Privacy Policy
How Luminescence OÜ collects, uses, shares, and protects personal data when you use our website.
Last updated: 27 July 2026
Luminescence OÜ (“we”, “us”, “our”) is the controller of your personal data. We process personal data in accordance with the General Data Protection Regulation (EU) 2016/679 (“GDPR”) and other applicable data protection laws.
This Privacy Policy describes how we collect, use and protect personal data in connection with the use of our website and our business relationships, and what rights data subjects have.
1. Data Controller
The data controller of personal data is:
Luminescence OÜ
Kesk tee 36, Aaviku, Harju County, Estonia
2. Personal Data We Collect
We may process the following personal data:
- Identification data — name, position, company name
- Contact data — email address, phone number
- Technical data — IP address, browser and device information
- Usage data — data about use of the website (e.g. visited pages, sessions)
- Communication data — information sent to us in inquiries and correspondence
We do not intentionally collect or process special categories of personal data (sensitive data), except where legally required.
3. How Personal Data Is Collected
Personal data is collected:
- Via contact forms on the website
- From email and telephone communications
- Via cookies and analytics tools
- In the course of building business relationships and contacts
4. Legal Bases for Processing
Processing of personal data is carried out on the following bases:
- Legitimate interest — running the business, developing services, and B2B communications
- Consent — for non-essential cookies and marketing messages
- Performance or preparation of a contract
- Compliance with a legal obligation
5. Purposes of Processing
Personal data is used:
- To respond to inquiries and provide services
- To manage client and partner relationships
- To develop the website and our services
- To analyse usage statistics and performance
- To share relevant business information (on a valid legal basis)
8. Transfers Outside the EEA
When transferring personal data outside the European Economic Area, we apply appropriate safeguards, including:
- European Commission Standard Contractual Clauses (SCCs)
- Adequacy decisions for countries that ensure an adequate level of protection
9. Data Retention
Personal data is retained only for as long as necessary to manage business relationships, fulfil contractual and legal obligations, and pursue legitimate interests. After the retention period ends, the data is deleted or anonymised.
10. Your Rights Under GDPR
You have the following rights regarding your personal data:
- The right to access your personal data
- The right to request correction of data
- The right to request erasure of data
- The right to restrict or object to processing
- The right to data portability
- The right to withdraw consent at any time
To exercise these rights, please contact us using the details below. We will respond within one month.
You also have the right to lodge a complaint with the Estonian Data Protection Inspectorate (www.aki.ee).
11. Data Security
We apply appropriate technical and organisational security measures to protect personal data from unauthorised processing, disclosure or destruction.
12. Third-Party Links
The website may contain links to third-party websites. We are not responsible for their data protection practices.
13. Changes to This Policy
We may update this Privacy Policy from time to time. The current version is always available on this page. Where changes are significant, we will take appropriate steps to inform you.
If you have any questions about this Privacy Policy or wish to exercise your rights, please contact us.
Contact us