743 222 999 or contact@creativepoint.ro. Personal data is processed in accordance with Regulation (EU) 2016/679 (GDPR).

What we collect and why

The only personal data we actively collect is what you send through the contact form: name, e-mail address, phone number and, optionally, your company name, your message and your answers about the project (requested services, estimated budget).

We use it solely to reply to your enquiry and prepare the conversation or proposal you asked for. The legal bases are your consent (art. 6(1)(a) GDPR) and pre-contractual steps taken at your request (art. 6(1)(b) GDPR).

We do not sell personal data and we do not use it for marketing without separate, explicit consent.

How long we keep it

Form submissions are kept in our database for 1 year, then deleted. You can request earlier deletion at any time by writing to contact@creativepoint.ro.

Cookies and local storage

The site uses a single functional cookie: your language preference (Romanian / English). Your theme preference (light / dark) is saved in your browser's local storage and never leaves your device.

We use no analytics, tracking or advertising cookies. If we ever introduce analytics, this policy will be updated first and the tools configured not to identify individuals.

Embedded content

The contact page may display a Google map. When you interact with it, Google may set its own cookies and collect data under its own privacy policy, as if you had visited google.com directly.

Videos on this site are self-hosted or delivered through a streaming service; they load no advertising networks.

Who we share data with

Form data goes into our own database, hosted on infrastructure we administer in the European Union. Only authorised team members can access it.

Today we do not transfer your data to third parties for marketing. The Google services mentioned above process their own data under their own policies, which may include servers outside the EU.

Once the tools in the next section are switched on, Google, Meta and TikTok will receive browsing data from this site — but only from visitors who accepted, and only for as long as that acceptance stands.

What we intend to add

Analytics and marketing. We want to use Google Analytics to understand which pages are read and where people give up, and Meta (Facebook, Instagram) and TikTok to promote our services and measure what works. As of the date on this page none of them runs on the site.

The legal basis will be your consent, asked for through a banner before any script loads. You can refuse without losing anything on the site, and withdraw at any time as easily as you gave it.

Commercial messages. In future we intend to send offers and news to people who left us their details, on the basis of explicit consent — a separate checkbox, never pre-ticked, asked for at the moment you write to us. Details you have already sent us in order to receive a quote will not be used for campaigns without that separate consent, and every message will carry an unsubscribe link that works on the first click.

The order is always the same: update the policy, ask for consent, only then switch on. If you read about something here and were never asked, it is not happening yet.

Your rights

You have the right of access, rectification, export (portability), erasure, restriction of processing and objection.

For any of them, write to contact@creativepoint.ro — we reply within 24 working hours. You also have the right to lodge a complaint with the Romanian supervisory authority (ANSPDCP).

How we protect your data

The site runs exclusively over HTTPS, data is stored on servers with restricted access, and the forms are protected against automated abuse.

In the event of a security breach affecting personal data, we notify ANSPDCP and the affected persons in accordance with legal procedures.

Privacy policy | CreativePoint