Privacy Policy

This Privacy Policy explains how SoftServer.ro (“we”, “us”, “our”) processes personal data when you visit or use our website and services (the “Service”).

Last updated: 2026-07-21

1. Who We Are

SoftServer.ro is the controller for personal data processed in connection with the Service.

Company details
WGV SOFT SOLUTIONS SRL
Trading name: SoftServer.ro
Sos. Alexandria nr. 8, Bucuresti, sector 5
CUI: 44663072
Reg. no: J40/13063/2021
VAT ID, where applicable, is shown on invoices.

Contact for privacy matters: [email protected].

If your invoices display additional legal details (legal entity, address, tax/VAT identifiers), those details form part of our controller identification.

2. Scope

This policy applies to visitors and users of the Service, including account creation, billing, support, and server management features.

It does not cover third-party websites you may access via links from the Service. Please review those third parties’ privacy notices.

3. Personal Data We Process

Account and profile
Name, email address, password hash, account settings, security settings (including 2FA status), and related identifiers.
Billing
Billing details you provide (e.g., billing address, city, postal code, country, phone number, tax/VAT/CUI where applicable), invoices and payment status.
Support
Support tickets, messages, and attachments you submit.
Email and notifications
We send transactional emails needed to operate the Service (for example: server readiness, invoices and payment outcomes, and support ticket updates). You can control optional email categories (VPS, billing, tickets) in your account notification settings; disabling a category may reduce non-essential emails but critical service and legal notices may still be sent where required.
Service usage and security
IP address, user agent, timestamps, authentication events, and other logs necessary for security, abuse prevention, and troubleshooting.
Infrastructure and provisioning
Identifiers and configuration data needed to provision and manage servers/projects (e.g., server name, domain, IP, resource allocation). This may include data you input into configuration fields.
Cookies and similar technologies
We use cookies needed to operate the Service and, depending on your choices, additional optional cookies. See our Cookie Policy.

4. Purposes and Legal Bases

Provide the Service (contract)
Create and manage your account, provision and manage resources, deliver features, and provide customer support.
Billing and accounting (legal obligation / contract)
Issue invoices, process payments, maintain records required by applicable law.
Security and fraud prevention (legitimate interests)
Protect accounts, detect abusive activity, and maintain service integrity.
Preferences and optional features (consent where required)
Where local law requires consent for certain cookies or similar technologies, we rely on your consent and allow you to change your choices at any time.

5. Sharing and Transfers

We may share personal data with service providers (processors) that help us operate the Service, such as infrastructure, payment, email delivery, and support tooling providers.

Where a provider processes data outside the EEA, we use appropriate safeguards (such as standard contractual clauses) when required.

We may also disclose data to comply with legal obligations or to protect rights, safety, and security.

6. Processors and categories of recipients

We work with vendors that process data on our behalf solely to operate the Service. Typical categories include infrastructure/hosting providers, payment processors (e.g. card payments), transactional email services, and support or technical monitoring tools.

This list may evolve as we improve the Service. We require processors to implement security measures and use data only according to our instructions and applicable contracts.

7. Data Retention

We retain personal data for as long as necessary to provide the Service, comply with legal obligations, resolve disputes, and enforce agreements.

Billing and accounting records may be kept for the periods required by law. Security logs are retained for limited periods appropriate to the risk and purpose.

8. Your Rights

Depending on your location, you may have rights to access, rectify, erase, restrict processing, object to processing, and data portability, as well as the right to withdraw consent where processing is based on consent.

To exercise your rights, contact us at [email protected]. We may request information to verify your identity.

If you are in Romania or the EEA, you may lodge a complaint with the supervisory authority: www.dataprotection.ro (ANSPDCP).

9. Security

We use appropriate technical and organizational measures designed to protect personal data. No method of transmission or storage is 100% secure; we cannot guarantee absolute security.

You are responsible for keeping your credentials confidential and for using strong passwords and security features such as 2FA where available.

10. Children

The Service is not intended for persons under 16. We do not knowingly collect personal data from children. If you believe a minor has provided data to us, contact us so we can delete it.

11. Automated decision-making

We do not use automated processing, including profiling, that produces legal effects or similarly significantly affects you within the meaning of GDPR Article 22.

12. Changes

We may update this policy from time to time. We will post the updated version on this page and adjust the “Last updated” date.