Privacy Policy
Tarokartis.lv privacy policy
1. Introduction
This privacy policy explains how SIA COMERIX (hereinafter – the Controller) processes information and personal data on the website https://www.tar.host.
On the website https://tar.host (hereinafter – the Website), the Controller processes personal data obtained from the data subject – the user of the Website (hereinafter – the User).
The Controller cares about the User's privacy and the protection of personal data and respects the User's right to lawful processing of personal data in accordance with the applicable legislation: Regulation No. 2016/679 of the European Parliament and of the Council of 27 April 2016 on the protection of natural persons with regard to the processing of personal data and on the free movement of such data (the Regulation) and other applicable legislation in the field of privacy and data processing.
In view of the above, the Controller has drawn up this privacy policy with the aim of providing the User with the information required by the Regulation.
The privacy policy applies to data processing regardless of the form and/or environment in which the User provides personal data (on the Website, on paper, or by telephone).
2. Identity and contact details of the Controller
Controller's contact details: SIA COMERIX (registration number: 40203607329, legal address: Riga, Rūpniecības iela 21 k-4 – 63, LV-1045). Email address: 📧 Click to reveal the email address
3. Purposes of processing, legal basis for processing
If the User provides the Controller with their personal data — for example, first name, last name, email or postal address, telephone number, personal messages, etc. — via the Website's contact forms, email, or other types of mail, the Controller stores and uses this information in order to perform or conclude the relevant service agreement.
The processing of the above data is necessary for the Controller to identify the client, assess solvency, prepare and conclude the agreement and prove the fact of its conclusion, ensure/maintain the operation of the services, provide customer service, review and process applications and objections, administer payments, and for other purposes directly related to the conclusion or performance of agreements.
The legal basis for data processing is Article 6(1)(b) of the Regulation, which states that processing is lawful if it is necessary for the performance of a contract or in order to take steps at the request of the data subject prior to entering into a contract.
4. Categories of personal data
Categories of personal data – first name, last name, email or postal address, IP address, telephone number, or the content of a letter, etc.
5. Categories of recipients of personal data
Data is disclosed to those employees of the Controller who need it to perform their direct duties in order to perform or conclude the relevant service agreement.
When obtaining and using personal data, the Controller partly uses the services of external service providers who, under contract, strictly follow the Controller's instructions and whom the Controller monitors before using the service and continuously thereafter.
6. Categories of data subjects
Categories of data subjects – the Controller's current, former, and potential clients.
7. Transfer of data outside the European Union
The data received is not and will not be transferred outside the European Union or the European Economic Area, nor will it be transferred to any international organization.
8. Data retention period
Unless stated otherwise in the data protection notices, the Controller deletes personal data no later than three years after the original reason for storing the data has ceased to apply, except in cases where we have a legal obligation to continue storing this data (for example, but not limited to, for accounting or litigation purposes).
9. Data subject's access to personal data
The data subject has the right to receive access to their personal data within one month from the date of submitting the relevant request.
The User may submit a request to exercise their rights in written form in person at the Controller's legal address (presenting an identity document) or by email, signed with a secure electronic signature.
Upon receiving the User's request to exercise their rights, the Controller verifies the User's identity, evaluates the request, and fulfils it in accordance with the applicable laws and regulations.
The User has the right to receive the information specified in the applicable laws regarding the processing of their data, the right to request access to their personal data, as well as to request that the Controller supplement, correct, or delete them, restrict their processing, or the right to object to processing, insofar as these rights do not conflict with the purpose of the data processing (conclusion or performance of agreements).
The data subject does not have the right to receive information if its disclosure is prohibited by law in the fields of national security, national defence, public safety, or criminal law, as well as for the purpose of protecting the financial interests of the state in tax matters or the supervision of financial market participants and macroeconomic analysis.
10. Commercial communications
The Controller sends commercial communications in accordance with the User's consent. Section 9, paragraph two of the Information Society Services Law also provides for cases where commercial communications may be sent without obtaining consent, for example, if the email address was obtained in the course of providing a previous service or selling goods.
The User may give consent to receiving the Controller's commercial communications in the service application form published on the Website.
The consent given by the User to receive commercial communications remains in force until it is withdrawn. The User may opt out of receiving further commercial communications at any time by using the automated opt-out option provided in the commercial communication, clicking the unsubscribe link at the end of the respective commercial communication.
The Controller stops sending commercial communications as soon as the User's request has been processed.
Profile: