GDPR Data Protection Notice

Last updated: 26.03.2026

This GDPR Data Protection Notice explains how BLACK MOUNTAIN BUSINESS CLUB ASSOCIATION (“the Association”, “we”, “our”, or “us”) collects, uses, and protects personal data in accordance with the General Data Protection Regulation (EU) 2016/679 (“GDPR”).

1. Data Controller

The data controller responsible for your personal data is:

BLACK MOUNTAIN BUSINESS CLUB ASSOCIATION
Website: www.black-mountain.ro
Email: office@black-mountain.ro

2. Categories of Personal Data

We may collect and process the following categories of personal data:

  • Identification data (name, surname)

  • Contact data (email address, phone number)

  • Professional data (company, position – if applicable)

  • Communication data (messages, inquiries)

  • Technical data (IP address, browser type, device information)

  • Usage data (interaction with website pages)

3. Legal Basis for Processing

We process personal data based on one or more of the following legal grounds:

  • Consent (Article 6(1)(a) GDPR)

  • Contractual necessity (Article 6(1)(b))

  • Legal obligation (Article 6(1)(c))

  • Legitimate interest (Article 6(1)(f))

4. Purpose of Processing

Personal data is processed for the following purposes:

  • Responding to inquiries and communication

  • Managing participation in events or activities

  • Providing information about the Association

  • Improving website functionality and user experience

  • Ensuring website security

  • Compliance with legal obligations

5. Data Retention

We retain personal data only for as long as necessary to fulfill the purposes for which it was collected, including legal, accounting, or reporting requirements.

6. Data Sharing and Transfers

We may share personal data with:

  • IT and hosting service providers

  • Professional advisors (legal, accounting)

  • Public authorities, when required by law

We do not transfer personal data outside the European Economic Area (EEA) unless adequate safeguards are in place.

7. Data Security

We implement appropriate technical and organizational measures to ensure a level of security appropriate to the risk, including:

  • Data encryption (where applicable)

  • Access control measures

  • Secure data storage systems

8. Your Rights Under GDPR

You have the following rights:

  • Right of access (Article 15)

  • Right to rectification (Article 16)

  • Right to erasure (“right to be forgotten”) (Article 17)

  • Right to restriction of processing (Article 18)

  • Right to data portability (Article 20)

  • Right to object (Article 21)

  • Right to withdraw consent at any time

To exercise your rights, contact us at: [insert email]

9. Complaints

If you believe your rights have been violated, you have the right to lodge a complaint with a supervisory authority, particularly in your country of residence.

In Romania, the supervisory authority is:
National Supervisory Authority for Personal Data Processing (ANSPDCP)

10. Cookies and Tracking Technologies

We use cookies and similar technologies to:

  • Ensure proper website functionality

  • Analyze traffic and usage

  • Improve user experience

For more details, please refer to our Cookie Policy.

11. Automated Decision-Making

We do not use automated decision-making or profiling that produces legal or significant effects on users.

12. Changes to This Notice

We reserve the right to update this GDPR Notice at any time. Any changes will be published on this page.

13. Contact

For any questions regarding this notice or data protection matters:

BLACK MOUNTAIN BUSINESS CLUB ASSOCIATION
Email: office@black-mountain.ro
Website: www.black-mountain.ro