PRIVACY POLICY
1. Introduction
Hearth Movement OÜ respects your privacy and is committed to protecting your personal data in accordance with the EU General Data Protection Regulation (GDPR) and applicable Estonian laws.
This privacy policy explains what personal data we collect, how we use it, and what rights you have regarding your data.
2. Data Controller
The data controller responsible for personal data processing is:
Hearth Movement OÜ
Country: Estonia
Email:
Website: www.hearth.ee
If you have questions regarding personal data processing, please contact us using the details above.
3. What personal data we collect
Depending on how you use our website, we may collect the following information:
- email address (for newsletter subscriptions)
- name (if provided via contact forms)
- IP address
- browser and device information
- website usage statistics
- cookie-related data
Currently, the main purpose of data collection on our website is newsletter subscriptions.
4. How we collect personal data
Personal data may be collected:
- when you subscribe to our newsletter
- when you fill in a contact form
- when you use our website
- through cookies and analytics tools
Some data is collected automatically when you visit the website.
5. Legal basis for processing
We process personal data based on the following legal grounds under GDPR:
- Consent – when you subscribe to newsletters or accept cookies
- Legitimate interest – to maintain and improve the functionality and security of the website
- Contractual necessity – when responding to inquiries or providing services
You may withdraw your consent at any time.
6. How we use the data
We may use personal data to:
- send newsletters and updates
- improve website functionality and user experience
- analyze website traffic
- respond to inquiries
- ensure website security
We do not use personal data for automated decision-making or profiling.
7. Data retention
Personal data is stored only for as long as necessary to fulfill the purposes for which it was collected.
For example:
- newsletter data is stored until you unsubscribe
- technical logs are stored for a limited period for security and analytics purposes
Data is deleted or anonymized when no longer required.
8. Cookies and analytics
Our website may use cookies and analytics tools.
Cookies are small text files stored on your device when visiting a website. They help to:
- ensure proper website functionality
- improve user experience
- analyze website usage
In the future, we may use analytics services such as Google Analytics or similar tools to better understand website usage.
You may manage or disable cookies through your browser settings.
9. Data sharing with third parties
We may use third-party service providers to process data on our behalf, such as:
- newsletter platforms
- website analytics providers
- website hosting services
These providers process data only according to our instructions and GDPR requirements.
We do not sell or rent personal data.
10. Data security
We implement appropriate technical and organizational measures to protect personal data, including:
- secure servers
- restricted access to data
- encryption where appropriate
However, data transmission over the internet can never be completely secure.
11. Your rights under GDPR
You have the following rights regarding your personal data:
- right of access
- right to rectification
- right to erasure (“right to be forgotten”)
- right to restrict processing
- right to data portability
- right to object to processing
- right to withdraw consent
You also have the right to lodge a complaint with a data protection authority.
12. Contact regarding data protection
For any privacy-related questions or requests:
13. Updates to this policy
We may update this privacy policy from time to time to reflect legal or operational changes.
The latest version will always be published on this website.