Privacy Policy

Introduction 

This privacy policy (Privacy Policy) sets out the ways in which DTI may collect and process your personal data.
In this Privacy Policy:

  • ‘we’, ‘us’, ‘our’ means the DTI entity which you are interacting with. For example, the entity you have a business relationship with, or organizing the event you are attending, or managing the website you are using. We will make it clear to you which entity this is;
  • ‘the site/website’ means the website you are visiting or engaging with; and
  • ‘you’ and ‘your’ means you, the person engaging with us, conducting business with us, registering for our events or services or visiting our site.

By visiting our website, registering for one of our events, cooperating with us, subscribing to our services or otherwise interacting with us we may collect and process personal data about you. We are strongly committed to protecting and keeping private any information collected and to always comply with applicable legislation.

Definitions

SERVICE means the services provided by Data Tech International listed on our website https://dti.rs/ including Sandbox application.

PERSONAL DATA means data about a living individual who can be identified from those data (or from those and other information either in our possession or likely to come into our possession).

USAGE DATA is data collected automatically either generated by the use of Service or from Service infrastructure itself (for example, the duration of a page visit).

DATA CONTROLLER means a natural or legal person who (either alone or jointly or in common with other persons) determines the purposes for which and the manner in which any personal data are, or are to be, processed. For the purpose of this Privacy Policy, we are a Data Controller of your data.

DATA PROCESSORS (OR SERVICE PROVIDERS) means any natural or legal person who processes the data on behalf of the Data Controller. We may use the services of various Service Providers in order to process your data more effectively.

DATA SUBJECT is any living individual who is the subject of Personal Data.

THE USER is the individual using our Service. The User corresponds to the Data Subject, who is the subject of Personal Data.

Our contacts:

Address: Data Tech International d.o.o, Kruzni put 7, 11309 Lestane-Belgrade, Serbia
Phone: +381 11 4099814
Email: office@dti.rs

Information we may collect

We may collect and process your personal data that you have provided to us, that we have obtained from third parties we work closely with or from publicly accessible sources. This can include:

Data you provide to us directly: First name, last name, business email address, phone number, company name/position (through Sandbox application account, Jira support account, contact forms and demo scheduling). Over direct contact job candidates may submit a CV, cover letter, and contact details.

Automatically collected data: During a visit, the hosting/server (GoDaddy) can record the IP address, date and time of the visit, visited pages, browser and operating system type, referring page, HTTP status, errors, and security events.

Google Analytics can additionally process data on visited pages, events, duration and source of the visit, approximate location, device, browser, operating system, and pseudonymous identifiers.

Purposes of processing

We may collect and process your personal data for the following purposes:

  • To provide and maintain our Service, including monitoring the usage of our Service.
  • To manage Your Account: to manage Your registration as a user of the Service. The Personal Data You provide can give You access to different functionalities of the Service that are available to You as a registered user.
  • For the performance of a contract: the development, compliance, and undertaking of the purchase contract for the products, items, or services You have purchased or of any other contract with Us through the Service.
  • To contact You: To contact You by email, telephone calls, SMS, or other equivalent forms of electronic communication, such as a mobile application’s push notifications regarding updates or informative communications related to the functionalities, products, or contracted services, including the security updates, when necessary or reasonable for their implementation.
  • To provide You with news, special offers, and general information about other goods, services, and events that we offer that are similar to those that you have already purchased or enquired about unless You have opted not to receive such information.
  • To manage Your requests: To attend and manage Your requests to Us.
  • For business transfers: We may use Your information to evaluate or conduct a merger, divestiture, restructuring, reorganization, dissolution, or other sale or transfer of some or all of Our assets, whether as a going concern or as part of bankruptcy, liquidation, or similar proceeding, in which Personal Data held by Us about our Service users is among the assets transferred.
  • For other purposes: We may use Your information for other purposes, such as data analysis, identifying usage trends, determining the effectiveness of our promotional campaigns, and evaluating and improving our Service, products, services, marketing, and your experience.

 Legal basis for the processing of personal data

We will process your personal data on the following legal bases:

  • the performance of a contract with you in compliance with Article 6(1)(b) GDPR for example where you have a business relationship with us, or where you have registered to attend or exhibit at an event;
  • our legitimate interest in compliance with Article 6(1)(f), for example, our desire to improve the website; to keep you up to date on our business activities and events;
  • your consent in compliance with Article 6(1)(a) GDPR, for example when you accept the use of cookies on the website;
  • to comply with a legal obligation to which we are subject in compliance with Article 6(1)(c)
  • legal basis for processing based on Article 12 of Serbian Personal Data Protection Law (ZZPL) 

Disclosure of personal data

We may disclose personal information that we collect, or you provide:

  • Disclosure for Law Enforcement.

Under certain circumstances, we may be required to disclose your Personal Data if required to do so by law or in response to valid requests by public authorities.

  • Business Transaction.

If we or our subsidiaries are involved in a merger, acquisition or asset sale, your Personal Data may be transferred.

Transfer of data

Your information, including Personal Data, may be transferred hosting environments hosted outside of your state, province, country or other governmental jurisdiction where the data protection laws may differ from those of your jurisdiction.

Your consent to this Privacy Policy followed by your submission of such information represents your agreement to that transfer. More details about hosting services and locations can be found in Service and Hosting Providers below.

We will take all the steps reasonably necessary to ensure that your data is treated securely and in accordance with this Privacy Policy and no transfer of your Personal Data will take place to an organisation or a country unless there are adequate controls in place including the security of your data and other personal information.

Transfer of personal data outside the EU/EEA

We may transfer your personal data to recipients located outside the Republic of Serbia (to third countries or international organizations), namely to our affiliated entities and data processors.

Such transfers take place in accordance with the Law on Personal Data Protection of the Republic of Serbia under the following conditions:

  • Adequate level of protection: The transfer is made to countries, territories, or international organizations determined to ensure an adequate level of personal data protection (such as states parties to the Council of Europe Convention 108, countries deemed adequate by the EU/Government of the Republic of Serbia);
  • Certified recipients in the USA: The recipient in the USA is bound by a recognized data privacy framework (such as the EU-US Data Privacy Framework) accepted under applicable domestic rules as providing an adequate level of protection;
  • Countries without an adequacy decision: Where a country does not ensure an adequate level of protection, we will implement appropriate safeguards in accordance with the Serbian Law on Personal Data Protection (such as adopting Standard Contractual Clauses prescribed by the Serbian Commissioner for Information of Public Importance and Personal Data Protection) and conducting a prior risk evaluation for such transfers.

In such cases, we will do everything to ensure that your personal data will receive an appropriate level of protection, which includes appropriate measure review and risk evaluation prior to the transfer to countries that are not designated as countries that provide an adequate level of protection

Storage period

We will retain your Personal Data only for as long as is necessary for the purposes set out in this Privacy Policy. We will retain and use your Personal Data to the extent necessary to provide requested services and comply with our legal obligations (for example, if we are required to retain your data to comply with applicable laws), resolve disputes, and enforce our legal agreements and policies.

We will also retain Usage Data for internal analysis purposes. Usage Data is generally retained for a shorter period, except when this data is used to strengthen the security or to improve the functionality of our Service, or we are legally obligated to retain this data for longer time periods.

Protection and Security

We take precautions to protect your personal data from loss, misuse, unauthorized access, disclosure, alteration, and destruction. DTI maintains an information security management system certified to ISO/IEC 27001:2022 and applies appropriate technical and organizational measures to meet standard best practices and protect the information systems on which your personal data is stored and we require our data processors to protect your personal data by contractual means. 

Your rights

Subject to certain exceptions and restrictions set out in applicable legislation, you enjoy the right to request access to your personal data, to have your personal data rectified, deleted, or processing thereof restricted, to object to the processing and data portability. You also have the right not to be subject to a decision based solely on automated processing, including profiling, which produces legal effects or affects you significantly.

Where our processing of your personal data is based on your consent you have the right to withdraw your consent at any time without affecting the lawfulness of processing based on consent before its withdrawal.

If you want to exercise any of your rights as described above or have any questions to that, please contact us by sending an email to office@dti.rs

You also have the right to lodge a complaint with the competent supervisory authority.

Service and Hosting Providers

Our services are hosted on our client’s premises, our private cloud environment or on the Hetzher cloud. We use Jira as our main ticketing system and in order to provide you with proper support your contact details can be also stored there. In addition to this, we use GoDaddy as our website and service hosting provider. More information about our service providers and their services are given below, and more details about Privacy Policy of our cloud and database providers can be found on their websites. 

GoDaddy — website hosting/infrastructure
Google — analytics/tag-management services
Atlassian — Jira support/ticket-management services
Hetzner — hosting infrastructure for designated DTI services

Cookies and Analytics

We use Cookies and similar tracking technologies to track the activity on Our Service and store certain information. Tracking technologies used are beacons, tags, and scripts to collect and track information and to improve and analyze Our Service. The technologies We use may include:

  • Cookies or Browser Cookies. A cookie is a small file placed on Your Device. You can instruct Your browser to refuse all Cookies or to indicate when a Cookie is being sent. However, if You do not accept Cookies, You may not be able to use some parts of our Service. Unless you have adjusted Your browser setting so that it will refuse Cookies, our Service may use Cookies.
  • Web Beacons. Certain sections of our Service and our emails may contain small electronic files known as web beacons (also referred to as clear gifs, pixel tags, and single-pixel gifs) that permit the Company, for example, to count users who have visited those pages or opened an email and for other related website statistics (for example, recording the popularity of a certain section and verifying system and server integrity).

Cookies used on website www.dti.rs are listed in the table below:

Cookie

Domain

Description

Duration

Type

_ga_*

.dti.rs

Google Analytics sets this cookie to store and count page views.

2 years

Analytics

_ga

.dti.rs

The _ga cookie, installed by Google Analytics, calculates visitor, session and campaign data and also keeps track of site usage for the site’s analytics report. The cookie stores information anonymously and assigns a randomly generated number to recognize unique visitors.

2 years

Analytics

More information about cookies on link https://dti.rs/cookie-policy-eu/.

Google Analytics

On our website we also use Google Analytics and Google Tag Manager. Google Analytics is a web analytics service offered by Google that tracks and reports website traffic. Google uses the data collected to track and monitor the use of our Service. This data is shared with other Google services. Google may use the collected data to contextualise and personalise the ads of its own advertising network.

For more information on the privacy practices of Google, please visit the Google Privacy Terms web page. We also encourage you to review the Google’s policy for safeguarding your data.

Links to other websites

The website may contain links to third-party websites. We disclaim any control over, relationship with, or endorsement of these sites and shall not be liable for any damages arising from the content of such websites. Links to other websites are provided only as a convenience and we encourage that you read these third-party websites’ Terms of Use and Privacy Statements.

Changes to this Privacy Policy

We may update this Privacy Policy from time to time. Updated privacy policies will be updated on the relevant DTI website or in other applications/services, or provided to you at your request.