1. Introduction
ED ARCHITECTURE LLC’s privacy policy applies to information collected while users access their service. By signing up, users consent to this policy. The policy complies with GDPR and Russian Federation data protection laws, covering all data processing activities.
The company commits to transparency about collected information and its uses. They process only necessary data and honor requests to stop promotional communications without affecting service notifications. If data protection is breached, users will be notified.
Users retain rights to control their information. If they request data processing cessation and the law permits, the company will comply. Questions can be directed to: ea@eddesignaward.com
2. User’s Personal Data
Personal data” means information identifying users or enabling identification, such as names and contact details. This includes:
- Data users submit when registering
- Automatically transmitted data (IP address, device specifications, access times)
- Other information processed per service terms
The company assumes users provide truthful, current information. The policy may be updated with immediate effect upon publication.
3. Purpose of Personal Data Processing
The company collects only data required for service provision. Processing purposes include:
- User identification
- Personalized offers and contract fulfillment
- Communications and request processing
- Service improvement and development
- Statistical surveys using anonymized data
4. Types of Personal Data
User-provided data:
- Names
- Contact information (email, phone)
Users cannot provide third-party data without explicit consent or publicly available sources.
Automatically transmitted data: IP addresses, device identifiers, browser information, access times, search queries
Data collection focuses on: providing service consultations, administering and protecting the service, and troubleshooting.
5. Principles of Personal Data Processing
Personal data is processed on legal, fair bases for specific predetermined purposes. Databases cannot be merged for non-conforming purposes. Processing includes only necessary data matching declared purposes.
Data accuracy, sufficiency, and relevancy are maintained. Personal data is retained only as long as required, then destroyed or anonymized unless GDPR or contracts specify otherwise.
6. Terms of Personal Data Processing
Data is processed under GDPR compliance. “The company keeps information as long as needed for processing purposes.” Storage continues for responding to requests and improving experiences. Relevance is constantly reviewed.
Processing conditions include:
- Subject consent
- Legal requirements
- Justice administration
- Contract fulfillment
- Protection of vital interests
- Legitimate interests or public importance
- Anonymized statistical purposes
- Publicly disclosed data
- GDPR-mandated disclosures
The company does not process biometric data. Personal data may be transferred outside the European Economic Area with protective measures ensuring compliance.
Decisions with legal consequences are never based solely on automated processing.
7. Responsibilities of the Administration
The company must:
- Provide requested information about personal data processing or legally refuse
- Update, block, or remove incomplete, outdated, or illegally obtained data
- Notify of data processing except in specific circumstances
- Destroy data within 30 days after processing purposes are achieved
- Stop processing and destroy data within 30 days of consent withdrawal
- Immediately cease promotional data processing upon request
8. Security Measures
The company takes legal, organizational, and technical measures protecting data from unauthorized access, destruction, or disclosure.
Most processing occurs automatically without employee access. When accessible, only necessary personnel receive it. Security measures include:
- Risk identification
- Technical and organizational protections
- Tool compliance assessment
- Unauthorized access detection
- Data restoration procedures
- Monitoring and enforcement
- Anti-virus protection with updated databases
- Information backup
- Limited access circles
The company does not sell personal information to third parties.
9. Legal Rights
EU and Russian Federation laws grant users several rights. Requests require written contact (mail/email) with 30-day response periods.
Users can:
- Stop receiving promotional materials
- Request processing cessation for marketing
- Obtain information about personal data processing
- Correct inaccurate data
- Request data deletion (with archival exceptions for legal obligations)
- Receive free electronic copies for transfer
10. Request Forms
Requests may be written or electronic. Electronic requests require valid electronic signatures. Phone and fax requests are not processed due to identification inability.
Requirements include:
- Applicant surname and name
- Data subject surname and name
- Identity document number and issuing information
Users can revoke consent by emailing: ea@eddesignaward.com
Confirmed inaccuracies require correction; unlawful processing must stop.
11. Contacts
Send requests or questions to: ea@eddesignaward.com or EDARCHITECTURE LLC, Office 26 build 1, Prospect Mira, Moscow.