Start a project
EU Regulation 2016/679
🇪🇺

Your GDPR rights

Under the EU General Data Protection Regulation, you have specific, enforceable rights over your personal data. Here's what they are and how to use them.

EU GDPR Compliant Updated April 2026

Imperius Software SRL, operator of the 82 Design brand, complies fully with EU Regulation 2016/679 (GDPR). This page explains your rights, the legal basis on which we process your data, and how to exercise control. For broader privacy details, see our Privacy Policy.

👁️
Right to Access
Request a copy of all data we hold about you, free of charge.
✏️
Right to Rectification
Correct any inaccurate or incomplete information.
🗑️
Right to Erasure
Request deletion of your data – the "right to be forgotten".
⏸️
Right to Restrict
Limit how we process your data in specific cases.
📤
Data Portability
Receive your data in a machine-readable format.
🚫
Right to Object
Stop processing for specific purposes (e.g., marketing).
01

Why we process your data

We rely on the following GDPR legal grounds:

  • Consent (Art. 6.1.a) – when you submit the contact form or accept cookies
  • Contract (Art. 6.1.b) – when processing is necessary to fulfill our service agreement
  • Legitimate interest (Art. 6.1.f) – for site security, fraud prevention, and basic analytics that don't override your rights
  • Legal obligation (Art. 6.1.c) – when Romanian or EU law requires us to keep certain records (invoicing, tax)
02

Data outside the EEA

Some of our service providers (e.g., Cloudflare, Google) may transfer or process data outside the European Economic Area. When this happens:

  • We use providers that comply with GDPR – via Standard Contractual Clauses (SCCs) or other approved mechanisms
  • Data is encrypted in transit and at rest
  • We only work with vendors that meet GDPR's adequacy requirements
  • You can request specifics on which providers handle your data
03

Exercising your rights

To use any GDPR right:

  • Email hello@82design.ro with your request
  • Specify which right you want to exercise (access, deletion, rectification, etc.)
  • We verify your identity before processing the request
  • We respond within 30 days (extendable to 90 for complex cases)
  • Service is free, except for clearly unfounded or excessive requests
📧No special form needed. A simple email like "please send me a copy of my data" is enough – we'll handle the rest.
04

Right to complain

If you believe we've mishandled your data, you have the right to lodge a complaint with the Romanian DPA:

  • ANSPDCP (Autoritatea Națională de Supraveghere a Prelucrării Datelor cu Caracter Personal)
  • Website: dataprotection.ro
  • Address: B-dul G-ral. Gheorghe Magheru 28-30, București

You can also file with the DPA in the EU country where you live or work, if different.

05

No automated profiling

We do not use automated decision-making or profiling that produces legal or similarly significant effects on you. Any decisions that affect our relationship are made by humans, not algorithms.

06

If something goes wrong

In the unlikely event of a data breach affecting your personal information:

  • We notify ANSPDCP within 72 hours as required by GDPR
  • If the breach poses a high risk to you, we notify you directly without delay
  • We document the breach, its causes, and mitigation steps
  • We take immediate corrective action to limit damage and prevent recurrence

Exercise your GDPR rights

Want to access, correct, transfer, or delete your data? We respond within 30 days, free of charge.