Skip to content
Brainic

Brainic

Privacy Policy

Privacy policy and personal data protection (GDPR) for brainic.io.

1. Introduction

This policy describes how Brainic (hereinafter referred to as the "Company", "we", or "Brainic"), based in Brașov, Romania, collects, uses, and protects your personal data in accordance with the General Data Protection Regulation (GDPR — EU Regulation 2016/679).

2. Data Controller

The controller of personal data is Brainic, based in Brașov, Romania. For any questions regarding the processing of personal data, you can contact us at: contact@brainic.io

3. Data We Collect

3.1 Contact Form

When you submit the contact form, we collect:

  • Name — to address you personally;
  • Email address — to respond to your inquiry;
  • Company (optional) — to understand the context of your inquiry;
  • Message — the content of your inquiry.

3.2 Technical Data

When you access the Website, our servers may automatically collect:

  • IP address;
  • browser type and version;
  • operating system;
  • referrer page;
  • date and time of access.

This data is used exclusively to ensure the operation and security of the Website.

3.3 Cloudflare, Turnstile and anti-abuse protection

We use Cloudflare for security, anti-abuse protection and website delivery, including Cloudflare Turnstile on the contact form. These services may process technical data such as IP address, browser information, security signals and anti-spam verification results, in accordance with the Cloudflare privacy policy.

3.4 Analytics, marketing and cookie consent

The Website uses services for analytics, conversion measurement, experience improvement and consent management. These services are provided by third parties such as Google, Microsoft Clarity, LinkedIn, CookieYes and Cloudflare.

Depending on consent, browser configuration and provider settings, these services may collect information such as:

  • pages visited, events and interactions with buttons or forms;
  • traffic source, campaigns and conversion parameters;
  • technical information about device, browser, language, resolution and session;
  • pseudonymous online identifiers used for analytics, remarketing, conversion attribution or abuse prevention.

4. Purpose of Data Processing

Personal data is processed for:

  • Responding to inquiries — processing and responding to messages sent through the contact form;
  • Security — protecting the Website against abuse and unauthorized access;
  • Service improvement — understanding how the Website is used;
  • Analytics and marketing — measuring traffic, campaign performance, conversions and interactions with the Website;
  • Consent management — displaying and respecting preferences for cookies and non-essential scripts.

5. Legal Basis for Processing

  • Your consent (Art. 6(1)(a) GDPR) — given by checking the consent box in the contact form;
  • Your consent for cookies and similar technologies (Art. 6(1)(a) GDPR and applicable ePrivacy rules) — for analytics, marketing, conversions and non-essential scripts;
  • Legitimate interest of the Company (Art. 6(1)(f) GDPR) — for the security and operation of the Website.

6. Data Retention Period

Data from the contact form is retained for the period necessary to resolve the inquiry, but no longer than 12 months from the last interaction. Technical data (server logs) is retained for a maximum of 90 days.

7. Data Recipients

Personal data may be shared with:

  • Cloudflare — for hosting and anti-spam protection (servers are located in the EU/EEA);
  • Email providers — for transmitting contact messages;
  • Google — for Google Tag Manager, Google Analytics and Google tag;
  • Microsoft Clarity — for behavioral analytics and website experience improvement;
  • LinkedIn — for campaign and conversion measurement;
  • CookieYes — for cookie consent management.

We do not sell, rent, or transfer personal data to third parties for marketing purposes.

8. International Transfers

Data may be processed and stored on servers within the European Union or in jurisdictions that ensure an adequate level of protection. Some third-party services, such as Google, Microsoft, LinkedIn, Cloudflare or CookieYes, may involve transfers outside the EU/EEA. In these cases, transfers should rely on appropriate legal mechanisms such as adequacy decisions or standard contractual clauses.

9. Your Rights

Under the GDPR, you have the right to:

  • Access — request a copy of the personal data we hold;
  • Rectification — request correction of inaccurate data;
  • Erasure — request deletion of personal data;
  • Restriction of processing — request limitation of processing;
  • Data portability — receive data in a structured format;
  • Object — object to processing based on legitimate interest;
  • Withdraw consent — at any time, without affecting the lawfulness of prior processing.

To exercise these rights, contact us at: contact@brainic.io

10. Complaints

If you believe that the processing of personal data violates the GDPR, you have the right to file a complaint with the National Supervisory Authority for Personal Data Processing (ANSPDCP): www.dataprotection.ro

11. Cookies and Similar Technologies

The brainic.io website uses cookies and similar technologies for security, consent management, analytics and marketing/conversions.

Cookies and similar technologies may be essential or optional. Essential cookies are required for security, website operation or storing consent preferences. Analytics and marketing cookies are used only according to the preferences expressed in the consent banner, where the banner is displayed.

Examples of cookies and services used or that may be used on the Website:

Cookie / technology Provider Purpose Category Typical duration
cookieyes-consent CookieYes Stores cookie consent preferences. Essential / preferences up to approximately 12 months
cf_clearance Cloudflare Validates legitimate traffic and passes security checks when Cloudflare challenge protection is triggered. Essential / security up to approximately 12 months
Google Analytics identifiers, for example _ga and related cookies Google Measures traffic and interactions on the Website. Analytics up to approximately 2 years, depending on configuration
Microsoft Clarity identifiers, for example _clck and _clsk Microsoft Behavioral analytics, heatmaps and session insights. Analytics / performance from session duration up to approximately 12 months
LinkedIn identifiers, for example bcookie and related advertising cookies LinkedIn Campaign attribution and conversion measurement. Marketing varies depending on provider configuration

The Website may load technologies from the following providers:

Provider Common domains Purpose
Cloudflare brainic.io, challenges.cloudflare.com, static.cloudflareinsights.com security, anti-abuse protection, Turnstile, web analytics, website delivery
CookieYes cdn-cookieyes.com, log.cookieyes.com cookie consent management
Google googletagmanager.com, google-analytics.com tag management and analytics
Microsoft Clarity clarity.ms behavioral analytics and website experience improvement
LinkedIn snap.licdn.com, ads.linkedin.com campaign and conversion measurement

You can manage cookies from your browser settings and, when the consent banner is displayed, through the options provided there.

12. Policy Changes

Brainic reserves the right to update this policy. Any changes will be published on this page with the date of the last update.


Last updated: May 2026