Privacy Policy
PUSH FORWARD DOO NOVI SAD ("we", "us", "our") respects your privacy. This Privacy Policy explains what personal data we collect through this website, why, on what legal basis, how long we keep it, and the rights you have.
We act as the data controller. Our processing complies with the Serbian Law on Personal Data Protection (Zakon o zaštiti podataka o ličnosti, "ZZPL"), which mirrors the EU General Data Protection Regulation ("GDPR"). Where we mention GDPR articles below, the ZZPL provides equivalent grounds.
1. Who we are
PUSH FORWARD DOO NOVI SAD
Pozorišni trg 7/2/6A, 21000 Novi Sad, Serbia
Company registration number (matični broj): 21905666
Tax identification number (PIB): 113641346
For any question about this Policy or your data, contact us at office@wepush.tech. We respond within one month.
2. What we collect, why, and how long
2.1 Visiting the website
When you visit, standard technical data (such as your IP address, the date and time of the request, the pages requested, and your browser and device type) is recorded in server log files by our hosting provider, and our contact and newsletter endpoint keeps a small, automatically size-limited diagnostic log.
Purpose: to deliver the website securely and reliably, and to detect and prevent misuse.
Legal basis: our legitimate interest in the secure operation of the website (Article 6(1)(f) GDPR).
Retention: these logs are technical and minimal; the application's own diagnostic log is limited to a fixed maximum size, and we keep log data only for as long as needed for the security and operation of the site.
2.2 Contacting us through the form or by email
If you use our contact form or write to us, we process the details you provide (such as your name, email address and the content of your message).
Purpose: to respond to your enquiry and, where relevant, to take steps towards working together.
Legal basis: the performance of a contract or steps taken at your request before entering into one (Article 6(1)(b) GDPR).
Retention: we keep your message for as long as needed to handle your enquiry and any relationship that develops from it, and thereafter in line with our normal business and legal record-keeping. You can ask us to delete your data at any time (see Your rights).
2.3 Subscribing to our newsletter
If you subscribe, we process your email address. We use a double opt-in: you receive a confirmation email and are only added once you confirm.
Purpose: to send you occasional updates.
Legal basis: your consent (Article 6(1)(a) GDPR).
Retention: until you unsubscribe or withdraw your consent, which you can do at any time using the link in every email. Withdrawal does not affect the lawfulness of processing before it.
2.4 Booking a call
If you book a call through our scheduling tool, we process the details you provide to arrange it (such as your name, email address and chosen time).
Purpose: to schedule and hold the meeting with you.
Legal basis: the performance of a contract or steps taken at your request before entering into one (Article 6(1)(b) GDPR).
Retention: for as long as needed to arrange and follow up the meeting, then deleted.
2.5 Website analytics
We use a privacy-friendly, cookieless analytics tool to understand, in aggregate, how the website is used (for example which sections visitors reach). It does not use cookies, does not track you across websites, and does not collect data that identifies you personally.
Purpose: to understand and improve how the website performs.
Legal basis: our legitimate interest in improving the website (Article 6(1)(f) GDPR).
Retention: aggregate statistics only, retained for up to six months.
3. Cookies
We aim to keep the website free of non-essential cookies. Our analytics is cookieless, and we set no marketing or tracking cookies. For details, see our Cookie Notice.
4. Who we share your data with
To run the website we use a small number of service providers who process data on our behalf as processors, under a data processing agreement and only on our instructions:
- Sendinblue SAS, trading as Brevo, 17 rue Salneuve, 75017 Paris, France - newsletter and contact-form email delivery.
- meetergo GmbH, Hauptstraße 44, 40789 Monheim am Rhein, Germany - call scheduling.
- Hostinger International Limited, 61 Lordou Vironos str., 6023 Larnaca, Cyprus - website hosting, on servers located in the European Union (Frankfurt).
- Umami Software, Inc., San Francisco, United States - cookieless website analytics, with data stored in its European Union region.
We do not sell your personal data and do not share it with third parties for their own marketing.
5. International aspects
Our website is hosted in the European Union, and our email, scheduling and analytics providers store data on servers in the European Union.
As the data controller, we are established in Serbia. Serbia is outside the EU, but its data protection law (ZZPL) provides a level of protection equivalent to the GDPR, and we handle your data to that standard wherever we access it. Where you provide data to us directly through this website, that provision to us is not treated as an international data transfer under the GDPR.
Our analytics provider is a company incorporated in the United States, although the analytics data is stored in its EU region. Because this tool is cookieless and collects no data that identifies you, no personal data of yours is involved in that arrangement.
6. Your rights
Under the GDPR and the ZZPL you have the right to: access your data (Article 15), have it corrected (Article 16), have it erased (Article 17), restrict its processing (Article 18), data portability (Article 20), and object to processing based on our legitimate interest (Article 21). Where processing is based on your consent, you may withdraw it at any time (Article 7(3)).
To exercise any of these, write to office@wepush.tech. You do not have to pay, and we respond within one month.
If you believe we handle your data unlawfully, you may lodge a complaint with the Serbian supervisory authority, the Commissioner for Information of Public Importance and Personal Data Protection (Poverenik). If you are in the EU or EEA, you may also complain to the supervisory authority in your country.
7. How we keep your data secure
We apply appropriate technical and organisational measures to protect your data, including encrypted connections, access controls and data minimisation, and we choose processors that offer equivalent guarantees.
8. Changes to this Policy
We may update this Policy to reflect changes in our processing or in the law. The current version always applies and is published on this page.