1. Data Controller
Hildens Consulting OÜ, a company registered in Estonia, is the data controller for personal data processed through this website.
Contact: services@hildensconsulting.com
Address: Tallinn, Estonia
2. Data We Collect
We collect the following categories of personal data:
- Contact form submissions: Name, email address, company name, message content, and service interest
- Newsletter subscriptions: Email address
- Scheduling data: When you book a call via our scheduling tool (Microsoft Bookings), the data is processed by Microsoft under their privacy policy
- Analytics data: Anonymous usage data collected via Google Analytics (only with your consent), including pages visited, time on site, and device information
3. Legal Basis for Processing
We process your personal data on the following legal bases under GDPR:
- Consent (Art. 6(1)(a)): For analytics cookies and newsletter subscriptions
- Legitimate interest (Art. 6(1)(f)): For responding to contact form inquiries and improving our services
- Contract performance (Art. 6(1)(b)): For processing data necessary to provide our consulting services
4. How We Use Your Data
- Responding to your inquiries and providing requested information
- Sending our newsletter (only if you subscribe)
- Improving our website and services through analytics
- Scheduling and conducting strategy calls
5. Data Sharing
We share your data only with the following categories of processors:
- Formspree: Contact form processing (US-based, EU Standard Contractual Clauses)
- Microsoft Bookings: Meeting scheduling (EU data residency available)
- Google Analytics: Website analytics (only with consent)
We do not sell your personal data to third parties.
6. Data Retention
We retain contact form data for the duration of our business relationship plus 2 years. Newsletter subscription data is retained until you unsubscribe. Analytics data is anonymized and retained for 14 months.
7. Your Rights
Under GDPR, you have the right to:
- Access your personal data
- Rectify inaccurate data
- Request erasure of your data
- Restrict processing of your data
- Data portability
- Object to processing
- Withdraw consent at any time
To exercise any of these rights, contact us at services@hildensconsulting.com.
8. Cookies
This website uses essential cookies for site functionality and optional analytics cookies (Google Analytics) that are only activated with your explicit consent via the cookie banner.
You can change your cookie preferences at any time by clearing your browser's localStorage.
9. Data Security
We implement appropriate technical and organizational measures to protect your personal data, including encryption in transit (TLS/SSL) and secure data storage.
10. Supervisory Authority
If you believe your data protection rights have been violated, you have the right to lodge a complaint with the Estonian Data Protection Inspectorate (Andmekaitse Inspektsioon) at www.aki.ee.
11. Changes to This Policy
We may update this privacy policy from time to time. We will notify you of significant changes by posting a notice on our website.