Privacy Policy

Last updated: 15 January 2026

Introduction

SmartBoostify d.o.o. ("we," "our," or "us") is committed to protecting your privacy and ensuring the security of your personal information. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you visit our website smartboostify.top, use our POS systems, or engage with our services.

Data Controller Information

SmartBoostify d.o.o. acts as the data controller for the personal data we process. Our contact details are:

Data Collection

The data we collect may include personal information that you provide directly to us and information that is automatically collected when you use our services. We collect the following types of information:

  • Contact Information: Name, email address, phone number, business address
  • Business Information: Restaurant name, business type, number of employees
  • Technical Information: IP address, browser type, device information, usage patterns
  • Communication Records: Records of correspondence, support requests, and feedback
  • Transaction Data: Payment information, billing details, service usage data

How We Use Your Information

We use your personal data for various purposes based on legitimate business interests, your consent, or to fulfil our contractual obligations. Specifically, how we use your information includes:

  • Providing and maintaining our POS services and customer support
  • Processing payments and managing billing
  • Communicating with you about our services, updates, and promotional offers
  • Improving our products and services based on usage analytics
  • Ensuring security and preventing fraud
  • Complying with legal obligations and regulatory requirements

Cookies and Tracking Technologies

We may use cookies and tracking technologies for analytics, advertising, and remarketing purposes, including Google Ads. These technologies help us measure campaign effectiveness, deliver relevant advertisements, and improve our services. You can manage your cookie preferences at any time through our cookie consent banner.

For detailed information about the cookies we use, please refer to our Cookie Policy.

Legal Basis for Processing

Under the General Data Protection Regulation (GDPR), we process your personal data based on the following legal grounds:

  • Contract Performance: To provide our POS services and fulfil our contractual obligations
  • Legitimate Interest: For business operations, security, and service improvement
  • Consent: For marketing communications and optional data processing activities
  • Legal Obligation: To comply with applicable laws and regulations

Data Sharing and Disclosure

We may share your information with trusted third parties in the following circumstances:

  • With service providers who assist us in operating our business
  • With payment processors for transaction processing
  • With analytics providers like Google Analytics for service improvement
  • When required by law or to protect our legal rights
  • In connection with a business transfer or acquisition

Your Rights

Under GDPR and Croatian data protection laws, you have the following rights regarding your personal data:

  • Right of Access: Request access to your personal data
  • Right to Rectification: Request correction of inaccurate data
  • Right to Erasure: Request deletion of your personal data
  • Right to Restrict Processing: Request limitation of data processing
  • Right to Data Portability: Request transfer of your data
  • Right to Object: Object to certain types of data processing
  • Right to Withdraw Consent: Withdraw consent for consent-based processing

Data Retention

We retain your personal data only for as long as necessary to fulfil the purposes outlined in this Privacy Policy, comply with our legal obligations, resolve disputes, and enforce our agreements. Typically, we retain customer data for the duration of our business relationship and for up to seven years afterwards for legal and regulatory compliance purposes.

Data Security

We implement appropriate technical and organisational measures to protect your personal data against unauthorised access, alteration, disclosure, or destruction. This includes encryption, secure servers, access controls, and regular security assessments. However, no method of transmission over the internet is completely secure, and we cannot guarantee absolute security.

International Data Transfers

Your personal data may be transferred to and processed in countries outside the European Economic Area (EEA). When we transfer data internationally, we ensure appropriate safeguards are in place, such as Standard Contractual Clauses or adequacy decisions by the European Commission.

Contact Information

If you have any questions about this Privacy Policy or wish to exercise your rights, please contact us using the following information:

Supervisory Authority

You have the right to lodge a complaint with the Croatian Personal Data Protection Agency (Agencija za zaštitu osobnih podataka) if you believe we have not handled your personal data in accordance with applicable law. You can contact them at azop@azop.hr or visit their website at www.azop.hr.

Changes to This Privacy Policy

We may update this Privacy Policy from time to time to reflect changes in our practices or applicable laws. We will notify you of any material changes by posting the new Privacy Policy on this page and updating the "Last updated" date. We encourage you to review this Privacy Policy periodically for any changes.

Need Help?

If you have questions about our privacy practices or need assistance with your data rights, our privacy team is here to help.

Contact Privacy Team