Skip to Content

Privacy Policy
Last updated: 13.11.2025

Gecko IT d.o.o. (“we”, “us”, “our”) is committed to protecting your personal data.
This Privacy Policy explains how we collect, process, store, and protect your information in accordance with the General Data Protection Regulation (GDPR) and Slovenian law.

1. Data Controller


Gecko IT d.o.o.
Podjavorškova ulica 3, 3000 Celje, Slovenia
Email: [email protected]

2. What Personal Data We Collect


We may collect the following categories of personal data:

Information you provide directly

  • Contact form submissions (name, email, phone, message)
  • Support and inquiry messages
  • Customer account creation (for logged-in clients)
  • Service requests or business communication

Automatically collected data

  • IP address
  • Browser type and version
  • Device information
  • Pages visited and time spent
  • Interactions with site elements
  • Cookies (see Cookie Policy)

Collected through:

  • Google Analytics 4
  • Odoo website & Odoo Live Chat
  • Server logs (Contabo + nginx)

3. Legal Basis for Processing (GDPR Art. 6) 


We process data based on:

  • Art. 6(1)(b): performance of a contract or communication before entering a contract
  • Art. 6(1)(a): your consent (cookies, marketing)
  • Art. 6(1)(f): legitimate interest (security, analytics to improve the website)
  • Art. 6(1)(c): legal obligation (invoices, accounting)

4. How We Use Your Data  


  • To respond to inquiries and provide requested services
  • To prepare offers, contracts, or technical solutions
  • To operate and secure the website
  • To analyze website usage (GA4)
  • To provide live chat support
  • To improve performance, design, and security

We do not sell your data.

We do not profile or automate decisions with legal effects.

5. Data Storage & Retention


We store data only as long as necessary:

    • Contact inquiries: up to 12 months
    • Client communication: duration of cooperation
    • Accounting data: 10 years (legal requirement)
    • Analytics & cookies: according to Cookie durations
    • Server logs: up to 12 months

6. Data Sharing (Processors)  


We use third-party processors:

Hosting & Infrastructure

  • Contabo GmbH (server hosting, Germany)
  • nginx (web server)

Website & CRM

  • Odoo S.A. (software provider; your data remains on Gecko’s private server)

Analytics

  • Google Analytics 4 (Google LLC)

Email

  • Self-hosted email server (Gecko-managed infrastructure)

Each processor complies with GDPR or has appropriate protections.

7. International Transfers  


Some processors (e.g., Google) may store data outside the EU.

These transfers follow:

  • Standard Contractual Clauses (SCC)
  • Additional supplementary measures

8. Your Rights Under GDPR


You have the right to:

  • Access your data
  • Correct inaccuracies
  • Request deletion (“right to be forgotten”)
  • Restrict processing
  • Object to processing
  • Withdraw consent at any time
  • Request data portability
  • Lodge a complaint with Informacijski Pooblaščenec (IP RS)

Contact us at [email protected] for any request.

9. Data Security  


We use:

  • Encrypted communication (HTTPS)
  • Firewall and security hardening
  • Access controls
  • Server monitoring
  • Regular patches and audits

10. Children’s Data


Our services are not intended for individuals under 16.

We do not knowingly collect data from minors.

11. Changes to This Privacy Policy  


We may update this document.

The latest version will always be available on this website.