GDPR & Privacy Policy for Blossom Nova Tech
Last Updated: September 10, 2026
PRIVACY POLICY
1. Introduction
Blossom NovaTech (“Company”, “we”, “our”, or “us”) is committed to protecting your privacy and ensuring that your personal data is handled securely and transparently.
As a company registered in Lithuania, European Union, we process personal data in accordance with the General Data Protection Regulation (EU) 2016/679 (“GDPR”) and other applicable data protection laws.
This Privacy Policy explains what information we collect, how we use it, how we protect it, and the rights available to you regarding your personal data.
2. Data Controller
The data controller responsible for your personal data is:
Blossom NovaTech
Lithuania, European Union
Email: privacy@blossomnovatech.com
3. Information We Collect
We may collect the following categories of personal data:
Information You Provide
- Full name
- Email address
- Phone number
- Company or organization details
- Information submitted through contact forms
- Communications and correspondence with us
Technical Information
- IP address
- Browser type and version
- Device information
- Website usage information
- Date and time of access
- Security and diagnostic logs
4. How We Use Your Information
We use personal data for the following purposes:
- Responding to inquiries and support requests
- Delivering and managing our services
- Communicating with customers and business partners
- Improving website functionality and user experience
- Maintaining website security and preventing fraud
- Complying with legal and regulatory obligations
- Protecting our legitimate business interests
5. Legal Basis for Processing
Under GDPR, we process personal data based on one or more of the following legal grounds:
- Your consent
- Performance of a contract
- Compliance with a legal obligation
- Protection of vital interests
- Performance of a task carried out in the public interest
- Legitimate interests pursued by Blossom NovaTech
6. Data Sharing and Disclosure
We do not sell, rent, or trade personal data to third parties.
We may share personal data with:
- Trusted service providers and business partners
- IT hosting and cloud service providers
- Professional advisers and consultants
- Regulatory authorities when required by law
- Law enforcement agencies where legally required
All third-party processors are contractually required to protect personal data and comply with applicable data protection laws.
7. Data Storage and Security
Your personal data is stored securely using industry-standard security measures.
These measures include:
- Encryption of data where appropriate
- Access controls and user authentication
- Security monitoring and logging
- Regular software updates and maintenance
- Protection against unauthorized access, disclosure, loss, or misuse
Where personal data is processed by third-party providers, we ensure that appropriate safeguards are in place to protect your information.
8. International Data Transfers
If personal data is transferred outside the European Economic Area (EEA), we implement appropriate safeguards in accordance with GDPR requirements.
Such safeguards may include:
- European Commission Adequacy Decisions
- Standard Contractual Clauses (SCCs)
- Other legally approved transfer mechanisms
9. Data Retention
We retain personal data only for as long as necessary to:
- Fulfill the purposes described in this Privacy Policy
- Comply with legal and regulatory obligations
- Resolve disputes
- Enforce agreements
When personal data is no longer required, it will be securely deleted, anonymized, or destroyed.
10. Your Rights Under GDPR
As a data subject, you have the following rights:
Right of Access
You may request a copy of the personal data we hold about you.
Right to Rectification
You may request correction of inaccurate or incomplete personal data.
Right to Erasure
You may request deletion of your personal data where legally applicable.
Right to Restrict Processing
You may request that processing of your personal data be restricted in certain circumstances.
Right to Object
You may object to the processing of personal data based on legitimate interests.
Right to Data Portability
You may request your personal data in a structured, commonly used, and machine-readable format.
Right to Withdraw Consent
Where processing is based on consent, you may withdraw that consent at any time.
Right to Lodge a Complaint
You have the right to lodge a complaint with the State Data Protection Inspectorate of Lithuania or another competent supervisory authority within the European Union.
To exercise any of your rights, please contact:
11. Cookies
Our website uses only essential cookies necessary for:
- Website functionality
- Security
- Performance and reliability
We do not use:
- Advertising cookies
- Marketing cookies
- Behavioral tracking cookies
- Third-party profiling cookies
If our cookie practices change in the future, this Privacy Policy will be updated accordingly.
12. Children’s Privacy
Our services are not intended for individuals under the age of 16.
We do not knowingly collect personal data from children. If we become aware that personal data of a child has been collected inadvertently, we will take reasonable steps to delete such information promptly.
13. Changes to this Privacy Policy
We may update this Privacy Policy from time to time to reflect changes in:
- Legal requirements
- Regulatory guidance
- Business operations
- Technology or security practices
Any updates will be published on this page with a revised “Last Updated” date.
14. Contact Us
If you have questions about this Privacy Policy, our privacy practices, or your GDPR rights, please contact us:
Blossom NovaTech
Email: privacy@blossomnovatech.com
End of Privacy Policy