Data Controller
PiirZ Digital Limited, registration number C114280, with registered office at 63 Level 1, Unit 17 ConnectiClub Business Center, Triq ii-Ballot, Mosta MST 4000, Malta, is the data controller for the processing of personal data collected through the website piirz.com and its subdomains.
For any privacy-related inquiries, contact us at: hello@piirz.com
Types of Data Collected
We collect the following categories of personal data:
• Contact form data: name, email address, company name, phone number, message content, and reason for contact.
• Navigation data: IP address, browser type, operating system, pages visited, access times, and referring URL, collected automatically via server logs and analytics tools.
• Cookies and similar technologies: see our Cookie Policy for details.
Legal Basis for Processing
In accordance with Article 6 of the GDPR, we process personal data based on:
• Consent: for sending marketing communications and non-essential cookies.
• Contractual necessity: to respond to service inquiries and manage client relationships.
• Legitimate interest: for website analytics, security, and service improvement.
• Legal obligation: for accounting, tax, and regulatory compliance.
Purpose of Processing
Personal data is processed for the following purposes:
• Responding to contact form submissions and service requests.
• Providing requested services and managing client relationships.
• Website analytics and performance optimization.
• Compliance with legal and regulatory obligations.
• Protecting the security and integrity of our systems.
Data Retention
Personal data is retained only as long as necessary for the purposes described:
• Contact form data: 24 months from the last interaction.
• Analytics data: 14 months (anonymized after this period).
• Contractual data: for the duration of the contract plus 10 years as required by Maltese law.
• Cookie consent records: 12 months.
Your Rights
Under the GDPR, you have the right to:
• Access your personal data and obtain a copy.
• Rectify inaccurate or incomplete data.
• Erase your data (right to be forgotten) where applicable.
• Restrict processing in certain circumstances.
• Data portability: receive your data in a structured, machine-readable format.
• Object to processing based on legitimate interest.
• Withdraw consent at any time without affecting prior processing.
To exercise your rights, contact: hello@piirz.com
You also have the right to lodge a complaint with the Office of the Information and Data Protection Commissioner (IDPC) in Malta.
Third-Party Services
We may use the following third-party services that process personal data:
• Vercel: website hosting and analytics (USA, with appropriate safeguards).
• Google Analytics: website usage statistics (data anonymized).
• Calendly: meeting scheduling.
All third-party processors are bound by data processing agreements ensuring GDPR compliance.
International Data Transfers
Some of our service providers are located outside the European Economic Area (EEA). Any international data transfer is protected by appropriate safeguards, including Standard Contractual Clauses (SCCs) approved by the European Commission or adequacy decisions.
Data Security
We implement appropriate technical and organizational measures to protect personal data against unauthorized access, alteration, disclosure, or destruction. These include encryption in transit (TLS/SSL), access controls, and regular security reviews.
Changes to This Policy
We may update this privacy policy periodically. The date of the last revision is indicated at the top of this page. We encourage you to review this page regularly.