GDPR Compliance
How eBužim portal complies with the General Data Protection Regulation (GDPR).
1. Introduction
The General Data Protection Regulation (GDPR) - Regulation (EU) 2016/679 - applies to all EU citizens. Although eBužim primarily focuses on Bosnia and Herzegovina, we have implemented GDPR standards to protect all visitors.
2. Data Controller
NextDev (Enes Mareno)
Patriotske Lige 10, 77245 Bužim, Bosnia and Herzegovina
Email: hello@nextdev.ba
3. Data Processing Principles
| Principle | Implementation |
|---|---|
| Lawfulness, fairness, transparency | Clear privacy policy, cookie notice |
| Purpose limitation | Data used only for stated purpose |
| Data minimization | We collect only necessary data (name, email) |
| Accuracy | Data correction available on request |
| Storage limitation | Regular deletion of old data |
| Integrity and confidentiality | HTTPS, CSP, HSTS security measures |
4. Consent-Based Processing
When you voluntarily provide data via contact form or newsletter, we process it based on your consent (Article 6(1)(a) GDPR). Consent can be withdrawn at any time.
5. Data Processing Record
| Activity | Purpose | Legal Basis | Retention |
|---|---|---|---|
| Contact form | Responding to inquiries | Consent (Art. 6(1)(a)) | 90 days |
| Newsletter | Sending updates | Consent (Art. 6(1)(a)) | Until withdrawal |
| Plausible Analytics | Traffic analysis | Legitimate interest (Art. 6(1)(f)) | 12 months |
6. Data Breach
In case of a data breach that poses a risk to individuals’ rights and freedoms, we will notify the supervisory authority within 72 hours and inform affected individuals without delay.
7. Contact for GDPR
For GDPR-related questions: hello@nextdev.ba or via the contact form.