Privacy Policy
Romaniv Consulting is the marketing name of Taras Romaniv (JDG). This policy explains how the service provider collects, uses, and protects personal data when you interact with the site or our services.
Controller
The controller of your personal data is Taras Romaniv, operating as Taras Romaniv (JDG), ul. św. Mikołaja 8/11, lok. 208, 50-125, Wrocław, Poland. Contact: contact@romaniv.dev.
Personal data we process
We collect only the data you voluntarily provide when contacting us: name, email address, organisation, role, project context, and any other information included in your message. We do not operate online accounts, contact forms, or profiling, and we do not intentionally collect data about children under 13 in the United States or under 16 in the European Union.
Purposes and legal bases
- Responding to enquiries and preparing proposals — Article 6(1)(b) GDPR.
- Delivering consulting engagements and managing contracts — Article 6(1)(b) GDPR.
- Maintaining records for taxation, accounting, and regulatory compliance — Article 6(1)(c) GDPR.
- Defending or establishing legal claims and improving services — Article 6(1)(f) GDPR.
Processors and recipients
We share personal data only with service providers acting on our behalf: Cloudflare, Inc. (Cloudflare Pages hosting) and Google LLC (Gmail / Google Workspace email). Each provider processes data under agreements incorporating the EU Standard Contractual Clauses. We may disclose data to legal advisors or authorities where required by law.
International transfers
Cloudflare and Google may store data within the EU and the United States. Transfers outside the EEA rely on Standard Contractual Clauses and supplementary safeguards offered by these vendors. Request copies of the safeguards by contacting us.
Retention
Correspondence and project records are kept for the duration of discussions or engagements and up to five years thereafter. Invoices and tax documentation are retained for at least six years under Polish tax law. Data that is no longer needed is securely deleted or anonymised.
Data security
We protect personal data using encrypted transport (HTTPS), role-based access, and regular account reviews on our hosting and email platforms.
Cookies, logs, and local storage
This site does not set marketing cookies. Cloudflare Pages collects standard server logs (IP address, user agent, timestamp) under our legitimate interest in securing the service (Article 6(1)(f) GDPR). Logs are pseudonymous and retained for up to seven days unless needed longer for incident response. The website stores your language choice in your browser's localStorage so the selected locale is remembered on return visits; this value never leaves your device and relies on our legitimate interest (Article 6(1)(f) GDPR) in offering a consistent experience. You can clear the value anytime in your browser settings.
Your rights
You have the right to access, rectify, erase, or restrict processing of your data, to data portability, and to object to processing based on legitimate interests. Where processing relies on consent, you may withdraw it at any time without affecting prior processing. Contact contact@romaniv.dev to exercise these rights.
Supervisory authority
You may lodge a complaint with the President of the Personal Data Protection Office (UODO), ul. Stawki 2, 00-193 Warsaw, Poland, or with your local supervisory authority in the EU or UK.
Contact
For privacy questions, email contact@romaniv.dev. We do not appoint a Data Protection Officer; the controller personally handles privacy matters.
US privacy disclosures
Romaniv Consulting does not meet current thresholds under US state privacy laws (including the CCPA/CPRA, CPA, VCDPA, and similar regimes). If you are based in a jurisdiction that grants additional privacy rights and you believe they apply, contact us and we will address your request in line with applicable law.
Updates
We may update this policy to reflect legal or business changes. The latest revision date is published below.
Last updated: 18 September 2026