1. Introduction
At Storydockindexx (accessible via storydockindexx.shop), protecting client and visitor data is standard practice. We restrict database storage to the minimum required for rendering layout configurations and tracking user preference profiles. This document delineates how we handle, protect, and respect your data in strict compliance with the General Data Protection Regulation (GDPR), the ePrivacy Directive, and the California Consumer Privacy Act (CCPA).
2. Data Collection Parameters & Mechanisms
Our editorial system does not feature user authentication databases, account registrations, newsletter subscriptions, or billing interfaces. Collected data categories are strictly limited to:
- Preference Profiles: Browser cookies recording selection settings (for example, keeping standard vs. dark cartographic viewports active, or caching cookie consent states).
- Technical Meta Logs: IP address details, browser types, language preferences, operating systems, and timestamp tracking for automated security auditing and DDoS prevention.
- Inquiry Records: Contact details, names, classification preferences, and detailed textual explanations entered voluntarily inside the editorial feedback form.
3. Legal Basis and Purpose of Processing
We handle data under clear lawful bases as defined under Article 6 of the GDPR:
- Legitimate Interests: To maintain network stability, prevent malicious spam submissions, and evaluate system rendering capabilities across differing user environments.
- Consent: To run non-essential analytical scripts that gauge the spatial usability of our cartographic node maps.
- Contractual / Pre-contractual Responsibilities: To process, evaluate, and reply to queries submitted voluntarily via the feedback system.
No details are ever sold, commercialized, rented, shared with tracking networks, or distributed to automated programmatic advertising brokers.
4. Data Retention Framework
We enforce strict storage limitation parameters to guarantee your info is not retained longer than necessary:
- Feedback Inquiries: Erased or fully anonymized within ninety (90) calendar days from receipt, unless required for ongoing legal documentation.
- Server Security Logs: Automatically rotated and hard-purged after fourteen (14) days.
- Analytical Caches: Fully aggregated to preserve statistical anonymity; no individual browser paths are retained.
5. Security Protocols & Infrastructure
Our hosting infrastructure features active transport encryption (TLS 1.3), hardened secure servers located in state-of-the-art facilities in Europe, strict firewalls, and limited logical access privileges. Our development team follows strict security practices to ensure data integrity.
6. Your GDPR, UK GDPR, and CCPA Rights
Depending on your geographical location, you are legally entitled to specific data protection rights. Visitors retain absolute rights to:
- Right to Access & Portability: Obtain a structured copy of any information we hold about you.
- Right to Rectification: Request changes to any erroneous data fields.
- Right to Erasure ('Right to be Forgotten'): Complete removal of your contact correspondence from our temporary mail databases.
- Right to Restriction & Objection: Challenge processing operations predicated on our legitimate business interests.
To execute any of these rights, please proceed through our standard contact interface or reach out to our Finnish Data Protection Representative via our registered Helsinki headquarters.