Privacy policy / GDPR
Last updated: 03.06.2026
This English version is provided for information. The Romanian version remains the reference version, unless mandatory law provides otherwise.
1. Who we are
IronFix.ro is operated by SOFTCONTROL SRL, registered office at Strada Toamnei, nr. 2 bis, Ramnicu Sarat, Buzau county, registered with the Trade Register under no. J10/37/2003, tax ID RO 15145123, referred to below as "IronFix", "we" or "the controller".
Contact details:
Email: office@softrol.ro
Phone: +40 371 328 802
Address: Strada Toamnei, nr. 2 bis, Ramnicu Sarat, Buzau county
2. Our role
For data submitted through IronFix.ro, SOFTCONTROL SRL usually acts as personal data controller. We process data to receive requests, analyze them, communicate with clients, prepare offers, schedule and perform works, issue fiscal documents, manage payments, support, complaints and legal obligations.
3. Data we may collect
Depending on how you use the platform, we may collect:
- name and surname;
- phone number and email address;
- city, intervention address or delivery address, where applicable;
- details about the work, property, equipment, product or requested service;
- photos, documents or files uploaded by the user;
- billing and payment data, including information needed for payment processing;
- history of requests, offers, orders, appointments, interventions and communications;
- technical data: IP address, cookie identifiers, browser type, operating system, accessed pages, access date and time;
- data voluntarily submitted through forms, email, phone, chat or other communication channels.
Please do not upload photos or documents containing other people's data, sensitive data or information that is not needed to evaluate the work.
4. Processing purposes
We process data for:
- receiving and analyzing quote requests;
- preparing cost estimates and offers;
- contacting the client for clarifications;
- scheduling interventions and coordinating installation/service teams;
- performing the contract or pre-contractual steps;
- issuing invoices, receipts and accounting documents;
- processing and verifying payments;
- managing warranties, complaints, cancellations, returns and support requests;
- improving services and securing the platform;
- preventing fraud, abuse and unauthorized access;
- sending commercial communications only where the user has given separate consent;
- complying with legal obligations.
5. Legal bases
We process data based on one or more legal bases:
- performance of a contract or pre-contractual steps requested by the data subject;
- compliance with legal obligations, including tax, accounting and consumer protection rules;
- our legitimate interest in platform security, fraud prevention, defending rights and improving services;
- user consent for optional cookies, marketing, newsletters or other processing requiring consent;
- establishing, exercising or defending legal claims, where necessary.
6. Recipients of data
We may share data, strictly as needed, with:
- installation teams, service teams, installers, collaborators or subcontractors involved in the work;
- IT, hosting, maintenance, security and communication providers;
- payment processors and banks;
- courier or logistics providers, if products/materials are delivered;
- accounting, audit, legal or tax consultants;
- public authorities, courts or competent institutions when required by law.
7. Transfers outside the European Economic Area
We aim to use providers that store and process data in the European Union or the European Economic Area. If we use providers involving transfers outside the EEA, we will apply the safeguards required by data protection law, such as standard contractual clauses or other valid mechanisms.
8. Retention
We keep data only as long as necessary for the purposes for which it was collected. As guidance:
- unfinished quote requests: [e.g. 12 months];
- client account and order/intervention history: while the account exists and afterwards according to legal terms;
- financial-accounting documents: according to applicable fiscal law;
- communications and complaints: as needed for resolution and defending rights;
- cookie/marketing consent: until withdrawal or expiry of the technical period set;
- security logs: [e.g. 6-24 months], unless longer retention is needed to investigate incidents.
9. Data subject rights
You have the following rights:
- right of access;
- right to rectification;
- right to erasure, under the law;
- right to restriction of processing;
- right to data portability;
- right to object;
- right to withdraw consent, without affecting prior lawful processing;
- right to lodge a complaint with the Romanian National Supervisory Authority for Personal Data Processing.
10. Exercising your rights
You can exercise your rights by contacting us at office@softrol.ro. To protect data, we may request additional information to verify the applicant's identity. We will respond within the applicable legal term.
11. Data security
We apply reasonable technical and organizational measures to protect data: secure connections, access control, logging, backup, protection against unauthorized access and internal incident management procedures.
12. Changes to this policy
We may update this policy. The updated version will be published on IronFix.ro with the date of the last update.