Privacy policy
Your data, handled plainly.
What we collect, why we collect it, who helps us process it, and how you stay in control. No legal maze.
Last updated 24 September 2026
At a glance
No tracking
No analytics, no advertising pixels, and no cookies set by us.
Only what you send
We process what you give us when you book a call, email us, or ask a question.
Never sold
We do not sell, rent, or trade your personal data. Ever.
Your call
Ask for a copy, a correction, or deletion at privacy@clouddo.eu.
Who we are
Clouddo, based in Varna, Bulgaria, is the data controller for personal data collected through this website. For anything related to privacy, write to privacy@clouddo.eu. A founder reads every message.
What we collect
We only collect what you choose to send us, plus the minimum a web server needs to work.
- When you book a call: your name, email address, the time you pick, and any notes you add about your business problem.
- When you email us: your address and whatever you write.
- When you ask a question about an article: the text of your question. We do not ask for your name or email to do this.
- When you visit any page: standard server logs (IP address, browser type, page requested, and time), kept by our hosting provider for security and troubleshooting.
We do not knowingly collect special-category data. Please don’t send it to us.
Why, and on what legal basis
| Purpose | Legal basis (GDPR) |
|---|---|
| Scheduling and preparing for your call | Steps before a contract, Art. 6(1)(b) |
| Replying to your emails | Legitimate interest, Art. 6(1)(f) |
| Answering questions about articles | Legitimate interest, Art. 6(1)(f) |
| Keeping the site secure and working | Legitimate interest, Art. 6(1)(f) |
| Invoicing and accounting, once we work together | Legal obligation, Art. 6(1)(c) |
We never use your data for advertising, and we never make automated decisions about you that have legal or similarly significant effects.
International transfers
Some providers process data outside the European Economic Area, mainly in the United States. Where that happens, the transfer is covered by the EU–US Data Privacy Framework or by the European Commission’s Standard Contractual Clauses, with additional safeguards where needed.
How long we keep it
- Booking details and emails: while we discuss the work, and no longer than 12 months after our last contact, unless we start working together.
- Article questions: not stored by us after the answer is returned.
- Server logs: kept by our hosting provider for a short period, typically up to 30 days.
- Contracts and invoices: as long as Bulgarian accounting law requires.
Security
All traffic to this website is encrypted with HTTPS. Access to your data is limited to the people who need it to talk to you, protected with strong authentication. If a breach ever puts your data at risk, we will tell you and the supervisory authority as the GDPR requires.
Your rights
Under the GDPR you have the right to:
Access
Get a copy of the personal data we hold about you.
Correction
Have inaccurate or incomplete data fixed.
Deletion
Have your data erased when we no longer need it or you withdraw consent.
Restriction
Ask us to pause processing while a question is resolved.
Portability
Receive your data in a common, machine-readable format.
Objection
Object to processing based on our legitimate interests.
Withdraw consent
Where we rely on consent, withdraw it at any time.
Complain
Lodge a complaint with a supervisory authority (see below).
To use any of these rights, email privacy@clouddo.eu. We reply within one month, free of charge. We may ask you to confirm your identity first.
You can also complain to the Bulgarian Commission for Personal Data Protection (cpdp.bg) or to the authority in the EU country where you live. We would appreciate the chance to fix it first.
Changes to this policy
When we change how we handle data, we update this page and the date at the top. Significant changes will be highlighted here before they take effect.