Imagine abstracta de fundal unuImagine abstracta de fundal doi

Personal Data Processing Policy – troco.ro

1. Purpose

The purpose of this policy is to establish a set of measures and responsibilities to guarantee the protection of the fundamental rights and freedoms of individuals regarding the processing of personal data by troco.ro (COJOCARI NICOLAE PFA).

2. Scope

This policy applies to all troco.ro personnel, collaborators, contractual partners, and authorized persons who carry out activities involving the processing of personal data.

3. Definitions

  • Personal data: any information related to an identified or identifiable individual;
  • Data processing: any operation performed on data (collection, storage, modification, deletion, etc.);
  • Controller: COJOCARI NICOLAE PFA;
  • Data subject: the individual whose data is processed;
  • Processor: any entity processing data on behalf of the controller;
  • User: a person acting under the authority of the controller and who has access to the data.

4. Legal Basis

  • Regulation (EU) 2016/679 (GDPR);
  • Law no. 190/2018 on measures for the application of GDPR;
  • Law no. 506/2004 on personal data processing and privacy protection in the electronic communications sector;
  • ANSPDCP decisions regarding personal numeric codes, video surveillance, notifications, etc.

5. Data Processing Principles

  • Lawfulness, fairness, and transparency;
  • Purpose limitation;
  • Data minimization;
  • Accuracy;
  • Storage limitation;
  • Integrity and confidentiality;
  • Accountability.

6. Types of Processed Data

  • Identification data: name, surname, personal ID number, ID card, addresses;
  • Contact data: phone, email;
  • Vehicle data: chassis number, registration number, etc.;
  • Financial data, payments;
  • Health data (medical/life insurance);
  • Other data voluntarily provided through forms or contracts.

7. Purpose of Processing

  • Issuing insurance quotes and concluding contracts;
  • Managing the contractual relationship;
  • Fulfilling legal obligations;
  • Archiving, accounting and tax reporting;
  • Direct marketing (with consent);
  • Improving the services offered.

8. Data Recipients

  • SAFETY BROKER DE ASIGURARE S.A. (official partner);
  • Insurance companies;
  • Public authorities (ASF, ANAF, Police, etc.);
  • IT and web hosting service providers;
  • Payment processors;
  • Courier providers (if applicable);
  • Accountants, auditors, legal advisers (if applicable).

9. Data Transfer Outside the EU

Troco.ro does not transfer personal data outside the European Economic Area. If this becomes necessary in the future, GDPR provisions on appropriate safeguards will be followed.

10. Data Storage

  • Data is stored on secure servers, within the infrastructure of authorized partners;
  • Daily automatic backups are performed;
  • Quote data is kept for a maximum of 90 days if no contract is concluded;
  • Policy data is retained according to the law (10 years for accounting documents, 3–5 years for requests, 30 days for logs, etc.).

11. IT System Security

  • Access is based on unique and non-shareable authentication;
  • All communications are SSL/TLS encrypted;
  • Systems are protected with firewall and anti-intrusion monitoring;
  • Access is limited to data strictly necessary for each role;
  • Personnel is trained on data protection.

12. Data Subjects’ Rights

You have the following rights:

  • Right to be informed;
  • Right of access to data;
  • Right to rectification;
  • Right to erasure (“right to be forgotten”);
  • Right to restrict processing;
  • Right to data portability;
  • Right to object;
  • Right not to be subject to automated decisions;
  • Right to file a complaint with ANSPDCP (www.dataprotection.ro);
  • Right to take legal action;
  • Right to be notified in case of a security breach.

You can exercise your rights by emailing: contact@troco.ro. Troco.ro will respond within a maximum of 30 days, with possible justified extensions.

13. Minors’ Data

Troco.ro does not collect data from individuals under 18 years of age without the consent of a legal guardian. If you are a parent and believe we have collected your child’s data, please contact us.

14. Staff Training

All individuals processing data within troco.ro are trained on:

  • GDPR responsibilities;
  • IT security;
  • Maintaining confidentiality;
  • Reporting security incidents.

15. Policy Updates

This policy may be updated at any time. Any new version will be published on the troco.ro website and will include the date of the latest update.

Controller:

COJOCARI NICOLAE PFA
VAT ID: 42455440
Trade Register No.: F04/213/2020
Address: Bacău, Str. Cornisa Bistriței, no. 24, sc. A, ap. 21
Email: contact@troco.ro

ASF Authorized Partner:

SAFETY BROKER DE ASIGURARE S.A.
J40/6184/2005, VAT ID 17437817
Authorized by ASF with no. RBK-293/2005

Personal data processing policy by Safety Broker: safetybroker.ro

This policy comes into effect on the date it is published on the website.

For further questions regarding personal data protection, please contact us at contact@troco.ro.