isahar.← Back to site
Legal documents

Privacy Policy

Last updated: July 30, 2026Version 1.0

1. Who we are

Isahar Systems, headquartered in Târgu Neamț, Romania, is the controller of the personal data collected through this site. You can reach us any time at salut@isahar.io with any question about your data.

ISAHAR SYSTEMS S.R.L.Tax ID (CUI): RO55627873Trade Registry No.: J2026055504003Registered address: Str. Mihai Viteazul, nr. 17A, Târgu Neamț, Neamț County, 615200, RomaniaEmail: salut@isahar.io

2. What data we collect

We collect strictly what's needed to respond to requests and to understand how the site is used. We don't buy data lists and we don't build behavioral profiles.

Data you give us
Your name, email address and project description, submitted through the contact form. If you email or call us directly, we also keep the content of that correspondence.
Data collected automatically
If you accept the cookie banner, Google Analytics collects pages visited, time on site and device type, so we can understand how the site is used. Without your consent, this measurement never starts.
Data from the contractual relationship
If you become a client, billing data and whatever is needed to run the project. We don't access data in your own systems except with your explicit consent, and only for as long as the work requires.

3. Why we use it

To respond to your request and prepare a proposal; to issue tax documents and meet our legal obligations; to keep the site secure and running; to understand, in aggregate, which sections are useful. We don't send newsletters and we don't use your data for advertising.

4. Legal basis

We process data under Art. 6 of Regulation (EU) 2016/679:

Consent
The contact form — you fill it out on your own initiative. Analytics cookies (Google Analytics) — only start if you accept the banner shown on your first visit.
Performance of a contract
Running projects and delivering the services you've contracted.
Legal obligation
Invoicing, accounting records, tax reporting.
Legitimate interest
Infrastructure security.

5. How long we keep it

Contact messages
24 months from the last interaction, then deleted.
Contractual documents
10 years, per Romanian accounting law.
Traffic statistics
Retention period set in Google Analytics (at most 14 months from the last activity), then deleted automatically.

6. Who we share it with

We don't sell or rent personal data. We process it with the help of providers acting as processors, under contract and with confidentiality obligations:

Hosting — EUProfessional emailGoogle AnalyticsInvoicingAccounting

When a provider processes data outside the European Economic Area, the transfer relies on the standard contractual clauses approved by the European Commission. We may also disclose data to authorities when the law requires it.

7. Cookies

We use strictly necessary cookies — the ones that remember your chosen language and protect the form against automated submissions — and, optionally, Google Analytics (Google Ireland Limited), so we can understand how the site is used. Google Analytics only starts if you accept the banner shown on your first visit; you can grant or withdraw consent at any time from the "Cookie settings" link in the page footer.

Data may be transferred to and processed by Google outside the European Economic Area, subject to the safeguards described in Google's privacy policy. We don't use advertising cookies and we don't embed social network pixels.

8. Your rights

Under GDPR, you have the right to access your data, to rectify it, to have it erased, to restrict its processing, to portability, to object, and to withdraw consent at any time.

How to exercise your rights
Write to us at salut@isahar.io. We respond within 30 days, at no cost. If you're not satisfied with our response, you can contact Romania's National Supervisory Authority for Personal Data Processing (ANSPDCP), Bucharest.

9. Security

Traffic is fully encrypted, access to systems is limited to those who need it and protected with two-factor authentication, and backups are encrypted. These are the same practices we recommend to our own clients. If an incident occurs that could affect your rights, we'll inform you within 72 hours of discovering it.

10. Changes

When we update this document, we change the date at the top. If a change is material and affects you directly, we'll email you. Previous versions are available on request.