Privacy Policy

Last Updated: 05 November 2025


OÜ VERTEX DIGITAL

Reg. no. 17344910
Harju maakond, Tallinn, Mustamäe linnaosa, Kadaka pst 169b, 12615, Estonia
Email: info@soft2next.com


INTRODUCTION

This Privacy Policy describes how OÜ VERTEX DIGITAL collects, processes, stores, transfers, and protects your personal data when you use https://soft2next.com.

We act as a Data Controller under GDPR, Estonian Data Protection Law, ePrivacy Directive, Schrems II, Visa/Mastercard requirements, PCI DSS principles, PSD2, and European banking standards.


LEGAL BASES FOR PROCESSING (GDPR Article 6)

We process data for:

• Contract performance
• Legal obligations
• Legitimate interests
• Consent
• Establishment/defense of legal claims


PERSONAL DATA WE COLLECT

• Name, email, billing address
• Account credentials (hashed)
• IP address, device/browser data
• Activity logs and session identifiers
• Payment metadata (masked details, BIN country, transaction ID)
• Anti-fraud signals (IP reputation, device fingerprint)


PURPOSES OF PROCESSING

• Delivering digital products
• Payment processing through PCI-compliant gateways
• Fraud prevention and AML checks
• Customer support
• Analytics and performance improvement
• Legal compliance


DATA SUBJECT RIGHTS

Right of access, rectification, deletion, restriction, objection, portability, and withdrawal of consent.

Requests verified for identity.
Response time: 30 days.


DATA PROCESSORS

Hetzner – hosting
SendGrid – email
Google Analytics – analytics
Cloudflare – security
MaxMind – fraud scoring
PSPs/acquiring banks – payments

All under GDPR-compliant DPAs.


INTERNATIONAL TRANSFERS

Protected by SCCs, encryption, minimization, and Schrems II–aligned safeguards.


SECURITY MEASURES

TLS 1.3, encryption, hashed credentials, fraud monitoring, firewalls, access control, log retention, PCI DSS alignment.


RETENTION

Orders: 7–10 years
Accounts: lifetime + 24 months
Logs: 12–36 months
Marketing: until withdrawn


COOKIES

Necessary cookies, analytics (consent), marketing (explicit opt-in).
Managed through CMP.


AUTOMATED DECISION-MAKING

No automated decisions with legal effect.
Fraud tools only flag transactions for manual review.


DPO

A DPO is not required.
Privacy is handled by compliance team: info@soft2next.com


MINORS

Service is not intended for users under 18.


CHANGES

Policy may be updated.
Latest version will always be available online.


CONTACT

OÜ VERTEX DIGITAL
Email: info@soft2next.com

Select your currency
EUR Euro
GGP Guernsey pound