Privacy policy
1. Key Terms and Definitions
For the purposes of this Personal Data Processing Policy (the “Policy”), the following terms, definitions, and abbreviations are used:
Automated processing of personal data – processing of personal data using computing technology.
Biometric personal data – information describing an individual’s physiological or biological characteristics that allows for their identification and is used to verify the identity of the personal data subject.
Blocking of personal data – temporary suspension of personal data processing (except when processing is required to clarify personal data).
Personal data legislation – applicable data protection laws and regulations governing the conditions, procedures, and security measures for processing and ensuring the confidentiality of personal data.
Confidentiality of personal data – the obligation of the Organization (its personnel) and other authorized individuals to refrain from disclosing or disseminating personal data to third parties without the consent of the data subject, unless otherwise required by applicable law.
Tangible medium for personal data – any physical object used for storing or recording personal data in electronic or written form (including paper documents and machine-readable media).
Non-automated processing of personal data – pers1. Key Terms and Definitions
For the purposes of this Personal Data Processing Policy (the “Policy”), the following terms, definitions, and abbreviations are used:
Automated processing of personal data – processing of personal data using computing technology.
Biometric personal data – information describing an individual’s physiological or biological characteristics that allows for their identification and is used to verify the identity of the personal data subject.
Blocking of personal data – temporary suspension of personal data processing (except when processing is required to clarify personal data).
Personal data legislation – applicable data protection laws and regulations governing the conditions, procedures, and security measures for processing and ensuring the confidentiality of personal data.
Confidentiality of personal data – the obligation of the Organization (its personnel) and other authorized individuals to refrain from disclosing or disseminating personal data to third parties without the consent of the data subject, unless otherwise required by applicable law.
Tangible medium for personal data – any physical object used for storing or recording personal data in electronic or written form (including paper documents and machine-readable media).
Non-automated processing of personal data – personal data processing performed without automated tools, where all actions (e.g., use, updating, distribution, deletion) are carried out manually for each subject.
Anonymization of personal data – actions that make it impossible to identify a personal data subject without the use of additional information.
Processing of personal data – any operation or series of operations performed on personal data, with or without automated tools, including collection, recording, systematization, accumulation, storage, updating (modification), retrieval, use, transfer (distribution, provision, access), anonymization, blocking, deletion, and destruction.
Organization – independently or jointly with others organizes and/or performs personal data processing, defines processing purposes, determines the scope of data to be processed, and performs (or arranges) the required operations.
Personal data – any information processed by the Organization, including information submitted through its official website springs and/or collected during the use of the website, relating directly or indirectly to a specific or identifiable natural person (the data subject).
The Organization processes the following categories of personal data:
Data voluntarily submitted by the data subject via input forms (e.g., full name, email address, phone number);
Data contained in messages sent by the data subject to the Organization;
Data necessary for the conclusion and performance of contracts, fulfillment of legal obligations, or protection of the Organization’s legitimate interests;
Statistical and technical data (e.g., user settings, identifiers, cookies), including data obtained through third-party analytics tools; the Organization does not combine personally identifiable information with passively collected data.
Policy – this Personal Data Processing Policy of Organization
Disclosure of personal data – intentional or accidental violation of confidentiality requirements by personnel or third parties with unauthorized access.
Dissemination of personal data – actions aimed at transferring personal data to an undefined number of persons.
Website – the Organization’s official website at Springs
Data subject – a natural person whose personal data is processed by the Organization, including:
- Organization personnel,
- Clients or contractual counterparties,
- Other individuals, such as:
- legal representatives,
- beneficiaries of contracts,
- directors, shareholders, and representatives of counterparties,
- individuals subject to regulatory disclosure requirements,
- users accessing or interacting with the Organization’s website or services.
Cross-border transfer of personal data – transmission of personal data to foreign jurisdictions or foreign individuals/entities.
Destruction of personal data – actions that make it impossible to restore personal data in the information system and/or result in the destruction of physical storage media.
Cookies – a set of depersonalized data stored in a user’s browser and processed by the Organization’s web resource during website usage.
2. General Provisions
This Policy outlines the basic principles, objectives, conditions, and methods of personal data processing carried out by the Organization.
The Policy is developed in accordance with applicable data protection legislation and internal regulations on information security and data protection.
The Policy applies to all personal data processed by the Organization, regardless of format, method of transmission, or storage. In resolving matters related to personal data processing, the Organization prioritizes compliance with applicable law over internal regulations. In the event of any inconsistency between this Policy and applicable data protection requirements, the Organization adheres to the requirements of the law until internal documents are updated.
For any matters not expressly covered by this Policy or internal regulations, the Organization refers to applicable data protection laws, regulatory guidance, and relevant international standards.
This Policy is a publicly available internal document of the Organization and is published online at Springs
The Organization may update this Policy periodically. The new version becomes effective upon publication on the website unless stated otherwise. Continued use of the website or ongoing interaction with the Organization signifies acceptance of the updated Policy.onal data processing performed without automated tools, where all actions (e.g., use, updating, distribution, deletion) are carried out manually for each subject.
Anonymization of personal data – actions that make it impossible to identify a personal data subject without the use of additional information.
Processing of personal data – any operation or series of operations performed on personal data, with or without automated tools, including collection, recording, systematization, accumulation, storage, updating (modification), retrieval, use, transfer (distribution, provision, access), anonymization, blocking, deletion, and destruction.
Organization – independently or jointly with others organizes and/or performs personal data processing, defines processing purposes, determines the scope of data to be processed, and performs (or arranges) the required operations.
Personal data – any information processed by the Organization, including information submitted through its official website springs and/or collected during the use of the website, relating directly or indirectly to a specific or identifiable natural person (the data subject).
The Organization processes the following categories of personal data:
Data voluntarily submitted by the data subject via input forms (e.g., full name, email address, phone number);
Data contained in messages sent by the data subject to the Organization;
Data necessary for the conclusion and performance of contracts, fulfillment of legal obligations, or protection of the Organization’s legitimate interests;
Statistical and technical data (e.g., user settings, identifiers, cookies), including data obtained through third-party analytics tools; the Organization does not combine personally identifiable information with passively collected data.
Policy – this Personal Data Processing Policy of Organization
Disclosure of personal data – intentional or accidental violation of confidentiality requirements by personnel or third parties with unauthorized access.
Dissemination of personal data – actions aimed at transferring personal data to an undefined number of persons.
Website – the Organization’s official website at Springs
Data subject – a natural person whose personal data is processed by the Organization, including:
- Organization personnel,
- Clients or contractual counterparties,
- Other individuals, such as:
- legal representatives,
- beneficiaries of contracts,
- directors, shareholders, and representatives of counterparties,
- individuals subject to regulatory disclosure requirements,
- users accessing or interacting with the Organization’s website or services.
Cross-border transfer of personal data – transmission of personal data to foreign jurisdictions or foreign individuals/entities.
Destruction of personal data – actions that make it impossible to restore personal data in the information system and/or result in the destruction of physical storage media.
Cookies – a set of depersonalized data stored in a user’s browser and processed by the Organization’s web resource during website usage.
2. General Provisions
This Policy outlines the basic principles, objectives, conditions, and methods of personal data processing carried out by the Organization.
The Policy is developed in accordance with applicable data protection legislation and internal regulations on information security and data protection.
The Policy applies to all personal data processed by the Organization, regardless of format, method of transmission, or storage. In resolving matters related to personal data processing, the Organization prioritizes compliance with applicable law over internal regulations. In the event of any inconsistency between this Policy and applicable data protection requirements, the Organization adheres to the requirements of the law until internal documents are updated.
For any matters not expressly covered by this Policy or internal regulations, the Organization refers to applicable data protection laws, regulatory guidance, and relevant international standards.
This Policy is a publicly available internal document of the Organization and is published online at Springs
The Organization may update this Policy periodically. The new version becomes effective upon publication on the website unless stated otherwise. Continued use of the website or ongoing interaction with the Organization signifies acceptance of the updated Policy.