LEGAL · PRIVACY
Privacy Policy
This policy explains how BALKANSKA KIBER KORPORACIJA LTD (“BALKANSKA KIBER KORPORACIJA”, “BKK”, “we”) processes personal data when you use bkkorp.com, when you contact us, and (where applicable) during service delivery.
Last updated: December 13, 2025
Data Controller
BALKANSKA KIBER KORPORACIJA LTD
UIC: 205948420 · VAT: BG205948420
Registered seat: Bulgaria, Varna 9020, Mladost District, Mladost Residential Complex, bl. 143, entrance 7, floor 6, apt. 10
Website: www.bkkorp.com
Privacy contact: soc@bkkorp.com
1. Legal framework
We follow the GDPR and applicable Bulgarian law. Where we process data of individuals outside the EU/EEA, we apply comparable safeguards and comply with relevant local requirements where applicable.
2. Data we process
- Technical data: IP address, timestamps, URLs, HTTP status codes, user agent, referrer, system logs and security telemetry.
- Contact data: name, company, business email, subject and message content, plus any information you choose to include.
- Preference data: choices related to functionality/cookies (see Cookies & Telemetry).
Please do not include sensitive data in the contact form.
3. Purposes and lawful bases
3.1 Security and abuse prevention
We process logs to keep the website secure and reliable. Basis: legitimate interests.
3.2 Responding to inquiries and pre‑contract steps
We process the information you send to respond, schedule a call, or prepare an offer. Basis: pre‑contract steps and/or legitimate interests.
3.3 Contract performance and compliance
When engaged, we process data to deliver services and meet legal obligations (e.g., accounting). Basis: contract and/or legal obligation.
3.4 Analytics and marketing
By default we do not run advertising trackers and we do not build behavioural profiles. If we introduce analytics, we will activate it only after clear consent and update the policies.
4. Recipients and processors
Access is limited to authorized personnel and vendors strictly necessary to operate and secure the site.
- Internal team (need-to-know access).
- Hosting/infrastructure, email/communications, security services (processors under contract).
- Public authorities only where legally required or to protect rights.
5. International transfers
We aim to keep processing within the EU/EEA, but certain technology providers (e.g., CDNs for libraries/fonts or map tile providers) may receive technical data such as IP address to deliver content. Where transfers outside the EU/EEA occur, we apply appropriate safeguards (e.g., contractual clauses, minimization, encryption-in-transit), where applicable.
6. Retention
- Security/access logs: typically up to 12 months, longer if needed for incident investigation or legal claims.
- Inquiries: until the conversation ends plus a reasonable follow‑up period (typically up to 24 months).
- Contracts: duration of the contract plus statutory retention periods.
7. Your rights
Under the GDPR you may have rights such as access, rectification, erasure (subject to conditions), restriction, portability (where applicable), objection, and withdrawal of consent.
To exercise rights: soc@bkkorp.com.
8. Complaints
You may lodge a complaint with your local supervisory authority. In Bulgaria, the competent authority is the Commission for Personal Data Protection (CPDP), 2 Prof. Tsvetan Lazarov Blvd., Sofia 1592, kzld@cpdp.bg, www.cpdp.bg.
9. Changes
We may update this policy; the current version is published on this page.