Privacy Policy
Last updated: 9 October 2026
Who we are
The data controller is SOFTCORE SERVICES S.R.L., Tax ID 51207478, Trade Register No. J2025006267004, with its registered office at Str. Vasile Alecsandri nr. 1B, cam. 1, bl. 1, et. 5, ap. 74, Voluntari, jud. Ilfov, Romania.
For any question about your data, write to us at contact@softcore.ro. We have not appointed a Data Protection Officer (DPO), as we are not legally required to.
What this policy covers
This policy applies to the public pages of fusecrm.ro, in Romanian and English. It does not cover the FuseCRM application (the “Log in” area) or the data our clients enter into it; that data is processed under the contract and data processing agreement signed with each client.
Demo requests
What data: your name, email and company (required); phone, team size, modules of interest and message (optional). Along with the request, we automatically receive the page you sent it from and the site language.
Why: to contact you, arrange and run the demo, and discuss a possible collaboration with the company you represent. The page and language help us understand what you are interested in and reply in the right language.
Legal basis: our legitimate interest in responding to enquiries and developing business relationships (Art. 6(1)(f) GDPR). If you request the demo on your own behalf (for example, as a sole trader), the basis is taking steps at your request before entering into a contract (Art. 6(1)(b) GDPR).
How the data moves: when you submit the form, the request is sent only as an internal email to contact@softcore.ro. We do not save it in a database and we do not send you an automatic email. We cannot reply without the required fields. We do not use this data for newsletters or other marketing.
Spam protection
The form is protected by Cloudflare Turnstile. When you start filling it in, Turnstile checks that the request comes from a person rather than an automated program; to do this, it processes your IP address and technical browser signals. Legal basis: our legitimate interest in protecting the form from abuse (Art. 6(1)(f) GDPR). Cloudflare is a US provider (see “Transfers outside the EEA”).
Technical logs
To keep the form working and to limit abuse, we keep technical logs of form submissions. They contain a request identifier, the result of the submission and, where applicable, a pseudonymised value derived from your IP address that does not contain the address itself. The logs do not contain your name, email, phone, company or message. Legal basis: our legitimate interest in keeping the website working and secure (Art. 6(1)(f) GDPR).
Traffic statistics
We use Plausible Analytics, hosted in the European Union. Plausible does not use cookies and does not store IP addresses or any other data that identifies you. We only see aggregated figures: pages visited, referral source, country and device type, plus the number of demo requests submitted, by language and team size. Legal basis: our legitimate interest in understanding how the website is used (Art. 6(1)(f) GDPR).
Cookies and browser storage
The public pages do not use cookies. The only thing we save in your browser is the theme you choose (light or dark), in the browser’s local storage (localStorage), when you change it. This information never leaves your browser, and you can delete it at any time in your browser settings. As it is needed only to keep the choice you made, we do not ask for your consent to it.
Who has access to your data
Demo requests are read only by the members of the SOFTCORE SERVICES S.R.L. team who handle them.
To run the website, we use the following providers, who process data on our behalf under contracts that require them to protect it:
- Microsoft Ireland Operations Ltd.: website hosting (Azure Static Web Apps), sending the internal email with your request (Azure Communication Services) and the contact@softcore.ro mailbox (Microsoft 365);
- Cloudflare, Inc. (USA): spam protection for the form (Turnstile);
- Plausible Insights OÜ (Estonia): aggregated traffic statistics.
We do not sell or rent your data. We disclose it to authorities only when required by law.
Transfers outside the EEA
The website, email and statistics are hosted in the European Union (Azure West Europe region, in the Netherlands; email through the Azure service in Europe). The only transfer outside the European Economic Area is to Cloudflare, Inc. (USA), for the spam check. It is based on the European Commission’s adequacy decision for the EU-U.S. Data Privacy Framework, under which Cloudflare is certified, and on the standard contractual clauses in the data processing agreement.
How long we keep your data
- Demo requests: 12 months from our last communication with you, if no collaboration follows, after which the email is deleted automatically. If your company becomes a client, contact details are kept for the duration of the business relationship and afterwards for as long as legal obligations require.
- Technical logs: 30 days.
- Plausible statistics: aggregated, with no personal data.
- Turnstile check: Cloudflare keeps the data only as long as the check requires, under its own terms.
Your rights
You have the right to:
- find out whether we process your data and receive a copy of it;
- have inaccurate data corrected;
- have your data deleted;
- have processing restricted;
- receive your data in a structured format and transmit it to another controller (portability), where the legal basis is a contract;
- object at any time to processing based on our legitimate interest; if you object, we stop processing unless we have compelling legitimate grounds or need the data to establish, exercise or defend legal claims;
- lodge a complaint with the Romanian data protection authority, ANSPDCP (Autoritatea Națională de Supraveghere a Prelucrării Datelor cu Caracter Personal), B-dul G-ral Gheorghe Magheru nr. 28-30, sector 1, Bucharest, Romania, anspdcp@dataprotection.ro, www.dataprotection.ro, or with the supervisory authority in the EU country where you live or work.
To exercise any of these rights, write to contact@softcore.ro. We reply within one month; for complex requests this may be extended by two further months, in which case we will let you know.
We do not make decisions based solely on automated processing and do not profile you.
Security
The website uses an encrypted connection (HTTPS). Demo requests are not stored on the website, only in the mailbox, and access to it is limited to the people who handle requests and protected by multi-factor authentication.
Changes
If we change this policy, we will publish the new version on this page with the update date.