Privacy Policy

Effective Date: 01.07.2026

At Cloudfront LTD (“Cloudfront”, “we”, “us”, or “our”), we respect your privacy and are committed to protecting the personal data you share with us through cloud-front.eu (the “Site”) and in the course of our business communications and services.

This Privacy Policy explains what personal data we may collect, how we use it, when we may share it, how we protect it, and what rights you may have under applicable data protection laws, including Regulation (EU) 2016/679, the General Data Protection Regulation (“GDPR”), and applicable laws of the Republic of Cyprus.

1. Who We Are

Cloudfront LTD is a company incorporated in the Republic of Cyprus.

Company name: Cloudfront LTD
Registration number: HE 450393
Registered address: A.G. Leventi 5, The Leventis Gallery Tower, Floor 13, Office 1301, Nicosia, 1097, Cyprus

For the purposes of applicable data protection laws, Cloudfront LTD is generally the data controller of personal data collected through the Site and through direct communications with prospective clients, clients, partners, suppliers, contractors, and other business contacts.

2. Scope of This Policy

This Privacy Policy applies to personal data collected when you:

  • visit or use the Site;

  • communicate with us by email or through other business channels;

  • request information about our services;

  • engage with us as a prospective client, client, supplier, contractor, or partner;

  • provide information to us in connection with a potential or existing business relationship;

  • use features or technologies necessary for the operation and security of the Site.

This Privacy Policy does not apply to third-party websites, platforms, or services that may be linked from the Site.

3. Categories of Data We Collect

Depending on how you interact with us, we may collect and process the following categories of personal data.

3.1. Information You Provide Directly

When you contact us by email or through another business channel, we may collect:

  • your full name;

  • email address;

  • telephone number, if provided;

  • company name;

  • job title or position;

  • project details, business requirements, and other information included in your communication;

  • documents, files, specifications, or other materials that you voluntarily provide;

  • information relating to a proposed or existing business relationship.

Please do not provide personal data that is not necessary for your communication with us.

3.2. Information Collected Automatically

When you visit the Site, certain technical information may be collected automatically by our hosting or website infrastructure providers, including:

  • IP address;

  • browser type and version;

  • device type and operating system;

  • language and time zone settings;

  • referring URL;

  • pages visited;

  • date and time of access;

  • server, security, diagnostic, and error logs.

This information is primarily processed to operate, maintain, troubleshoot, and secure the Site.

3.3. Cookies and Similar Technologies

The Site may use strictly necessary cookies or similar technologies required for:

  • core website functionality;

  • website security;

  • network management;

  • maintaining technical settings;

  • preventing malicious or unauthorised activity.

The Site does not intentionally use analytics, preference, advertising, or marketing cookies.

4. How We Use Personal Data

We may process personal data for the following purposes:

  • to operate, maintain, and secure the Site;

  • to respond to inquiries, requests, and business proposals;

  • to communicate with you about our services;

  • to assess potential business cooperation;

  • to prepare proposals, quotations, or project discussions;

  • to provide, manage, and support our services;

  • to manage client, supplier, contractor, and partner relationships;

  • to maintain business, contractual, and accounting records;

  • to protect the Site, our systems, and our business against misuse, fraud, security incidents, and unauthorised activity;

  • to comply with legal, regulatory, tax, accounting, and contractual obligations;

  • to establish, exercise, or defend legal claims.

We do not use personal data collected through the Site for automated decision-making or profiling that produces legal or similarly significant effects.

5. Legal Bases for Processing

Where the GDPR applies, we rely on one or more of the following legal bases:

  • Consent — where you have given clear consent for a specific processing activity;

  • Contract — where processing is necessary to take steps at your request before entering into a contract or to perform a contract with you;

  • Legitimate interests — where processing is necessary for our legitimate business interests, including responding to inquiries, maintaining security, managing business relationships, and providing or improving our services;

  • Legal obligation — where processing is necessary to comply with applicable laws, regulatory requirements, court orders, or official requests.

Where we rely on legitimate interests, we consider whether those interests are balanced against your rights, interests, and reasonable expectations.

6. How We Share Personal Data

We do not sell or rent personal data.

We may share personal data only where reasonably necessary and appropriate, including with:

  • hosting providers, IT support providers, email service providers, and website infrastructure partners;

  • developers, technical contractors, and software service providers involved in operating or supporting the Site or our services;

  • professional advisers, including lawyers, accountants, auditors, and consultants;

  • suppliers, contractors, and business partners involved in providing our services, subject to appropriate confidentiality and data protection obligations;

  • public authorities, regulators, courts, or law enforcement bodies where disclosure is required by law or is necessary to establish, exercise, or defend legal claims;

  • parties involved in a merger, acquisition, restructuring, financing, sale, or transfer of all or part of our business, subject to appropriate confidentiality safeguards.

All disclosures are limited to what is reasonably necessary for the relevant purpose.

Where a service provider processes personal data on our behalf, we require it to process the data only in accordance with our instructions and applicable data protection requirements.

7. International Data Transfers

Personal data may be processed in countries other than the country in which you are located, including countries outside the European Economic Area (“EEA”), where relevant to our operations or the operations of our service providers.

Where personal data is transferred outside the EEA, we take appropriate measures designed to ensure that the transfer complies with applicable data protection laws.

These measures may include:

  • adequacy decisions issued by the European Commission;

  • standard contractual clauses approved by the European Commission;

  • contractual confidentiality and data protection commitments;

  • additional technical and organisational safeguards where appropriate.

8. Data Security

We implement reasonable technical and organisational measures designed to protect personal data against:

  • unauthorised or unlawful access;

  • accidental loss;

  • disclosure;

  • alteration;

  • misuse;

  • destruction.

These measures may include:

  • access controls and restricted permissions;

  • secure hosting environments;

  • encryption or equivalent safeguards where appropriate;

  • confidentiality obligations;

  • security monitoring and maintenance procedures;

  • restricted access to business records;

  • backup and recovery procedures where appropriate.

However, no method of transmission over the internet and no electronic storage system can be guaranteed to be completely secure.

9. Data Retention

We retain personal data only for as long as reasonably necessary for the purposes described in this Privacy Policy, including for:

  • responding to inquiries and follow-up communications;

  • assessing potential business cooperation;

  • managing business relationships and service delivery;

  • maintaining business, contractual, accounting, and tax records;

  • complying with legal and regulatory obligations;

  • resolving disputes;

  • establishing, exercising, or defending legal claims.

Retention periods may vary depending on:

  • the nature of the personal data;

  • the purpose for which it was collected;

  • the duration of the business relationship;

  • applicable legal and regulatory requirements;

  • relevant limitation periods.

When personal data is no longer required, we will delete, anonymise, or securely archive it in accordance with applicable law.

10. Your Rights

Depending on the circumstances and subject to applicable law, you may have the right to:

  • request access to the personal data we hold about you;

  • request correction of inaccurate or incomplete personal data;

  • request deletion of your personal data;

  • request restriction of processing;

  • object to processing based on legitimate interests;

  • request portability of your personal data, where applicable;

  • withdraw consent at any time where processing is based on consent;

  • lodge a complaint with a competent data protection authority.

To exercise any of these rights, please contact us using the details provided below.

We may request information reasonably necessary to verify your identity before responding to your request.

You also have the right to lodge a complaint with the Office of the Commissioner for Personal Data Protection of the Republic of Cyprus or another competent supervisory authority in the country where you live or work.

11. Cookies and Similar Technologies

The Site may use strictly necessary cookies required for its operation, security, or technical functionality.

Strictly necessary cookies may be used to:

  • enable core website functions;

  • protect the Site against malicious or unauthorised activity;

  • maintain secure connections;

  • manage network traffic;

  • remember technical settings necessary for the Site to operate correctly.

The Site does not intentionally use:

  • analytics cookies;

  • preference cookies;

  • marketing cookies;

  • advertising cookies;

  • tracking pixels.

Where strictly necessary cookies are exempt from consent requirements under applicable law, they may be used without prior consent.

You may restrict or disable cookies through your browser settings. Disabling strictly necessary cookies may affect the operation of certain parts of the Site.

12. Third-Party Services and Links

The Site may contain links to third-party websites, tools, platforms, or other external services.

We do not control and are not responsible for the:

  • privacy practices;

  • content;

  • availability;

  • security;

  • terms;

  • data processing activities

of third-party websites or services.

The inclusion of a third-party link does not imply our endorsement or affiliation.

When you visit a third-party website or use a third-party service, you should review its own privacy notice and terms.

13. Children’s Privacy

The Site and our services are intended for business and professional use.

We do not knowingly collect personal data from children.

If you believe that a child has provided personal data to us, please contact us so that we can take appropriate action.

14. Changes to This Privacy Policy

We may update this Privacy Policy from time to time to reflect changes in:

  • applicable laws or regulations;

  • technology;

  • the operation of the Site;

  • our services;

  • our business practices.

Any updated version will be published on this page with a revised Effective Date.

We encourage visitors to review this Privacy Policy periodically.

15. Contact Us

If you have any questions, requests, or concerns regarding this Privacy Policy or our processing of personal data, please contact us at:

Email: cloudfrontcyprus@gmail.com