Კონფიდენციალურობის პოლიტიკა

Privacy Policy (GDPR / RODO) – Clean-VIN.com
Last updated: 22 December 2025

This website is operated by an individual/business based in Poland (the “Administration”, “we”, “us”). We respect your privacy and process personal data in accordance with applicable data-protection laws, including the EU General Data Protection Regulation (GDPR) and Polish regulations.

This Privacy Policy explains what data we collect, why we collect it, how we use it, and what rights you have.

Website: https://www.clean-vin.com/
Contact email: office@cleanvinusa.com

If you do not agree with this Policy, please stop using the website.

1) Definitions
Personal Data – any information relating to an identified or identifiable natural person.
Processing – any operation performed on personal data (e.g., collection, storage, use, disclosure, deletion).
User – any visitor or customer using the website and/or ordering services.
Third Parties / Processors – companies that process data on our behalf or receive data for specific purposes (e.g., payment providers, analytics providers).

2) What data we collect
We collect data that is necessary to provide our services and operate the website.

2.1 Data you provide directly
- Name (if provided)
- Email address
- Phone number (if provided)
- VIN (Vehicle Identification Number) and related order details you submit
- Billing details necessary to process a payment (handled by payment providers)
- Communication content (emails/messages you send to us)

Note: A VIN can be personal data if it can be linked to an identifiable person.

2.2 Data collected automatically
- IP address
- Browser type, device type, operating system
- Pages visited, date/time, referring URL
- Cookies and similar technologies (depending on your consent settings)

3) Purposes and legal bases for processing
We process personal data for the following purposes and legal bases under GDPR:

3.1 Service delivery and customer support
Purpose: providing ordered digital services, responding to requests, communicating about orders.
Legal basis: performance of a contract (Art. 6(1)(b) GDPR) and/or legitimate interests (Art. 6(1)(f) GDPR).

3.2 Payments and accounting
Purpose: processing payments, invoicing/settlement, handling disputes/chargebacks, accounting compliance.
Legal basis: performance of a contract (Art. 6(1)(b)) and legal obligation (Art. 6(1)(c)).

3.3 Security and fraud prevention
Purpose: protecting the website, preventing abuse, investigating suspicious activity.
Legal basis: legitimate interests (Art. 6(1)(f)).

3.4 Analytics and website improvement
Purpose: understanding how the website is used and improving usability and performance.
Legal basis: legitimate interests (Art. 6(1)(f)) and/or consent where required (Art. 6(1)(a)), depending on local rules and cookie settings.

3.5 Marketing and advertising (including remarketing)
Purpose: running ad campaigns, measuring effectiveness, showing relevant ads.
Legal basis: consent (Art. 6(1)(a)) where required (especially for marketing cookies/remarketing technologies).

4) Cookies and similar technologies
We use cookies and similar technologies for:
- essential website functionality,
- analytics and performance,
- marketing/advertising (including remarketing), if enabled by you.

You can manage cookie preferences via your cookie banner/settings (if available) and/or your browser settings. Disabling some cookies may affect website functionality.

5) Third-party services and data sharing
We do not sell your personal data. We may share data with service providers only when necessary to operate the website, process payments, run analytics/ads, or comply with law.

Depending on your use of the website and your cookie settings, data may be shared with:
5.1 Advertising / analytics providers
- Google Ads (including conversion tracking/remarketing, if enabled)
- Google Analytics (if enabled)
- Yandex Metrica (if enabled)

5.2 Payment providers
- Stripe (card payments, where available)
- PayPal (PayPal payments, where available)

5.3 Hosting / infrastructure / security
- Website hosting/CDN/security providers used to deliver and protect the site

5.4 Legal and compliance
We may disclose data if required by law or lawful requests from authorities, or to protect our rights (e.g., in fraud/chargeback investigations).

Each third-party provider has its own privacy policy and may act as an independent controller for some processing (especially advertising platforms and payment providers).

6) Data retention
We keep personal data only as long as necessary for the purposes described in this Policy:
- Order and communication data: retained as needed for service delivery, support, and dispute handling.
- Accounting/tax documents: retained for the period required by Polish tax/accounting rules (typically up to 5 years, depending on the document type and circumstances).
- Analytics/marketing data: retained according to the settings and retention policies of the relevant tools and your consent choices.

After retention periods expire, data is deleted or anonymized where feasible.

7) Your rights under GDPR (RODO)
You have the right to:
- access your data,
- rectify inaccurate data,
- erase data (where applicable),
- restrict processing,
- data portability (where applicable),
- object to processing based on legitimate interests,
- withdraw consent at any time (for consent-based processing),
- lodge a complaint with a supervisory authority (in Poland: UODO).

To exercise your rights, contact: office@cleanvinusa.com
We may need to verify your identity before fulfilling a request.

8) Data security
We apply reasonable technical and organizational measures to protect personal data (e.g., encryption in transit/SSL, access controls, security monitoring). No system is 100% secure; please use caution when sharing information online.

9) International data transfers
Some providers (e.g., Google, Stripe, PayPal) may process data outside Poland/EEA. Where required, transfers are protected by appropriate safeguards (e.g., Standard Contractual Clauses and other GDPR mechanisms used by those providers).

10) Children
The website and services are not intended for children. We do not knowingly collect personal data from children.

11) Changes to this Policy
We may update this Privacy Policy from time to time. The updated version will be posted on this page with a new “Last updated” date.

Contact
Questions about privacy or this Policy:
office@cleanvinusa.com