OB2B
BOOK A STRATEGY CALL

Privacy Policy

Introduction

We are very pleased about your interest in our company. Data protection is of particular importance for the management of Prodajni ured d.o.o. (registered office: Kudekov put 5/5, Zagreb, Republic of Croatia; correspondence address: Gjure Szaba 1A, 10 000 Zagreb), Personal identification number 55902938026 (hereinafter referred to as: OB2B). OB2B is data controller of your personal data. We have a data protection officer and you can contact us via e-mail at info@ob2b.io or by post at Gjure Szaba 1A, 10 000 Zagreb, Croatia. The processing of personal data, such as the name, address, e-mail address or telephone number of a Client, is always in accordance with the General Data Protection Regulation and in accordance with the country-specific data protection regulations applicable to OB2B. Through this privacy policy, our company seeks to inform the public about the nature, scope and purpose of the personal information we collect, use and process. Furthermore, Client is informed of his rights under this privacy policy.

OB2B, as the controller, has implemented numerous technical and organizational measures to ensure the most complete protection of personal data processed via this website. By working with OB2B, you agree to the collection and use of your information as stated in this policy.

Summary

  • We will never give, sell, rent or borrow your information to anyone.
  • We will never spam you.
  • We will never use your information without your consent.
  • As part of GDPR compliance, we’ve simplified our Privacy Policy.

Your personal data is processed because of the legal requirements, or processing is necessary for the performance of a contract or in order to take steps prior to entering into a contract or for the purposes of our legitimate interests, except where such interests are overridden by the interests or fundamental rights and freedoms of the data subjects which require protection of personal data. If personal data can’t be processed based on aforementioned legal basis we will request your consent. If processing is based on your consent you have the right to withdraw consent at any time. You can notify us about the withdrawal of the consent at any given time via e-mail at info@ob2b.ioor by post at Gjure Szaba 1A, 10 000 Zagreb, Croatia. Such withdrawal won’t have an effect on the lawfulness of processing based on consent before its withdrawal.

1. Also as part of GDPR compliance, you have the following rights:

  1. Right of access:you have the right to obtain from us a confirmation as to whether or not personal data concerning you are being processed, and, where that is the case, access to the personal data. Information’s about access include but are not limited to – the purposes of the processing, the categories of personal data concerned, the recipients or categories of recipient to whom the personal data have been or will be disclosed. However, right of access is not an unconditional right and rights and interests of other individuals may limit your right of access.
  2. You have the right to receive a copy of the personal data undergoing processing. For any further copies you request, we may charge a reasonable fee based on administrative costs.
  3. Right to rectification: you have the right to obtain from us without undue delay the rectification of inaccurate your personal data. Taking into account the purposes of the processing, you have the right to have incomplete personal data completed, including by means of providing a supplementary statement.
  4. Right to erasure (‘right to be forgotten’): under certain conditions, you have the right to obtain from us the erasure of your personal data and we are required to erase such personal data.
  5. Right to restriction of processing: under certain conditions, you have the right to obtain from us restriction of processing your personal data. In that case, such data will be marked and can be processed only for certain purposes.
  6. Right to object: Under certain conditions you have at any time the right to object to processing of your personal data, on grounds relating to his or her particular situation or when personal data are processed for direct marketing purposes you have the right to demand from us to stop the processing of your personal data.
  7. Right to data portability: Under certain conditions, you have the right to receive your personal data, which you have provided to us, in a structured, commonly used and machine-readable format and have the right to transmit those data to another controller without our hindrance.
  8. If you wish to find out more or to use one of the aforementioned rights, feel free to contact OB2B at e-mail address: info@ob2b.io or at address: Gjure Szaba 1A, 10 000 Zagreb, Croatia.
  9. If you think that your rights have been violated, you have the right to lodge a complaint at national supervisory authority.

2. How we treat your information

2.1. We will never give, sell, rent or borrow your information to anyone.

We respect your privacy and your trust. We will therefore never give, sell, rent or borrow your information to anyone without your express permission.

2.2 We will never spam you.

We don’t use any kind of newslettering services.

3. Purposes of the processing of personal data

3.1.Your personal data is processed because of the legal requirements, or processing is necessary for the performance of a contract or in order to take steps prior to entering into a contract or for the purposes of our legitimate interests, except where such interests are overridden by the interests or fundamental rights and freedoms of the data subjects which require protection of personal data. If personal data can’t be processed based on aforementioned legal basis we will request your consent. While communicating through an e-mail based on a legal interest you can notify us at any given time that you don’t want to receive our e-mail. You can do that by sending an e-mail to an e-mail address from which you have received the message.

3.2. Your personal data is processed only when it is necessary to fulfil rights and obligations which will arise from business relations, for marketing purposes or for the purpose of improving our businesses and your user experience.

3.3. Personal data is mostly collected directly from you when you fill out a specific form or through public available information.

4. What information do we collect?

4.1. General information – Contact form

We collect information from you when you fill out the contact form on our website – name, e-mail, phone number, and information about your requirements. If you contact us using the contact form on our Contact us page or an email link, we may store this data internally to process your enquiry and to keep track of your engagement with us as a (potential) client or partner.

5. Basis for the processing

Controller can process personal data only and to the extent of the following basis for the processing: the data subject has given consent to the processing of his or her personal data, processing is necessary for the performance of a contract to which the data subject is party or in order to take step at the request of the data subject prior to entering into a contract, processing is necessary for compliance with a legal obligation to which the controller is subject, processing is necessary in order to protect the vital interests of the data subject or of another natural person, processing is necessary for the performance of a task carried out in the public interest or in the exercise of official authority vested in the controller, processing is necessary for the purposes of the legitimate interests pursued by the controller or by a third party, except where such interests are overridden by the interests or fundamental rights and freedoms of the data subject which require protection of personal data, in particular where the data subject is a child.

6. Storing of personal data

Your personal data which are collected will be stored in safe environment. Your personal data are protected from any unauthorized access, disclosure, use, alteration or destruction by any organisation or individual.

Information’s collected for aforementioned purposes will be stored only as long as it is necessary for the mentioned purposes. Your personal data will not be kept in a form which enables your identification longer than OB2B reasonably considers it is necessary to fulfil the purpose for which they have been collected and processed. OB2B will store certain personal data for a period of time which is laid down by law or regulation binding OB2B to store data.

If you have given us your consent, your personal data will be processed until consent withdrawal. If you lodge a grounded objection against the processing of personal data based on legal interest your personal data will not be processed in the future.

Personal data can be processed until the end of a court, administrative or extrajudicial proceeding, including the period for submitting legal remedies. OB2B shall keep certain personal data for a period of time which is laid down by law or regulation binding the controller to store data.

7. Recipients of personal data

With aforementioned, your personal data can be given to our trustworthy partners who maintain our IT system or provide services in the name of OB2B. Examplewise, for marketing, finance, advertising, payment processing, delivery and other services. Aforementioned service providers are obligated, according to relevant contracts, to use the entrusted data only in accordance with our regulations and exclusively for the purposes we have strictly declared. They are also obligated to adequately protect your data and to keep your data as a personal secret.

8. Do we use cookies?

For most visitors to our website: no. We do not use tracking cookies, profiling cookies or cookies that would identify you across sessions or follow your behaviour across devices.

The exception is visitors who reach our website via a Google Ads advertisement (identifiable by the URL parameter ?gclid=, ?gbraid= or ?wbraid=). For these visitors we show a cookie banner where you can explicitly consent to or reject the activation of Google Ads conversion tracking. See section 8.3 for details.

8.1. Cookieless web analytics – Plausible

To measure traffic we use Plausible Analytics (Plausible Insights OÜ, Estonia), a privacy-friendly, cookieless web analytics service. Plausible does not build user profiles, does not store personal data and does not assign individual identifiers. Only aggregate data is collected, such as the page visited, referrer, browser type and approximate geographical region (country).

The Plausible script is loaded from our own domain, so no third-party connection to plausible.io is made from your browser. More information: plausible.io/data-policy.

8.2. Spam protection – Cloudflare Turnstile

Our contact form is protected against automated abuse by Cloudflare Turnstile (Cloudflare, Inc., USA). Turnstile does not use persistent tracking cookies. When the form is submitted, an anonymous security token is transmitted to Cloudflare and is used solely for bot detection. More information: Cloudflare Privacy Notice.

8.3. Google Ads conversion tracking (paid-traffic only)

When you reach our website via a Google Ads advertisement we want to measure whether that advertisement was relevant to you (for example whether you submitted our contact form). This is used solely to optimise our advertising. Organic visits — visits without a Google Ads click identifier — neither trigger the banner nor transmit any data to Google.

If you consent (“Accept”):

  • The Google Ads tag (gtag.js, hosted on googletagmanager.com) is loaded in your browser and may set cookies that link your click on our advertisement to a conversion (such as submitting the contact form).
  • Upon successful submission of the contact form we transmit a cryptographically hashed form of your email address and (where provided) phone number to Google (“Enhanced Conversions for Leads”). Pseudonymisation is performed by the Google Ads script in your browser before the data is sent to Google; no plaintext personal data is transmitted.
  • We transmit the click identifier (gclid/gbraid/wbraid) so that Google can attribute the conversion to a specific advertisement and search query.

If you reject or do not consent:

  • Under Google Consent Mode v2 (Advanced Mode) only a cookieless ping with ad-related identifiers redacted is sent to Google. This ping contains no personal data and only allows Google to perform a statistically modelled — non-deterministic — attribution.
  • We additionally enable the ads_data_redaction (advertising data redaction) and url_passthrough (passing the click identifier via URL only, not via a cookie) features.

Legal basis: your explicit consent pursuant to Art. 6(1)(a) GDPR and § 25(1) TDDDG (the German Digital Services Data Protection Act). You may withdraw your consent at any time, with effect for the future, by disabling the marketing category in the cookie banner or settings dialog. The lawfulness of processing carried out before withdrawal remains unaffected.

Data recipient: Google Ireland Limited (Gordon House, Barrow Street, Dublin 4, Ireland) as the primary controller in the EU. A transfer to Google LLC, 1600 Amphitheatre Parkway, Mountain View, CA 94043, USA cannot be ruled out. Google is certified under the EU-U.S. Data Privacy Framework; additionally, Standard Contractual Clauses within the meaning of Art. 46(2)(c) GDPR are in place.

Retention:conversion cookies are stored in your browser for a maximum of 90 days. Data transmitted to Google is processed in accordance with Google’s retention periods.

More information in the Google Privacy Policy and at How conversion tracking works (Google Help).

9. Contacting Us

If there are any questions regarding this privacy policy you may contact us using the information below:

www.ob2b.io
Gjure Szaba 1A,
10 000 Zagreb, Croatia
info@ob2b.io

10. Changes to our privacy policy

This privacy policy may change from time to time inline with legislation or industry developments. We will not explicitly inform our clients or website users of these changes. Instead, we recommend that you check this page occasionally for any policy changes.