Privacy Policy and Cookies policy

Privacy Policy of ArchelineGroup.com

We’re glad you’re visiting our website and want to share essential information about our commitment to the security and confidentiality of personal data.

At Archeline, we respect and protect your privacy. This policy explains how we collect, use, and protect your personal data when you use our website and related services. We wrote it in clear, accessible language to support transparency and trust.

Archeline Websites” means any web page (website, landing page, subdomain, etc.) owned, managed, or operated under the Archeline brand — for example: ArchelineGroup.com.

Please review this section regularly, as the policy may be updated. We will notify you of any material changes.

In addition to this policy, please consult our Cookie Policy.


Who We Are

Website owner: ARCHELINE S.R.L., headquartered at Bld. Ion Mihalache no. 160, Sector 1, Bucharest, 011212, Romania, registered with the Romanian Trade Registry under no. J40/[to be completed]/2025, Fiscal Identification Code (CUI) 52460087.

Contact email: dpo@archelinegroup.com

Website: ArchelineGroup.com


Use of Archeline Websites

By accessing or using any part/function of the Archeline Websites, you agree to the terms, conditions, and policies referenced here and/or available via hyperlink, and you confirm you are of legal age under applicable national law. If you do not agree, please discontinue using our site and/or services.


Intellectual Property Rights

All content on the Archeline Websites (images, text, web graphics, scripts, software, design rights, model rights, patents, registered trademarks) is the sole property of Archeline and is protected by copyright and intellectual/industrial property laws. Any use of these elements without Archeline’s consent is prohibited by law.

Archeline may, by written agreement, grant a user/client the right to use specific website content, strictly as described in that agreement, for a defined period and solely for the person(s) specified. No other site content may be used.

Use on the Archeline Websites of any registered trademark does not constitute advertising for the respective company. Archeline assumes no liability for damages arising from the use of site content.

Please report any suspected copyright infringement found on the site to dpo@archelinegroup.com.


Where We Collect Your Data From

Generally, the personal data we process is provided by you via email, through ArchelineGroup.com, via social media, or during visits to our office.

Occasionally (e.g., during recruitment), we may collect data from specialized online platforms (eJobs, LinkedIn, etc.) or from CVs/resumes you send us.

When you interact with us on social media (likes, shares, comments, reviews, etc.), we inevitably access information about you, especially data you have made public on your social profiles.


How We Use Personal Data

Below we describe purposes, legal bases, data types, potential recipients, storage periods, and storage locations.

1) When you contact us via website or social media

Purpose:
To provide information and offers about our services, resolve issues you report, assess client satisfaction, and continuously improve our services.

Personal data processed:
Name, surname, phone number, email address, IP address, cookie ID, data publicly available on your social profiles, and any other data you voluntarily send us.

Legal bases:

  • Steps at your request prior to entering into a contract (Art. 6(1)(b) GDPR)

  • Legitimate interests to respond to questions/complaints/suggestions and improve our services and user experience (Art. 6(1)(f) GDPR)

Recipients:

  • IT service providers (hosting, storage), website maintenance/CRM providers

  • Website platform/host

  • Social media platforms: Facebook, Instagram, LinkedIn

  • Regulators and other authorities when required by law

Retention:
We do not keep communications older than 1 year from the date of last interaction. Social media messages are stored by those platforms per their own policies.

Storage locations:

  • Hosting provider’s servers

  • Social platforms’ servers (per their policies)

  • Our secure local and cloud servers (for data we download)


2) Marketing communications (newsletters & updates)

Purpose:
To send information about our services if you requested it (e.g., newsletter signup) or if you are already our client and the information is likely to interest you.

Personal data processed:
Name, surname, email address, phone number.

Legal bases:

  • Steps at data subject’s request prior to entering a contract (Art. 6(1)(b) GDPR)

  • Consent for marketing communications (Art. 6(1)(a) GDPR)

  • Legitimate interest if you are already our client and the information is likely of interest (Art. 6(1)(f) GDPR)

Recipients:

  • IT/hosting/CRM providers

  • Email marketing/automation tool (newsletter)

  • Regulators/authorities when required by law

Retention:

  • Newsletter: until you unsubscribe

  • Legitimate interest (existing clients): during the contract and for 3 years after termination

Storage locations:
Our secure local and cloud servers (for data we download).

Unsubscribe:
If you no longer wish to receive newsletters or updates from ArchelineGroup.com, click “Unsubscribe” in the email or write to dpo@archelinegroup.com.


3) Recruitment (candidates/volunteers)

If you wish to join the Archeline team, contact us via the site forms or contact details. We process the data you provide when expressing your interest and any additional information we request, to assess your potential and motivation.

Important: Do not include sensitive data in your CV (racial/ethnic origin; political opinions; religious/philosophical beliefs; trade union or party membership; criminal history; illegal/inappropriate behavior records; national ID numbers; health data, etc.).

Personal data processed:

  • Identification and contact data (name, email, phone)

  • CV, certifications, skills/qualifications for the role

  • Cover letter, prior/relevant work experience

  • Information from interviews/calls

  • Job preferences, current/desired salary/benefits, relocation/work preferences, preferred organization type

  • References/background checks (if applicable)

  • Employment history

  • Any other information provided voluntarily

  • Sensitive/demographic data (if voluntarily provided): citizenship, health information, racial/ethnic/religious data

Legal basis:
Steps at your request prior to entering into a contract (Art. 6(1)(b) GDPR)

Recipients:

  • IT/hosting/CRM providers

  • Website platform/host

  • Regulators/authorities when required by law

Retention:
We do not keep candidate data older than 3 years.

Storage locations:

  • Hosting provider’s servers (for website submissions)

  • Our secure local and cloud servers (for data we download)


4) Contracting and handling client requests

Purpose:
To conclude and perform contracts, and to fulfill related requests.

Personal data processed:
Name, surname, phone number, email address, signature, role in the company.

Legal basis:
Contract performance (Art. 6(1)(b) GDPR)

Recipients:

  • IT/hosting/CRM providers

  • Regulators/authorities when required by law

Retention:
No personal data older than 5 years after contract termination will be kept, except documents subject to statutory retention (e.g., accounting data).

Storage locations:
Our secure local and cloud servers (for data we download).


5) Participation in Archeline events

Purpose:
To foster client/partner loyalty and awareness through events (launches, presentations, viewings, campaigns, contests, etc.).

Note on photos/videos:
We may wish to photograph or film participants to promote the community and Archeline services. We will always offer the option to object (e.g., distinct badge color) and will respect your preference not to be filmed/photographed.

Personal data processed:
Name, surname, phone number, email, city
Optional: image (photos, video recordings)

Legal bases:

  • Steps at your request prior to a contract for participant registration (Art. 6(1)(b) GDPR)

  • Consent for marketing communications (Art. 6(1)(a) GDPR)

  • Legitimate interest to promote Archeline’s image via photos/videos from campaigns/contests/events (Art. 6(1)(f) GDPR)

Recipients:

  • IT/hosting/CRM providers

  • Event vendors (photographers, videographers, event organizers, video/online chat tools)

  • Website platform/host

  • Social media: Facebook, Instagram, LinkedIn

  • Regulators/authorities when required by law

Retention:
Participant data is stored for 24 months after the event.

Storage locations:

  • Hosting provider’s servers (website submissions)

  • Social platforms (photos/videos) per their own policies

  • Our secure local and cloud servers (for data we download)


6) Social media interactions

We are active on Facebook, Instagram, and LinkedIn. When you interact with our accounts (comments, likes, shares, reviews, etc.), we can access the information you make public on your profiles.

Personal data processed:
Name, image, and any other information publicly accessible on your social profile or voluntarily communicated.

Legal bases:

  • Steps at your request prior to a contract (Art. 6(1)(b) GDPR), or

  • Legitimate interests to respond to queries/complaints/suggestions, improve services, and keep you updated on news from Archeline that may interest you (Art. 6(1)(f) GDPR)

Recipients:

  • Social media platforms (Facebook, Instagram, LinkedIn)

  • Regulators/authorities when required by law

Retention & storage:

  • Stored by social networks per their policies (servers in the EU or USA)

  • Data we download is stored on our secure local and cloud servers


7) Social plugins

Archeline and social platforms (as joint controllers, per platform policies) may process active display data (e.g., cookie ID) when a user interacts with embedded social buttons/widgets.

We have integrated Facebook, Instagram, LinkedIn plugins. See our Cookie Policy for details.

Personal data processed:
Name, image, publicly accessible profile information, Cookie ID

Legal basis:
Legitimate interests to facilitate easy sharing of our content (Art. 6(1)(f) GDPR)

Recipients:
Facebook, Instagram, LinkedIn; regulators/authorities when required by law.

Retention & storage:

  • By social networks per their policies (EU/USA)

  • Data we download is stored on our secure local and cloud servers


8) Site performance, security, and usability (cookies & logs)

When you access our site, we collect data via online identifiers (cookies, IP) stored in log files. We use this information to adapt our site to user needs, diagnose server issues, manage the site, maintain security and fraud prevention, authorize access to site services, analyze trends, track visitor movements, collect general demographic information, and identify user preferences.

Cookie details and management:
See our Cookie Policy (insert your link here once live: [Cookie Policy]).

Personal data processed:
IP address, general device location (country level), site browsing history, timestamp, request/action, browser/OS type and version, and other information generated while using our site (including when, how often, and under what circumstances it is used).

Legal bases:

  • Legitimate interests for essential cookies that ensure a smooth and secure browsing experience (Art. 6(1)(f) GDPR)

  • Consent for non-essential cookies (Art. 6(1)(a) GDPR)

Recipients:

  • IT/hosting/CRM providers

  • Third parties placing cookies: Facebook, Instagram, LinkedIn

  • Regulators/authorities when required by law

Retention:
Session cookies are deleted when you close your browser; persistent cookies remain for varying lifetimes depending on purpose. See Cookie Policy for specific durations.

Storage locations:

  • First-party cookie data on the hosting provider’s servers

  • Third-party cookie data on those providers’ servers (EU or USA)


Data Security

Archeline applies appropriate technical and organizational measures to protect personal data against unauthorized access, disclosure, alteration, loss, or destruction. However, no data transmission is 100% secure.

If you suspect a privacy breach, contact us immediately at dpo@archelinegroup.com.

After the applicable retention period ends, your data will be deleted. Where data could help improve our products/services, we may continue using it only after irreversible anonymization.


Links to Other Websites

We are not responsible for the privacy practices of other websites or third parties. Please read the privacy policies of any site that may collect personal information.


Processing of Minors’ Data

Archeline does not knowingly collect information via the website from individuals under 18. Access/use by minors implies consent of the legal guardian. If we discover a minor used our site without legal guardian approval, we will delete all related personal data.


International Data Transfers

Archeline shares personal data with partners operating outside the European Economic Area (EEA).

International partners may include:

  • Third parties placing cookies: {Insert third-party list once finalized}

  • Social platforms: Facebook, Instagram, LinkedIn

  • Our website platform/host

Personal data may be stored/processed in any country where we engage service providers, including the United States or Israel. Such countries may have different data protection rules. We take steps to ensure these transfers comply with applicable laws and that your data remains protected as described in this policy. In certain circumstances, courts, law enforcement, regulatory or security authorities in those countries may have access rights.

Transfer safeguards we may use:

  • EU Standard Contractual Clauses (SCCs) with data recipients outside the EEA/UK

  • Verification of Binding Corporate Rules (BCRs) where applicable

  • Additional technical/organizational measures to ensure an equivalent level of protection to that guaranteed within the EU


Your Rights

As a data subject, you have the following rights. Archeline respects these rights and will duly consider your interests.

  • Withdraw consent (where processing is based on consent).

  • Rectification of inaccurate personal data.

  • Restriction of processing in specific cases (e.g., you contest accuracy; processing is unlawful and you prefer restriction to deletion; we no longer need the data but you require it for legal claims; you object while we verify overriding legitimate grounds).

  • Access to your personal data (categories, purposes, sources, disclosures). We will provide a free copy; we may charge a reasonable fee for abusive/repetitive requests.

  • Portability (where technically feasible and processing is necessary for contract performance). You may request we transfer data directly to another controller.

  • Erasure in situations such as: data no longer needed for stated purposes; you withdraw consent; you object to processing; processing is unlawful—except where processing is required to comply with legal obligations (e.g., statutory retention) or for legal claims.

  • Object to processing based on legitimate interests due to your specific situation. We will stop unless we demonstrate compelling legitimate grounds or need the data for legal claims. When objecting, please indicate whether you seek deletion or restriction.

Supervisory authority:
You may lodge a complaint with the Romanian supervisory authority: Autoritatea Națională de Supraveghere a Prelucrării Datelor cu Caracter Personal (see www.dataprotection.ro).

Timelines:
We aim to respond within 30 days. This may be extended per law or due to request complexity.

Possible limitations:
Legal restrictions may limit full access. If we refuse, we will explain why. If we cannot identify you due to insufficient information, we may request additional details; without them, we may be unable to fulfill your request.

Exercising your rights:
Contact our Data Protection Officer at dpo@archelinegroup.com.


Last updated: November 12, 2025

Cookie Policy of ArchelineGroup.com

This policy describes the cookies used on ArchelineGroup.com by the site owner, Archeline.

Please review this page regularly, as the policy may be updated. We will notify you of any material changes.
In addition, please read our [Privacy Policy].


Who We Are

Website owner: ARCHELINE S.R.L., Bld. Ion Mihalache no. 160, Sector 1, Bucharest, 011212, Romania.
Registered with the Romanian Trade Registry under no. J40/[to be completed]/2025.
Fiscal Identification Code (CUI): 52460087
Contact: dpo@archelinegroup.com
Website: ArchelineGroup.com


Why We Use Cookies

Cookies are small data files that make your browsing easier and more pleasant. They act like “memories” a site keeps, helping it remember your actions and preferences (e.g., language, login).

Most websites you use rely on cookies for essential site functions, performance analytics, and, where you consent, personalized advertising.


What Is Inside a Cookie?

A cookie is a tiny text file set by a website via your browser (e.g., Chrome, Safari, Edge, Firefox). It contains:

  • the site name (domain) that set it, and

  • a unique string of numbers/letters.

Session cookies are deleted when you close the browser. Persistent cookies remain for a defined duration.

Cookies do not contain personal information by themselves and are not programs (they cannot damage your device).


What Types of Cookies We Use

A visit to ArchelineGroup.com may place the following categories:

  1. Strictly Necessary Cookies – required for the site to function (security, session integrity, consent logging). These run automatically and do not require consent.

  2. Analytics (Performance & Functionality) – help us understand how the site is used, fix errors, improve UX, and (where applicable) support audience segmentation.

  3. Functionality Cookies – remember your preferences (e.g., language, UI settings).

  4. Personalized Advertising Cookies – enable more relevant advertising and measurement across sites (set only with your consent).

Strictly Necessary (no consent required)

Used for security, load balancing, session management, and remembering your cookie choices.

CookiePurposeDuration
sessionIDManages your active sessionUntil browser close
XSRF-TOKENProtects forms (anti-CSRF)Until session end
cookie_consentStores your cookie preferences1 year

We also include non-demographic, non-segmentation traffic measurement and non-personalized ad-serving state here where required for site viability.

Analytics (Performance) & Functionality

Help us understand which pages are most visited, how users navigate, and remember your settings.

CookiePurposeDuration
_gaMeasures site traffic2 years
_gidDistinguishes users24 hours
languageSaves your language preference1 year
ui_settingsRemembers your UI/display settings1 year

Some social plugins (e.g., embedded players, login via third parties) may set additional social media cookies to enable content rendering, social login, likes/shares, etc.

Personalized Advertising (only with consent)

Support delivery and measurement of relevant ads and remarketing.

CookiePurposeDuration
ads_idTracks ad effectiveness30 days
remarketingEnables showing relevant ads on other sites90 days

Opt-out note: You can manage ad personalization with providers (e.g., Google Ads settings).


Consent Management

By default, only strictly necessary cookies load. All other categories (Analytics, Functionality where non-essential, Personalized Advertising) are used only with your consent via our cookie banner/settings.

You can withdraw or change consent anytime via the Cookie Settings link in the site footer (or your browser controls).


Blocking Cookies in Your Browser

Most browsers accept cookies by default. You can configure your browser to notify you when a cookie is set or to block some/all cookies.
Note: some site sections may not function properly without certain cookies (e.g., login, form submission, security).

For guidance, see your browser’s help pages (Chrome, Safari, Firefox, Edge, Opera).


Third-Party Cookies

Third-party cookies (also known as trackers) are set by providers other than the website you are visiting—for analytics, advertising, retargeting, or social media integrations.

Common third-party sources include Facebook, LinkedIn, and Google (e.g., pixels/tags).


Social Plugins

We integrate social plugins from Facebook, Instagram, and LinkedIn, which may set cookies independently. These providers may build user profiles for advertising, market research, or their own site optimization. If you are logged into these networks during your visit, your activity may be associated with your account.

If you prefer not to be associated, you can log out of those services or disable third-party cookies in your browser settings.

For details on how social networks use data collected via plugins, please refer to their respective policies.


Managing Analytics & Ads

Where we use analytics and ads cookies, you can:

  • manage consent in our Cookie Settings, and/or

  • adjust preferences with providers (e.g., Google Ads settings), and/or

  • use browser-level controls or ad-blocking extensions.


Data, Storage, and Transfers

  • First-party cookies (set by ArchelineGroup.com) are stored on our hosting provider’s servers.

  • Third-party cookies are stored by their respective providers (in the EU or the USA, depending on the service).

  • Some providers may process data outside the EEA. When transfers occur, we seek to rely on appropriate safeguards (e.g., EU Standard Contractual Clauses, Binding Corporate Rules, and additional technical/organizational measures) to ensure an equivalent level of protection as in the EU.

For more about how we handle personal data, see our [Privacy Policy].


Your Choices

  • Consent/withdrawal: Use the Cookie Settings (footer) to enable/disable categories.

  • Browser controls: Block or delete cookies at any time.

  • Ad personalization: Adjust via provider settings and/or your consent choices.

  • Access & other GDPR rights: See our [Privacy Policy] for exercising your privacy rights.


Contact

For questions or requests about this Cookie Policy:
📧 dpo@archelinegroup.com


Last updated: November 12, 2025