Privacy Policy

Last updated: April 1, 2026

1. Data Controller

The data controller for the personal data processed through this website and our services is:

DrSoft SRL
Romania, European Union
Email: contact@drsoft.com

As a company registered in Romania, a member state of the European Union, we are subject to the General Data Protection Regulation (GDPR) and all applicable EU data protection laws.

2. Data We Collect

We may collect and process the following categories of personal data:

  • Account data: name, email address, company name, billing address, and payment information when you register for our services
  • Usage data: proxy usage statistics, API call logs, bandwidth consumption, and connection metadata
  • Communication data: messages, emails, and support tickets you send to us
  • Technical data: IP address, browser type, operating system, and device information collected through cookies and server logs
  • Marketing data: preferences, survey responses, and newsletter subscription status

3. Legal Basis for Processing

We process your personal data under the following legal bases as defined by the GDPR:

  • Contract performance: processing necessary to provide our proxy services as agreed in your service contract
  • Legitimate interest: improving our services, fraud prevention, and network security
  • Consent: marketing communications and non-essential cookies, where you have given explicit consent
  • Legal obligation: compliance with tax, accounting, and regulatory requirements

4. Data Retention

We retain your personal data only for as long as necessary to fulfill the purposes for which it was collected:

  • Account data: retained for the duration of your account plus 12 months after closure
  • Usage and connection logs: retained for up to 90 days for operational purposes
  • Billing records: retained for 7 years as required by Romanian and EU tax regulations
  • Support communications: retained for up to 24 months after resolution

5. Your Rights

Under the GDPR, you have the following rights regarding your personal data:

  • Right of access: request a copy of the personal data we hold about you
  • Right to rectification: request correction of inaccurate or incomplete data
  • Right to erasure: request deletion of your personal data, subject to legal retention requirements
  • Right to data portability: receive your data in a structured, machine-readable format
  • Right to restrict processing: request limitation of how we process your data
  • Right to object: object to processing based on legitimate interest or direct marketing
  • Right to withdraw consent: withdraw consent at any time where processing is based on consent

To exercise any of these rights, contact us at contact@drsoft.com. We will respond within 30 days as required by the GDPR.

6. Cookies

Our website uses cookies and similar technologies to provide core functionality, analyze site usage, and improve your experience. We categorize cookies as follows:

  • Strictly necessary cookies: required for the website to function and cannot be disabled
  • Analytics cookies: help us understand how visitors interact with our website (requires consent)
  • Marketing cookies: used to deliver relevant advertisements (requires consent)

You can manage your cookie preferences through your browser settings or our cookie consent banner.

7. Third Parties

We may share your data with the following categories of third-party service providers, all of whom are bound by data processing agreements:

  • Payment processors for billing and subscription management
  • Cloud infrastructure providers for hosting and service delivery
  • Analytics services for website and product usage analysis
  • Customer support tools for ticket management

We do not sell your personal data to third parties. Data transfers outside the EU are protected by Standard Contractual Clauses or equivalent safeguards.

8. Data Security

We implement appropriate technical and organizational measures to protect your personal data, including encryption in transit and at rest, access controls, and regular security audits. In the event of a data breach that poses a risk to your rights, we will notify you and the relevant supervisory authority within 72 hours as required by the GDPR.

9. Contact the Data Protection Officer

For any questions or concerns about this privacy policy or how we handle your personal data, you can contact our Data Protection Officer at:

Email: contact@drsoft.com
Subject line: DPO Inquiry

You also have the right to lodge a complaint with a supervisory authority, in particular in the EU member state where you reside or where the alleged infringement occurred.

10. Changes to This Policy

We may update this Privacy Policy from time to time. Material changes will be communicated via email or a prominent notice on our website. The "Last updated" date at the top of this page reflects the most recent revision.