Privacy Policy
Effective Date: 10th June 2026
At Corelion, we respect your privacy. This Privacy Policy explains who we are, what personal data we collect through this website, how we use it, who we share it with, and the rights you have under the EU General Data Protection Regulation (Regulation 2016/679, “GDPR”) and the Croatian Act on the Implementation of the General Data Protection Regulation (NN 42/18).
If you have any questions, please contact us at privacy@corelion.hr.
1. Who We Are (Data Controller)
The data controller for personal data collected through this website is:
- Corelion društvo s ograničenom odgovornošću za trgovinu i usluge
- Address: Radnička cesta 37a, 10 000 Zagreb
- OIB: 84166453938
- Court register: Trgovački sud u Zagrebu, MBS: 081211346
- Email: privacy@corelion.hr
- Phone: [+385 …]
2. What We Collect
When you submit our contact form, we collect:
- Your name
- Your email address
- The content of your message
- Your LinkedIn profile URL (if you choose to share it)
Our website also automatically collects limited technical information through standard analytics tools, including browser type, pages visited, date and time of access, referring website, and general geographic location (city / country level).
We do not collect special categories of personal data (e.g. health, religion, political opinion) through this website.
3. Why We Collect It (Purposes and Legal Basis)
We only process your personal data when we have a valid legal basis under Article 6 GDPR.
| Data | Purpose | Legal Basis |
| Contact form data | Respond to your inquiry or application | Art. 6(1)(b) – pre-contractual measures, or Art. 6(1)(f) – legitimate interest |
| Analytics data | Understand site usage and improve the experience | Art. 6(1)(a) – your consent (via the cookie banner) |
4. Who We Share It With
We do not sell or rent your personal data. We may share limited data with the following categories of processors, each bound by a Data Processing Agreement under Art. 28 GDPR:
- Hosting and infrastructure providers
- Email and CRM providers
- Analytics providers
5. International Data Transfers
Some of our service providers (such as analytics tools) are based outside the European Economic Area (EEA). When personal data is transferred outside the EEA, we ensure appropriate safeguards under Chapter V GDPR, including Standard Contractual Clauses (Commission Decision 2021/914) or the EU–U.S. Data Privacy Framework where the recipient is certified.
You may request a copy of the safeguards in place by contacting us at privacy@corelion.hr.
6. How Long We Keep Your Data
We retain personal data only as long as necessary for the purposes outlined above, or as required by law.
| Data | Retention period |
| Contact form inquiries | Up to [12] months after the inquiry is resolved |
| Career applications (unsuccessful) | Up to [6] months after the recruitment process ends, unless you consent to longer retention |
| Analytics data | Up to [14–26] months, depending on tool configuration |
7. Cookies
We use cookies and similar tracking technologies to operate the website and, with your consent, to analyze traffic. You can manage your cookie preferences through the cookie banner shown on your first visit, or through your browser settings.
For full details, see our Cookie Policy.
8. Your Rights Under GDPR
You have the following rights regarding your personal data. We will respond to any valid request within one month of receipt.
- Right of access (Art. 15) — request confirmation that we process your data and a copy of it
- Right to rectification (Art. 16) — correct inaccurate or incomplete data
- Right to erasure (Art. 17) — request deletion (“right to be forgotten”)
- Right to restriction of processing (Art. 18) — limit how we use your data
- Right to data portability (Art. 20) — receive your data in a structured, machine-readable format
- Right to object (Art. 21) — object to processing based on legitimate interest
- Right to withdraw consent (Art. 7) — where processing is based on consent, you may withdraw it at any time
To exercise any of these rights, contact us at privacy@corelion.hr.
Right to lodge a complaint
If you believe we have not handled your personal data in accordance with the law, you have the right to lodge a complaint with the Croatian supervisory authority:
Agencija za zaštitu osobnih podataka (AZOP) Selska cesta 136, 10 000 Zagreb
Email: azop@azop.hr Web: www.azop.hr
9. Security
We take appropriate technical and organizational measures to protect your personal data against unauthorized or unlawful processing, accidental loss, destruction, or damage. No method of transmission over the internet is 100% secure, however, and we cannot guarantee absolute security.
10. Changes to This Policy
We may update this Privacy Policy from time to time. Material changes will be communicated through this page with a revised Effective Date. We encourage you to review this page periodically.
11. Contact
For any questions about this Privacy Policy or how we process your personal data:
Email: privacy@corelion.hr
Postal: Corelion d.o.o., Radnička cesta 37a, 10 000 Zagreb, Croatia