Privacy Policy
Last updated: 16 August 2026
Company: Mishigo OÜ
Registration Number: 17314406
Address: Sepapaja tn 6, 15551 Tallinn, Harju Maakond, Estonia
Email: info@mishigo.co
1. Introduction
This Privacy Policy explains how Mishigo OÜ ("we", "us", "our") collects, uses, stores, and protects your personal data when you visit our website (mishigo.co) or use our services.
We comply with the EU General Data Protection Regulation (GDPR) and applicable Estonian laws.
2. Personal Data We Collect
We may process the following categories of personal data:
a) Data you provide directly
- Name
- Email address
- Phone number
- Company name
- Any data entered into contact forms
- Billing details (if applicable)
b) Automatically collected data
Collected through our host's server logs. We run no analytics tools and set no tracking cookies:
- IP address
- Browser type
- Pages visited
- Time spent on the website
- Device type
c) Service-related data
If you engage us for consulting or development services, we may process additional client-specific data, strictly necessary for contract performance.
3. Legal Basis for Processing
We process personal data on the following GDPR bases:
- Article 6(1)(a): Consent
For marketing opt-ins. We ask for no other consent, because we run no analytics or tracking cookies. - Article 6(1)(b): Contract
When processing data needed to deliver services. - Article 6(1)(f): Legitimate Interest
Site security, fraud prevention, service improvement.
4. How We Use Personal Data
We use your data to:
- Respond to inquiries
- Provide software and consulting services
- Maintain business communication
- Improve website performance and user experience
- Ensure website security
- Produce non-identifying visitor counts from our host's traffic statistics
We do not sell your personal data.
5. Data Sharing
We may share data with:
- Infrastructure providers (e.g., Cloudflare, secure cloud hosting)
- Communication tools (email services, ticketing tools)
- Payment providers (if applicable)
- Legal authorities if required by law
All processors operate under GDPR-compliant data processing agreements.
6. International Transfers
If data is transferred outside the EU, it is protected via:
- EU Standard Contractual Clauses (SCCs)
- Other lawful safeguards approved under GDPR
7. Data Retention
We retain personal data only as long as necessary for the purposes collected:
- Contact inquiries: up to 12 months
- Client project data: during the engagement + mandatory legal periods
- Server traffic statistics: retained by our host, Cloudflare, and not stored separately by us
8. Your Rights (GDPR)
You have the right to:
- • Access your data
- • Correct inaccurate data
- • Request deletion
- • Restrict processing
- • Object to processing
- • Receive your data (data portability)
- • Withdraw consent at any time
To exercise your rights, email: info@mishigo.co
9. Security
We use technical and organizational measures to secure data, including:
- Encryption
- Access restrictions
- Secure hosting (Cloudflare and similar providers)
- Regular security monitoring