Privacy Notice

In short: We process personal data in two places. The data you enter in the audit request form (name, company, website, e-mail, phone, message) is used to answer your enquiry, and analytics and marketing cookies are only set if you agree to them in the cookie bar. Consent can be withdrawn at any time, and you can request access to or deletion of your data at info@rootcr.com.

Effective from 20 August 2026.

Who processes your data?

RootCore LLC, 1111B S Governors Ave # 59361, Dover, DE 19904, United States. For data protection matters: info@rootcr.com.

For visitors in the European Union we process data in line with the General Data Protection Regulation (GDPR).

What data, why, and for how long?

DataPurposeLegal basisRetention
Audit request: name, company, website, e-mail, phone, area of interest, messageAnswering the enquiry, preparing a quoteConsent (GDPR Art. 6(1)(a))24 months, or until consent is withdrawn
Technical data of the request: IP address, timestampAbuse and spam filtering, proof of submissionLegitimate interest (Art. 6(1)(f))12 months
Client relationship: contract and billing dataPerformance of a contract, legal obligationContract (Art. 6(1)(b)), legal obligation (c)As required by law
Analytics cookie (Google Analytics)Traffic measurement, improving the siteConsentUp to 14 months
Marketing cookie (Meta Pixel)Advertising measurementConsentUp to 13 months
Attack protection (Cloudflare, Turnstile)Protecting the site and the formLegitimate interestPer provider settings, typically 30 days

If you do not consent to analytics and marketing cookies, every function of the site still works.

Cookies

  • Necessary. Required to run the site and protect the form (Cloudflare technical cookies and the rc_consent cookie that records your cookie decision, which lives for one year). These may be set without consent.
  • Analytics. Google Analytics (Google Ireland Limited). Loaded only after consent. IP addresses are anonymised.
  • Marketing. Meta Pixel (Meta Platforms Ireland Limited). Loaded only after consent.

You can change your decision at any time with the Cookie settings button in the footer.

Who has access to your data?

We do not sell your data and do not pass it on for advertising. We use the following processors to run the service:

Category of recipientWhat they doWhere
Hosting and infrastructure providerServing the site and the form, storing the dataEuropean Union
Content delivery and attack protection providerAvailability, abuse filtering, form verificationUnited States
E-mail providerDelivering and answering your enquiryUnited States
Internal notification channelInstant notice of a new enquiry, into our own private channelUnited States
Analytics provider (Google Analytics)Anonymous traffic measurement — only with consentEuropean Union / United States
Advertising measurement provider (Meta Pixel)Advertising measurement — only with consentEuropean Union / United States
Payment provider (Stripe)Payment processing for subscriptionsUnited States

We name the analytics and payment providers because you have to make a decision about the cookies they set. For our other suppliers the law requires the category of recipient to be stated; we provide the specific names in writing on request — for security reasons — at info@rootcr.com.

For transfers to the United States, the safeguards are the standard contractual clauses agreed with the providers and, where applicable, certification under the EU–US Data Privacy Framework.

Your rights

  • Information and access: you can ask us what data of yours we process.
  • Rectification: you can ask us to correct inaccurate data.
  • Erasure: you can ask us to delete your data where no other legal basis requires us to keep it.
  • Restriction and objection: you can ask us to restrict processing or object to processing based on legitimate interest.
  • Portability: you can ask for your data in a machine-readable form.
  • Withdrawal of consent: at any time, with effect for the future.

Send your request to info@rootcr.com; we reply within 30 days.

Complaints

If you believe the processing is unlawful, you can complain to a supervisory authority. For visitors in Hungary this is the Hungarian National Authority for Data Protection and Freedom of Information (NAIH), 1055 Budapest, Falk Miksa utca 9–11 — naih.hu. Visitors in other EU member states may contact their local authority.

Security

Data is received over an encrypted connection (HTTPS), stored with restricted access, and reachable only by those who need it to answer your enquiry. The form is protected against automated abuse by a verification check.

Changes

If this notice changes, we update the effective date above. We announce material changes on the site.

Updated: 20 August 2026