Privacy Policy

Effective Date: 10th June 2026

At Corelion, we respect your privacy. This Privacy Policy explains who we are, what personal data we collect through this website, how we use it, who we share it with, and the rights you have under the EU General Data Protection Regulation (Regulation 2016/679, “GDPR”) and the Croatian Act on the Implementation of the General Data Protection Regulation (NN 42/18).

If you have any questions, please contact us at privacy@corelion.hr.

1. Who We Are (Data Controller)

The data controller for personal data collected through this website is:

  • Corelion društvo s ograničenom odgovornošću za trgovinu i usluge
  • Address: Radnička cesta 37a, 10 000 Zagreb
  • OIB: 84166453938
  • Court register: Trgovački sud u Zagrebu, MBS: 081211346
  • Email: privacy@corelion.hr
  • Phone: [+385 …]

2. What We Collect

When you submit our contact form, we collect:

  • Your name
  • Your email address
  • The content of your message
  • Your LinkedIn profile URL (if you choose to share it)

Our website also automatically collects limited technical information through standard analytics tools, including browser type, pages visited, date and time of access, referring website, and general geographic location (city / country level).

We do not collect special categories of personal data (e.g. health, religion, political opinion) through this website.

3. Why We Collect It (Purposes and Legal Basis)

We only process your personal data when we have a valid legal basis under Article 6 GDPR.

Data Purpose Legal Basis
Contact form data Respond to your inquiry or application Art. 6(1)(b) – pre-contractual measures, or Art. 6(1)(f) – legitimate interest
Analytics data Understand site usage and improve the experience Art. 6(1)(a) – your consent (via the cookie banner)

4. Who We Share It With

We do not sell or rent your personal data. We may share limited data with the following categories of processors, each bound by a Data Processing Agreement under Art. 28 GDPR:

  • Hosting and infrastructure providers
  • Email and CRM providers
  • Analytics providers

5. International Data Transfers

Some of our service providers (such as analytics tools) are based outside the European Economic Area (EEA). When personal data is transferred outside the EEA, we ensure appropriate safeguards under Chapter V GDPR, including Standard Contractual Clauses (Commission Decision 2021/914) or the EU–U.S. Data Privacy Framework where the recipient is certified.
You may request a copy of the safeguards in place by contacting us at privacy@corelion.hr.

6. How Long We Keep Your Data

We retain personal data only as long as necessary for the purposes outlined above, or as required by law.

Data Retention period
Contact form inquiries Up to [12] months after the inquiry is resolved
Career applications (unsuccessful) Up to [6] months after the recruitment process ends, unless you consent to longer retention
Analytics data Up to [14–26] months, depending on tool configuration

7. Cookies

We use cookies and similar tracking technologies to operate the website and, with your consent, to analyze traffic. You can manage your cookie preferences through the cookie banner shown on your first visit, or through your browser settings.
For full details, see our Cookie Policy.

8. Your Rights Under GDPR

You have the following rights regarding your personal data. We will respond to any valid request within one month of receipt.

  • Right of access (Art. 15) — request confirmation that we process your data and a copy of it
  • Right to rectification (Art. 16) — correct inaccurate or incomplete data
  • Right to erasure (Art. 17) — request deletion (“right to be forgotten”)
  • Right to restriction of processing (Art. 18) — limit how we use your data
  • Right to data portability (Art. 20) — receive your data in a structured, machine-readable format
  • Right to object (Art. 21) — object to processing based on legitimate interest
  • Right to withdraw consent (Art. 7) — where processing is based on consent, you may withdraw it at any time

To exercise any of these rights, contact us at privacy@corelion.hr.

Right to lodge a complaint

If you believe we have not handled your personal data in accordance with the law, you have the right to lodge a complaint with the Croatian supervisory authority:

Agencija za zaštitu osobnih podataka (AZOP) Selska cesta 136, 10 000 Zagreb
Email: azop@azop.hr Web: www.azop.hr

9. Security

We take appropriate technical and organizational measures to protect your personal data against unauthorized or unlawful processing, accidental loss, destruction, or damage. No method of transmission over the internet is 100% secure, however, and we cannot guarantee absolute security.

10. Changes to This Policy

We may update this Privacy Policy from time to time. Material changes will be communicated through this page with a revised Effective Date. We encourage you to review this page periodically.

11. Contact

For any questions about this Privacy Policy or how we process your personal data:

Email: privacy@corelion.hr
Postal: Corelion d.o.o., Radnička cesta 37a, 10 000 Zagreb, Croatia