Privacy Policy

EastWeb.ro Privacy Policy - GDPR compliant data protection

Privacy Policy

Last updated: August 17, 2026

At EastWeb, we value the protection of your personal data.

1. Data Collected

During registration, we collect your name, email address, phone number, and address. Payment transactions are securely processed through Stripe.

2. Use of Data

Your data is used solely for service delivery, order processing, and customer communication.

3. Cookies

Our site uses Google Analytics. Analytics data is not collected without your cookie consent.

4. Data Security

Your data is protected with SSL encryption and stored on secure servers.

5. Security and Fraud Prevention Logs

When you create an account, sign in, or place an order, we record your IP address, browser information (user-agent), connection country, and browser language preference. These records are used only to prevent fraud, protect account security, and verify transactions in the event of a payment dispute. They are not used for marketing and are not sold to third parties.

The legal basis is legitimate interest under GDPR Article 6(1)(f); Recital 47 expressly recognises fraud prevention as a legitimate interest. These records are retained for 180 days and are then deleted automatically. The period reflects the card networks’ payment dispute window of up to 120 days plus the time we have to respond. Your order and invoice records are retained separately to meet accounting obligations; only these security fields are removed.

6. Your Rights

Under GDPR, you have the right to access, correct, and delete your data. For requests, contact [email protected].