Legal

Privacy policy

Last updated: 4 August 2026

Short version: this website sets no cookies, runs no analytics, loads nothing from third-party servers, and has no login. The only personal data we ever hold from this site is what you choose to put in an email to us.

1. Who is responsible

The controller of any personal data processed in connection with this website, within the meaning of Article 4(7) of the General Data Protection Regulation (GDPR), is:

Smooth-Soft, obrt za informatičke usluge, vl. Josip Nižetić, Zagreb, Vrbje 1 B
Vrbje 1 B, 10000 Zagreb, Croatia
OIB 39987428947 · MBO 98252577
Email: info@smooth-soft.com

Full registration details are on the legal notice page. We are not required to appoint a Data Protection Officer and have not appointed one; please direct all privacy enquiries to the address above.

2. Cookies and tracking

This website sets no cookies of any kind — not necessary, not functional, not analytical, not advertising. It uses no local storage, no session storage, no tracking pixels, no fingerprinting and no advertising or analytics services. There is nothing to consent to and therefore no cookie banner.

3. Third-party content

All resources used by this site — stylesheets, images and icons — are served from smooth-soft.com itself. There are no content delivery networks, no hosted webfonts, no embedded videos, maps or social media widgets. Loading any page of this site therefore does not disclose your IP address to anyone but our hosting provider.

Where we link out to another website — for example the Croatian Craft Register, or a product site of ours — that site's own privacy policy applies once you follow the link.

4. Server logs

Our hosting provider records standard web server access logs when a page is requested. These may contain your IP address, the date and time of the request, the page requested, the HTTP status code, the referring page and your browser's user-agent string.

  • Purpose: operating and securing the website, and diagnosing faults.
  • Legal basis: Article 6(1)(f) GDPR — our legitimate interest in providing a functioning and secure website.
  • Retention: logs are retained only for as long as needed for those purposes and are not combined with any other data, not used to profile visitors, and not used to identify individuals.

5. If you contact us

The contact page contains a form that does not submit anything to our servers or to any third-party service. It opens a pre-filled message in your own email program, which you then choose whether to send. Nothing leaves your device unless you send that email yourself.

If you do write to us — by that form, directly by email, by telephone or by post — we process the contact details and the content of your message in order to answer you.

  • Legal basis: Article 6(1)(b) GDPR where your message concerns a contract or steps taken prior to entering into one; otherwise Article 6(1)(f) GDPR — our legitimate interest in responding to enquiries addressed to us.
  • Recipients: our email provider, acting as a processor. We do not sell, rent, publish or share your data with anyone else, and we do not use it for marketing unless you ask us to.
  • Retention: correspondence is kept for as long as needed to deal with the matter and to meet any statutory record-keeping obligation, then deleted.

6. Transfers outside the EU/EEA

We aim to keep hosting and email within the European Union. Where a provider we use processes data outside the EU/EEA, that transfer is covered by an adequacy decision of the European Commission or by Standard Contractual Clauses under Article 46 GDPR. You may ask us which providers we use at any time.

7. Automated decision-making

We do not carry out any automated decision-making or profiling within the meaning of Article 22 GDPR in connection with this website.

8. Your rights

Under the GDPR you have the right to:

  • request access to the personal data we hold about you (Article 15);
  • have inaccurate data corrected (Article 16);
  • have your data erased (Article 17);
  • have processing restricted (Article 18);
  • receive your data in a portable format (Article 20);
  • object to processing based on legitimate interests (Article 21); and
  • withdraw any consent you have given, without affecting the lawfulness of processing carried out before the withdrawal (Article 7(3)).

To exercise any of these, write to info@smooth-soft.com. We will respond within one month.

9. Right to complain

If you believe we have handled your personal data unlawfully, you may lodge a complaint with the Croatian supervisory authority:

Agencija za zaštitu osobnih podataka (AZOP)
Selska cesta 136, 10000 Zagreb, Croatia
azop.hr

You may also complain to the supervisory authority of the EU member state where you live or work.

10. Security

This site is served over HTTPS. We take appropriate technical and organisational measures to protect data against unauthorised access, loss or alteration. If you have found a security issue with this site, please write to info@smooth-soft.com.

11. Changes to this policy

We will update this page whenever the site changes in a way that affects it, and revise the date at the top. If we ever introduce cookies, analytics or third-party content, this policy will be updated before that change goes live.