GDPR

Version: 2026-05-12

Updated: 2026-06-19 12:00

ProofLog GDPR & Data Protection Notice

Last Updated: 19 June 2026

1. Introduction

This GDPR and Data Protection Notice explains how ProofLog collects, processes, stores, and protects personal data in accordance with applicable data protection laws, including the European Union General Data Protection Regulation (GDPR).

This Notice applies to all users accessing or using the ProofLog platform.

2. Data Controller

The controller responsible for processing personal data is:

Ideax PR
Kralja Petra Prvog 0
34310 Rača
Serbia

Email: office@ideax.rs

3. Purpose of Processing

ProofLog processes personal data solely for legitimate business purposes related to providing the Service.

Processing activities may include:

account management;
authentication;
asset management;
service history management;
QR code functionality;
maintenance reminders;
service requests;
customer support;
subscription management;
fraud prevention;
security monitoring;
legal compliance.
4. Categories of Personal Data

ProofLog may process:

Account Information
name
email address
company name
user role
account identifiers
Technical Information
IP address
browser type
operating system
device information
login records
access timestamps
Service Information

Information voluntarily submitted by users, including:

service records
maintenance notes
uploaded documents
uploaded photographs
uploaded videos
uploaded audio files
asset information
checklist information
Location Information

If enabled by the account owner or user:

GPS coordinates
approximate location data
location verification status

Location data is collected only after permission is granted by the user’s device or browser.

Signature Information

Where digital signature functionality is used:

signature images
signature metadata
associated service records

ProofLog does not independently verify the identity of any signatory.

Billing Information

ProofLog may process:

payment confirmations
transaction identifiers
subscription status
billing history

ProofLog does not process or store payment card information.

5. Legal Basis for Processing

Where GDPR applies, ProofLog processes personal data based on:

Contract Performance

Processing necessary to provide the Service.

Legitimate Interests

Including:

security monitoring;
fraud prevention;
abuse detection;
platform maintenance;
operational improvements.
Consent

For example:

location verification;
optional communications;
non-essential cookies.

Users may withdraw consent at any time where processing relies on consent.

Legal Obligations

Where required by applicable law.

6. Data Ownership

All service records, uploaded files, documents, images, videos, and related information remain the property of the user or organization that submitted them.

ProofLog acts as a service provider and does not claim ownership of customer data.

7. Data Sharing

ProofLog does not sell personal data.

Personal data may be shared only with:

Infrastructure Providers

Hosting and infrastructure providers required to operate the platform.

Payment Providers

Such as PayPal for processing subscription payments and product purchases.

Professional Advisors

Lawyers, accountants, auditors, or compliance professionals where reasonably necessary.

Government Authorities

Where disclosure is required by:

law;
court order;
regulatory authority;
legally binding request.
8. Abuse Investigations

ProofLog reserves the right to review limited account information when reasonably necessary to:

investigate reports of abuse;
investigate fraud;
investigate criminal activity;
investigate platform misuse;
investigate security incidents.

Such access is limited to authorized personnel.

9. Data Security

ProofLog implements reasonable technical and organizational safeguards including:

encrypted communication (HTTPS);
access controls;
authentication mechanisms;
audit logs;
security monitoring.

No system can guarantee absolute security.

Users acknowledge that internet-based services involve inherent risks.

10. Location Data Disclaimer

Location information is provided solely as an informational aid.

Location data may be affected by:

GPS inaccuracies;
device limitations;
browser limitations;
network conditions;
environmental factors.

ProofLog does not guarantee actual physical presence at any specific location.

11. Accuracy Disclaimer

ProofLog does not verify:

user-entered information;
uploaded photographs;
uploaded documents;
uploaded videos;
uploaded audio files;
location information provided by user devices.

Users remain responsible for the accuracy and legality of submitted information.

12. Data Retention

ProofLog retains data only for as long as reasonably necessary for:

platform operation;
customer support;
legal obligations;
dispute resolution;
security investigations;
preservation of service history.

Retention periods may vary depending on the type of data.

13. Account Deletion Requests

Users may request deletion of personal data by contacting:

office@ideax.rs

ProofLog will review deletion requests in accordance with applicable law.

Certain information may be retained where necessary for:

legal obligations;
accounting requirements;
fraud prevention;
security investigations;
preservation of historical QR records.
14. Archived Accounts

When subscriptions expire, accounts may be archived.

Archived accounts may continue to retain:

service history;
QR code associations;
documentation;
maintenance records;
historical asset information.

This is intended to preserve continuity of historical records and QR functionality.

15. International Transfers

ProofLog operates from Serbia.

Personal data may be processed or stored outside the European Union.

Where required, ProofLog implements reasonable safeguards to protect transferred data.

16. Data Subject Rights

Where GDPR applies, users may have the right to:

Right of Access

Request access to personal data.

Right to Rectification

Correct inaccurate personal data.

Right to Erasure

Request deletion of personal data where legally applicable.

Right to Restrict Processing

Request limitations on certain processing activities.

Right to Data Portability

Request a copy of personal data in a portable format.

Right to Object

Object to certain processing activities.

Right to Withdraw Consent

Withdraw consent where processing relies on consent.

17. Automated Decision Making

ProofLog does not use personal data for automated decision-making that produces legal or similarly significant effects on users.

18. Cookies

ProofLog may use:

essential cookies;
authentication cookies;
security cookies;
preference cookies;
analytics cookies.

Where required by law, users will be asked to provide consent before non-essential cookies are used.

19. Third-Party Services

ProofLog may integrate with third-party providers including:

PayPal
hosting providers
email delivery providers
analytics providers

Such providers operate under their own privacy policies and terms.

20. Complaints

Users located in the European Union may have the right to submit complaints to their local data protection authority.

ProofLog encourages users to contact us first so that concerns may be resolved directly.

21. Changes to This Notice

ProofLog may update this GDPR and Data Protection Notice periodically.

Updated versions will be published on the website.

Continued use of the Service after publication constitutes acceptance of the updated version.

22. Contact Information

For GDPR or data protection inquiries:

ProofLog
Ideax PR
Kralja Petra Prvog 0
34310 Rača
Serbia