Last Updated: 05 November 2025
OÜ VERTEX DIGITAL
Reg. no. 17344910
Harju maakond, Tallinn, Mustamäe linnaosa, Kadaka pst 169b, 12615, Estonia
Email: info@soft2next.com
INTRODUCTION
This Privacy Policy describes how OÜ VERTEX DIGITAL collects, processes, stores, transfers, and protects your personal data when you use https://soft2next.com.
We act as a Data Controller under GDPR, Estonian Data Protection Law, ePrivacy Directive, Schrems II, Visa/Mastercard requirements, PCI DSS principles, PSD2, and European banking standards.
LEGAL BASES FOR PROCESSING (GDPR Article 6)
We process data for:
• Contract performance
• Legal obligations
• Legitimate interests
• Consent
• Establishment/defense of legal claims
PERSONAL DATA WE COLLECT
• Name, email, billing address
• Account credentials (hashed)
• IP address, device/browser data
• Activity logs and session identifiers
• Payment metadata (masked details, BIN country, transaction ID)
• Anti-fraud signals (IP reputation, device fingerprint)
PURPOSES OF PROCESSING
• Delivering digital products
• Payment processing through PCI-compliant gateways
• Fraud prevention and AML checks
• Customer support
• Analytics and performance improvement
• Legal compliance
DATA SUBJECT RIGHTS
Right of access, rectification, deletion, restriction, objection, portability, and withdrawal of consent.
Requests verified for identity.
Response time: 30 days.
DATA PROCESSORS
Hetzner – hosting
SendGrid – email
Google Analytics – analytics
Cloudflare – security
MaxMind – fraud scoring
PSPs/acquiring banks – payments
All under GDPR-compliant DPAs.
INTERNATIONAL TRANSFERS
Protected by SCCs, encryption, minimization, and Schrems II–aligned safeguards.
SECURITY MEASURES
TLS 1.3, encryption, hashed credentials, fraud monitoring, firewalls, access control, log retention, PCI DSS alignment.
RETENTION
Orders: 7–10 years
Accounts: lifetime + 24 months
Logs: 12–36 months
Marketing: until withdrawn
COOKIES
Necessary cookies, analytics (consent), marketing (explicit opt-in).
Managed through CMP.
AUTOMATED DECISION-MAKING
No automated decisions with legal effect.
Fraud tools only flag transactions for manual review.
DPO
A DPO is not required.
Privacy is handled by compliance team: info@soft2next.com
MINORS
Service is not intended for users under 18.
CHANGES
Policy may be updated.
Latest version will always be available online.
CONTACT
OÜ VERTEX DIGITAL
Email: info@soft2next.com