Privacy Policy
Data controller: TIIM Web3 Social Hub MTÜ (formerly Mittetulundusühing Kodanikualgatuse Toetuskeskus), registry code 80321356, registered address Aru 21-8, 10318 Tallinn, Estonia.
Privacy contact: GDPR compliance responsible person, [email protected].
1. Scope
This policy explains how personal data may be processed through this website and direct communication with the organisation. Separate projects or services may use additional notices where needed.
2. Website configuration and cookies
At launch, this website is a static website. It does not use web analytics, advertising pixels, contact forms, newsletter tools, donation systems, wallet connections or non-essential cookies. Therefore, no cookie-consent banner is displayed. The hosting provider may process standard server logs, including IP address, request time, browser information and requested pages, for security, reliability and maintenance.
3. Direct communication
If you contact us by email, we may process your name, email address, professional affiliation and message content to respond, maintain professional communication, prepare a proposal, administer a partnership or take steps toward an agreement.
4. Legal bases
Depending on the context, processing may be based on consent, steps taken before entering into a contract, performance of a contract, compliance with a legal obligation, or the legitimate interests of the organisation or a third party.
5. Sensitive and security-related information
Our work may involve vulnerable groups, political exile, civil society and cultural actors operating under pressure. Do not send passwords, cryptographic private keys, wallet recovery phrases, identity documents or highly sensitive political, health or security information through ordinary email unless a secure procedure has been agreed.
6. Recipients and international transfers
Personal data may be shared with authorised team members, professional advisers, hosting or technology providers, project partners or public authorities where necessary and legally justified. Where personal data is transferred outside the European Economic Area, an appropriate legal mechanism and safeguards will be used where required.
7. Retention
Personal data is retained only for as long as necessary for the relevant purpose or as required by accounting, contractual, grant, governance or legal obligations.
8. Your rights
Subject to applicable law, you may request access, correction, deletion, restriction or portability of your personal data, or object to certain processing. Where processing is based on consent, consent may be withdrawn at any time. You may also complain to the Estonian Data Protection Inspectorate or another competent supervisory authority.
9. Security
We use reasonable technical and organisational measures intended to protect personal data. No website, email service or electronic system can be guaranteed to be completely secure.
10. Changes
If analytics, forms, embedded media, donation services, Web3 applications or other third-party tools are added, this policy and the relevant consent mechanisms will be updated before activation.