Thank you for your interest in the company REMADE DOO (hereinafter referred to as “REMADE”), registered with the Serbian Business Registers Agency under company number 21593737 and VAT number 112033984, and for visiting our online presentation at the website: https://remade.rs/. Protecting your personal data is one of our top priorities, and therefore, we have aligned our entire online presence with the applicable legal regulations and the highest standards governing privacy (hereinafter referred to as “REMADE”, “we”, or “us”).
With this Data Protection Notice, we aim to inform you, in accordance with the provisions of the Law on Personal Data Protection of the Republic of Serbia—which largely relies on the EU General Data Protection Regulation (GDPR, Regulation (EU) 2016/679)—about how we process your personal data when using our website https://remade.rs/, as well as when using our services and features, or when contacting us.
Our data protection policy is designed to ensure transparency and security of your data in line with the highest standards. If you have further questions about data protection, you can contact us at: contact@remade.rs or reach our Data Protection Officer, Aleksej Vislavski, at: it@remade.rs.
The website https://remade.rs/ may occasionally redirect traffic to new pages provided by partner companies. After redirection, REMADE DOO is no longer responsible for regulatory compliance. We recommend that visitors carefully read the data protection information on each of these third-party websites before providing any personal data.
Terms and Definitions:
- Commissioner for Information of Public Importance and Personal Data Protection (hereinafter: “Commissioner”) – An independent and autonomous public authority in Serbia responsible for supervising the implementation of data protection laws and performing other tasks prescribed by law (https://www.poverenik.rs/sr/).
- Personal data is any information relating to an identified or identifiable natural person.
- Data subject is the natural person to whom the personal data relate.
- Special categories of personal data include data revealing racial or ethnic origin, political opinions, religious or philosophical beliefs, trade union membership, genetic and biometric data, data concerning health, and data concerning a person’s sex life or sexual orientation.
- Processing means any operation or set of operations performed on personal data, whether or not by automated means (e.g., collection, recording, organization, structuring, storage, adaptation, alteration, retrieval, use, disclosure, restriction, erasure, or destruction).
- Controller is the natural or legal person or authority that determines the purposes and means of data processing.
- Processor is the natural or legal person or authority that processes personal data on behalf of the controller.
- Profiling is any form of automated processing used to evaluate certain personal aspects of an individual.
- Pseudonymization means processing personal data in such a way that the data can no longer be attributed to a specific individual without the use of additional information.
- Anonymization is the processing of personal data in such a way that the individual can no longer be identified.
- Public authority refers to government bodies and other entities exercising public powers.
- Competent authorities are those involved in the prevention, investigation, detection, or prosecution of criminal offenses.
- Consent is any freely given, specific, informed, and unambiguous indication of the data subject’s wishes.
- Data breach is a breach of security leading to the accidental or unlawful destruction, loss, alteration, unauthorized disclosure, or access to personal data.
- Biometric data are personal data resulting from specific technical processing relating to the physical, physiological, or behavioral characteristics of a person.
YOUR INFORMATION
How We Collect It:
(a) We collect your information when you:
- Contact us;
- Visit our websites or apps;
- Download content from our website;
- Subscribe to our newsletter.
(b) We collect information automatically via cookies when you use our websites and/or apps. Please see our Cookie Policy for more details.
(c) We may collect information from publicly available sources and selected third parties (e.g., analytics and technology service providers) in accordance with this Policy.
What We Collect:
- Contact details such as name, email address, mailing address, social media username, and phone number;
- Information on how you and your device interact with our services, including technical identifiers, usage data, and location analytics.
How We Use Your Information:
Depending on the service you use, your relationship with us, and how you interact with us, we use your information for purposes based on the following legal grounds:
- To perform a service contract, such as:
- Managing your access to and use of services;
- Providing technical and user support;
- Security services.
- For our legitimate interests, such as:
- Monitoring and improving our services;
- Resolving disputes and enforcing contracts.
- To comply with legal obligations.
Direct Marketing
We will only contact you via direct marketing if we are legally permitted to do so, or if you have interacted with us (e.g., by using our services), unless you have opted out. You can unsubscribe at any time via the “unsubscribe” link in our emails.
If you ask to be removed from our marketing list, we will retain a record of your name and email address to ensure you are not contacted again.
Third Parties
Service Providers
We use various third-party providers to support our business. These third parties may process your data on our behalf for purposes such as:
- Providing requested services;
- Data storage and web hosting;
- IT security;
- Productivity tools and email systems;
- Customer relationship management;
- Marketing automation and analytics;
- Communication services;
- Website and app development;
- Online payments and billing;
- Professional advisors (e.g., accountants, auditors, lawyers).
Third-Party Websites
If you visit a third-party site via our services, your data will be handled according to their privacy policy. We have no control over their practices.
Data Retention
We retain your data only as long as necessary for the purposes it was collected. Our retention schedule considers the need to:
- Deliver services and products;
- Maintain communication;
- Meet legal, contractual, accounting, and audit obligations.
Once anonymized, we may use your data indefinitely, in accordance with best GDPR practices.
Data Retention Periods:
- Inquiry data: deleted after processing;
- Contractual data: retained for 5 years post-contract for tax/legal purposes;
- Business development data: retained for 2 years, or longer in anonymized form;
- Marketing data: retained until you unsubscribe;
- Inactive marketing users: removed after 3 years;
- Recruitment data (unsuccessful applicants): retained for 6 months.
Transfer of Data Outside Serbia
Data may be transferred outside Serbia—for example, to servers or service providers in other countries. Such transfers are made only to EU countries and with appropriate safeguards in place as per Serbian and GDPR regulations.
Data Security
We implement appropriate technical and organizational security measures, including:
- Restricted access to data;
- IT system integrity and availability;
- Data recovery and disaster preparedness;
- Security monitoring and auditing.
We have procedures for dealing with suspected breaches and will notify you and authorities where legally required.
Your Rights
When we process your personal data, you have the right to:
- Access and obtain a copy of your data;
- Request correction of inaccurate/incomplete data;
- Request deletion or cessation of processing;
- Restrict processing;
- Transfer your data to another party;
- Object to processing based on legitimate interest;
- Withdraw consent at any time.
To exercise these rights, contact us at: contact@remade.rs or reach our DPO, Aleksej Vislavski, at: it@remade.rs.
You don’t have to pay a fee unless the request is excessive or repetitive. We may ask you to verify your identity before proceeding.
For cookie-related concerns, please see our Cookie Policy.
Sensitive Information
We do not intentionally collect sensitive information. If you provide such data, we consider it as explicit consent for immediate deletion. “Sensitive Information” includes data about racial/ethnic origin, political opinions, religious beliefs, trade union membership, health, genetics, biometrics, or sexual orientation.
Minors
We do not knowingly collect information from individuals under 18 (“minors”). If we learn that a minor has submitted personal data, we will delete it without delay.
Questions and Complaints
If you have questions about your privacy or wish to file a complaint, contact us using the above addresses. If you’re not satisfied, you may contact the Serbian Commissioner for Information of Public Importance and Personal Data Protection:
Address: Bulevar Kralja Aleksandra 15, Belgrade 11120
Phone: +381 11 3408 900
Fax: +381 11 3343 379
Email: office@poverenik.rs
Policy Changes
We will update this Policy as needed and publish the revised version on our website. We encourage you to check our site periodically to stay informed about how we handle your data.
Last updated: December 3, 2024