Privacy

Privacy Policy (GDPR)

We respect your privacy and process personal data in accordance with Regulation (EU) 2016/679 (GDPR).

Data controller

The data controller is the company operating Ruby Bistro Events, whose identification details are shown below. You can contact us at any time by email or phone.

What data we process

We only process data you send us directly or data needed for the website to work properly:

  • Data you provide when you email or call us: name, phone number, email address and the content of your message.
  • Data needed to organise a private event: contact person, date, number of guests and agreed preferences.
  • Technical data generated automatically when visiting the website, to the extent cookies are used (see the Cookie Policy).

Purposes and legal bases

  • To answer your requests and questions — based on our legitimate interest in communicating with customers.
  • For reservations and organising private events — to enter into and perform a contract.
  • To comply with legal, tax and accounting obligations — based on a legal obligation.

How long we keep data

We keep data only as long as necessary for the purpose it was collected for, or as required by law for tax and accounting documents. Afterwards the data is deleted or anonymised.

Who we share data with

We do not sell or rent your data. It may be accessed only by our staff and, where relevant, by providers supporting us (email services, accounting, web hosting), all bound by confidentiality.

Your rights

Under the GDPR you have the following rights:

  • the right of access to the data processed;
  • the right to rectification of inaccurate data;
  • the right to erasure;
  • the right to restriction of processing;
  • the right to data portability;
  • the right to object;
  • the right to lodge a complaint with the Romanian Data Protection Authority (ANSPDCP).

How to exercise your rights

Write to us by email or call us using the contact details below. We reply within the period provided by law.