Last Updated: 03 February 2026

This GDPR Privacy Notice explains how Goluoğlu (“we”, “us”, “our”) processes personal data of individuals located in the European Economic Area (“EEA”), the United Kingdom (“UK”), and Switzerland, in accordance with the General Data Protection Regulation (EU) 2016/679 (“GDPR”) and applicable local data protection laws.

1. Data Controller

Data Controller: Goluoğlu

Address:Stroombaan 4 (Unit 1.01) 1181 VX Amstelveen

Email: info@goluoglu.nl

Phone: +31 6 255 31 522

2. Categories of Personal Data We Process

  • Identity and Contact Data: name, surname, email address, phone number, company name, title
  • Communication Data: inquiry details, message content, attachments, correspondence
  • Technical Data: IP address, device identifiers, browser type, operating system
  • Usage Data: pages visited, time spent on pages, referral source, interaction data
  • Cookie and Tracking Data: online identifiers and cookie data (see Cookie Policy)

3. Purposes of Processing

  • To respond to inquiries and communicate with you
  • To provide legal services and consultancy upon request
  • To manage client relationships and administrative processes
  • To maintain, secure, and improve the website and services
  • To detect and prevent fraud, misuse, and unauthorized access
  • To comply with legal obligations and regulatory requirements

4. Legal Bases for Processing (GDPR Article 6)

We process personal data under one or more of the following legal bases:

  • Consent (Article 6(1)(a)) – where required (e.g., certain cookies/marketing)
  • Contract (Article 6(1)(b)) – to take steps at your request prior to entering into a contract or to perform a contract
  • Legal Obligation (Article 6(1)(c)) – to comply with applicable legal requirements
  • Legitimate Interests (Article 6(1)(f)) – for our legitimate interests (e.g., website security, service improvement), provided your interests and fundamental rights do not override those interests

5. Special Category Data

We do not intentionally request special category personal data (e.g., health data, political opinions). If you voluntarily provide such data, it will be processed only where lawful and strictly necessary, and with appropriate safeguards.

6. Data Recipients

We may share personal data with:

  • IT and hosting service providers supporting the operation of our website and systems
  • Professional advisors (e.g., auditors, consultants) subject to confidentiality obligations
  • Competent authorities where required by law or legal process

7. International Transfers

Your personal data may be transferred to and processed in countries outside the EEA/UK/Switzerland where our service providers or partners operate. Where such transfers occur, we implement appropriate safeguards in accordance with GDPR, such as:

  • European Commission adequacy decisions (where applicable)
  • Standard Contractual Clauses (SCCs)
  • Additional technical and organizational measures where necessary

8. Data Retention

We retain personal data only for as long as necessary to achieve the purposes described in this notice and to comply with legal, regulatory, or professional obligations. After the retention period ends, personal data will be deleted or anonymized in a secure manner.

9. Your Rights Under GDPR

Subject to applicable conditions and exceptions, you have the right to:

  • Access your personal data (Article 15)
  • Rectification of inaccurate or incomplete data (Article 16)
  • Erasure (“right to be forgotten”) (Article 17)
  • Restriction of processing (Article 18)
  • Data portability (Article 20)
  • Object to processing based on legitimate interests (Article 21)
  • Withdraw consent at any time where processing is based on consent (Article 7(3))
  • Lodge a complaint with a supervisory authority (Article 77)

10. Right to Object (Direct Marketing)

Where we process personal data for direct marketing purposes, you have the right to object at any time. If you object, we will stop processing your personal data for such purposes.

11. Automated Decision-Making

We do not carry out automated decision-making, including profiling, that produces legal effects or similarly significant impacts on individuals.

12. Cookies

We use cookies and similar technologies to operate the website, enhance functionality, and analyze usage. For more information and to manage your preferences, please review our Cookie Policy.

13. Security Measures

We implement appropriate technical and organizational measures to protect personal data against unauthorized access, accidental loss, alteration, disclosure, or destruction. However, no method of transmission over the internet is fully secure.

14. Updates to This Notice

We may update this GDPR Privacy Notice from time to time. The latest version will be published on this page with the updated “Last Updated” date.

15. Contact

If you have questions about this GDPR Privacy Notice or wish to exercise your rights, please contact us:

Email: info@goluoglu.nl

Phone: +31 6 255 31 522

Address:Stroombaan 4 (Unit 1.01) 1181 VX Amstelveen