Privacy policy

GENERAL INFORMATION

Regulation 2016/679 on the protection of natural persons with regard to the processing of personal data and on the free movement of such data (General Data Protection Regulation, hereinafter – GDPR, Regulation, or RGPD) was adopted by the European Parliament and the Council of the European Union on April 27, 2016, and its provisions have been directly applicable since May 25, 2018. This Regulation expressly repeals Directive 95/46/EC, thereby also replacing the provisions of Law No. 677/2001 (now repealed).

The Regulation is directly applicable in all Member States, protecting the rights of all natural persons within the territory of the European Union. From a substantive standpoint, the Regulation applies to all controllers processing personal data. The Regulation does not apply to the processing of personal data relating to legal persons and, in particular, undertakings with legal personality, including the name and type of the legal person and the contact details of the legal person.

 

Personal data is defined as any information relating to an identified or identifiable natural person (“data subject”); an identifiable natural person is one who can be identified, directly or indirectly, in particular by reference to an identifier such as a name, an identification number, location data, an online identifier, or to one or more factors specific to the physical, physiological, genetic, mental, economic, cultural, or social identity of that natural person.

 

The processing of personal data means any operation or set of operations performed on personal data or on sets of personal data, whether or not by automated means, such as collection, recording, organization, structuring, storage, adaptation or alteration, retrieval, consultation, use, disclosure by transmission, dissemination or otherwise making available, alignment or combination, restriction, erasure, or destruction.

 

DATA CONTROLLER

In accordance with Article 4(7) of the Regulation, which defines the term “controller” as the natural or legal person, public authority, agency, or other body that, alone or jointly with others, determines the purposes and means of the processing of personal data, this Privacy Policy is drafted and applied by:

 

WHAT DATA WE COLLECT

The Cluj Cultural Center collects personal data only as necessary to deliver requested services, in compliance with legal, fair, and transparent practices. Data is collected through:

  • Contact forms available on the website (data provided voluntarily by users);
  • Newsletter subscription forms via the Mailchimp platform;
  • Cookies and similar technologies;
  • Server log files.

 

Data collected via contact forms

Data collected via the contact form may include: first and last name, email address, phone number (optional), message, and relevant professional information (e.g., occupation, institution).

At times, the contact form redirects to https://show.forms.app/, which may use cookies or pixels to process data and enhance user experience. Please review the privacy policy of that platform.

 

Data collected via the newsletter (Mailchimp)

Our website offers the option to subscribe to the newsletter. The data collected through this service includes: email address, first name, last name, and explicit consent to receive the newsletter.

The newsletter is managed through the Mailchimp platform, which is certified in accordance with legal mechanisms for international data transfer (standard contractual clauses). The data provided when subscribing to the newsletter is used exclusively to send periodic communications related to the activities of the Cluj Cultural Center.

You can unsubscribe at any time using the link in each email or by contacting us at office@cccluj.ro.

Given that the Regulation primarily prohibits “the processing of personal data revealing racial or ethnic origin, political opinions, religious or philosophical beliefs, or trade union membership, and the processing of genetic data, biometric data for the unique identification of a natural person, data concerning health, or data concerning a natural person’s sex life or sexual orientation” (pursuant to Article 9(1)), the situations in which the processing of such data is permitted are then established:

a. the data subject has given explicit consent;

b. processing is necessary for the purposes of fulfilling the obligations and exercising specific rights of the controller or of the data subject in the field of employment, social security, and social protection

c. processing is necessary to protect the vital interests of the data subject or of another natural person, where the data subject is physically or legally incapable of giving consent;

d. the processing is carried out in the course of their legitimate activities and with appropriate safeguards by a foundation, an association, or any other non-profit body with political, philosophical, religious, or trade union aims, provided that the processing relates solely to members or former members of that body or to persons with whom it has regular contact in connection with its purposes, and that the personal data are not disclosed to third parties without the consent of the data subjects;

e. the processing relates to personal data which have been manifestly made public by the data subject;

f. the processing is necessary for the establishment, exercise, or defense of a legal claim in court or whenever courts act in the exercise of their judicial functions;

g. processing is necessary for reasons of substantial public interest, based on Union or national law, which is proportionate to the objective pursued, respects the essence of the right to data protection, and provides for appropriate and specific measures to safeguard the fundamental rights and interests of the data subject;

h. processing is necessary for purposes related to preventive or occupational medicine, the assessment of an employee’s working capacity, the establishment of a medical diagnosis, the provision of medical or social care or treatment, or the management of health or social care systems and services, pursuant to Union or national law or pursuant to a contract with a healthcare professional and subject to compliance with the conditions and safeguards set out in the Regulation;

i. the processing is necessary for reasons of public interest in the area of public health, such as protection against serious cross-border threats to health or ensuring high standards of quality and safety of healthcare and of medicinal products or medical devices, pursuant to Union or national law, which provides for appropriate and specific measures to safeguard the rights and freedoms of the data subject, in particular professional secrecy; or

j. the processing is necessary for archiving purposes in the public interest, for scientific or historical research purposes, or for statistical purposes, is proportionate to the objective pursued, respects the essence of the right to data protection, and provides for appropriate and specific measures to protect the fundamental rights and interests of the data subject.

 

LEGAL BASIS FOR PROCESSING

The processing of personal data is carried out on the basis of the following legal grounds provided for in Regulation (EU) 2016/679 (GDPR):

  • Art. 6(1)(a) – Consent of the data subject (for newsletter subscriptions, non-essential cookies);
  • Art. 6(1)(b) – Performance of a contract or pre-contractual measures at the data subject’s request (for information, requests for collaboration);
  • Art. 6(1)(c) – Compliance with a legal obligation (where legislation requires data retention);
  • Art. 6(1)(f) – The legitimate interests of the controller (for website security and fraud prevention).

 

PURPOSE OF PROCESSING THE COLLECTED DATA

Some of the data collected on this site is used for:

  • Providing the services we offer through our website (for example, to resolve any issues related to our projects, to provide support services, etc.)
  • Ensuring the website functions optimally and improves through statistical and analytical purposes. We may collect feedback on your browsing experience and invite you to complete surveys or similar forms.
  • Online advertising and promotional activities. You may request at any time, through the means described in this document, that we cease processing your personal data for marketing purposes, and we will comply with your request as soon as possible.
  • Periodic user updates – We aim to keep you informed about our activities by providing free materials and current information about our projects and events. With your prior consent, we may send messages containing general or specific information, offers, promotions, market research, or opinion polls. You may withdraw your consent at any time.
  • To protect our legitimate interests. We may use or share information to protect our rights and business. This includes measures to protect our website and users from cyberattacks, prevent and detect fraud (including sharing information with public authorities), and manage other risks.

The processing of personal data is carried out in accordance with the provisions of the General Data Protection Regulation, based both on the data subject’s consent and on the need to fulfill contractual obligations or to pursue the controller’s legitimate interests (unless the data subject’s interests or fundamental rights and freedoms, which require the protection of personal data, prevail, particularly when the data subject is a child).

 

Processing of Minors’ Personal Data

The services offered through this website are intended exclusively for persons who have reached the age of 16. Pursuant to Article 8 of the GDPR, consent to the processing of personal data in the context of information society services is valid for individuals who have reached the age of 16. For individuals under the age of 16, processing is lawful only if and to the extent that consent is given or authorized by the holder of parental responsibility.

 

The operator of this website does not intentionally collect personal data from individuals under the age of 16 and does not sell products to individuals under this age without the consent of a parent or legal guardian. If you are a minor under the age of 16, please do not use this website and do not provide us with personal data without the consent and supervision of a parent or legal guardian.

 

If you become aware that a minor under 16 has provided us with personal data without parental or guardian consent, please contact us at office@cccluj.ro. We will delete this data as soon as possible.

 

OBTAINING CONSENT

For the processing of personal data to be lawful, the GDPR requires that it be based on a legitimate ground, such as the performance or conclusion of a contract, compliance with a legal obligation, or valid consent previously given by the data subject. In the latter case, the controller must be able to demonstrate that the data subject has given consent to such processing. Consent given under Directive 95/46/EC remains valid if it meets the conditions set forth in the GDPR.

Consent must be given by a statement or by a clear affirmative action constituting a freely given, specific, informed, and unambiguous indication of the data subject’s agreement to the processing of their personal data. If the data subject’s consent is given in the context of a statement, in electronic or written form, that also addresses other matters, the request for consent must be presented in a form that clearly distinguishes it from the other matters, and may even be provided by checking a box.

For processing of personal data to be lawful, the GDPR requires that it be carried out on a legitimate ground, such as the performance or conclusion of a contract, the fulfillment of a legal obligation, or valid consent previously expressed by the data subject. In the latter case, the controller must be able to demonstrate that the data subject has given consent to such processing. Consent given under Directive 95/46/EC remains valid if it meets the conditions set forth in the GDPR.

 

DATA RETENTION PERIOD

Personal data is stored for as long as necessary to fulfill the purposes for which it was collected or for as long as required by applicable law. In the absence of specific legal requirements, data is stored:

  • Contact data (forms): up to 3 years from the last interaction;
  • Newsletter data: for the duration of the subscription, and in accordance with Mailchimp’s policy after unsubscription;
  • Server log files: in accordance with internal security policies, generally for a maximum of 12 months;
  • Cookies: in accordance with the specific duration of each cookie (detailed in the following sections).

We periodically review collected data to determine if retention is necessary for the stated purposes, legitimate interests, or legal obligations. After the specified periods, data will be deleted or anonymized unless a legal requirement or other basis justifies longer retention.

 

DISCLOSURE OF PERSONAL DATA TO OTHER RECIPIENTS

The Controller discloses personal data (only if required and strictly to the extent necessary) to public entities and authorities, including, by way of example: ANAF (National Agency for Fiscal Administration), ISU (Inspectorate for Emergency Situations), Police, Prosecutors’ Offices, Courts, City Hall, Local Council, County Council, Ministries, ANPC (National Authority for Consumer Protection), ANSPDCP (National Supervisory Authority for Personal Data Processing) in the exercise of its supervisory and control duties, accountants, auditors, lawyers, and other external consultants acting as authorized representatives or independent operators, as applicable.

 

We do not transfer data to third countries or international organizations unless required by an existing collaboration agreement.

 

Based on existing collaborations and to perform our activities to high standards, we will share the provided data with:

•our partners and collaborators (billing services, marketing services, web hosting services, etc.),

•as well as to other online service providers (various tools and plugins), as mentioned in this Policy.

 

RIGHTS OF DATA SUBJECTS

Your rights regarding personal data and the means to exercise them are: Right to information, Right of access, Right to rectification, Right to erasure, Right to restriction of processing, Right to data portability, Right to object, The right not to be subject to a decision based solely on automated processing, The right to file a complaint and to bring the matter before the courts, The right to withdraw consent.

  • Right to information—you may request information regarding the processing of your personal data, the identity of the controller and its representative, or the recipients of your data;
  • Right of access – you may obtain from the controller confirmation as to whether or not personal data concerning you is being processed and, if so, access to such data and the following information: the purposes of the processing; the categories of personal data concerned; the recipients or categories of recipients to whom the personal data have been or will be disclosed, in particular recipients in third countries or international organizations; where possible, the period for which the personal data are expected to be stored or, if this is not possible, the criteria used to determine that period; the right to request the controller to rectify or erase the personal data or to restrict the processing of the personal data, or the right to object to the processing, etc.
  • Right to rectification—you may correct inaccurate personal data or have it completed;
  • Right to erasure – you may request the erasure of your data if the processing was unlawful or in other cases provided for by law;
  • Right to restriction of processing—you may request the restriction of processing if you contest the accuracy of the data, as well as in other cases provided by law;
  • Right to data portability – under certain conditions, you may receive the personal data you have provided to us in a machine-readable format, or you may request that such data be transmitted to another controller;
  • Right to object—you may object, in particular, to data processing based on the controller’s legitimate interest;
  • The right not to be subject to a decision based solely on automated processing of data—you may request and obtain human intervention regarding such processing or express your own opinion regarding this type of processing;
  • The right to file a complaint and to bring a legal action—you may file a complaint regarding the manner in which your personal data is processed with the National Supervisory Authority for Personal Data Processing and/or bring a legal action to ensure your rights are respected;
  • Right to withdraw consent – in cases where processing is based on your consent, you may withdraw it at any time. Withdrawal of consent will only take effect for the future; processing carried out prior to withdrawal remains valid.

 

To exercise any of these rights, please contact us at office@cccluj.ro. Your request does not require a specific format, but should include your full name, preferred contact information, a clear description of the right you wish to exercise, and, if possible, a copy of an identification document to verify your identity.

 

We will respond to your request within 30 calendar days of receipt. In particularly complex cases or in the event of a high volume of simultaneous requests, this period may be extended by an additional 60 days, provided that we inform you of this extension and the reasons for it within 30 days of receiving the request, in accordance with Article 12(3) of the GDPR.

 

The response to your request is free of charge. If your requests are manifestly unfounded or excessive (particularly due to their repetitive nature), we may either charge a reasonable fee taking into account administrative costs or refuse to comply with the request, providing justification for the refusal and informing you of your right to file a complaint with the ANSPDCP.

 

If you are not satisfied with the response you received or if you believe your rights have been violated, you have the right to file a complaint with: The National Supervisory Authority for Personal Data Processing (ANSPDCP) 28-30 General Gheorghe Magheru Blvd., Sector 1, Bucharest Phone: +40.318.059.211 Email:anspdcp@dataprotection.ro Website:www.dataprotection.ro

 

You also have the right to bring a claim before the competent courts in Romania or in the EU member state where you have your habitual residence.

 

COOKIE POLICY

What are cookies?

Cookies are small text files stored on your device (computer, phone, tablet) when you visit a website. They allow the website to recognize you on your next visit, remember your selected preferences, and provide a personalized experience.

 

Categories of cookies used

The websites of the Cluj Cultural Center may use the following categories of cookies:

  • Strictly necessary cookies – essential for the website’s basic functioning. Do not require consent;
  • Functional cookies – remember user preferences (e.g., selected language). May require consent depending on their nature;
  • Analytical cookies – collect data on how the website is used, for statistical purposes. Require consent;
  • Marketing/advertising cookies – used to personalize ads and profile interests. Require consent;
  • Security cookies – used to prevent fraud and protect sessions. They generally do not require consent, but some may be linked to third-party services.

 

Cookies used on the https://academiaschimbarii.ro/ website

 

The website uses the following cookies:

wp-wpml_current_language

Set by the WPML plugin. Remembers the language selected by the user to display content correctly on the site. Not used for tracking or profiling.

24 hours

Functional

Recommended

_lscache_vary

Set by the LiteSpeed Cache plugin. Used for cache management and delivering the correct version of the page based on the user type (e.g., mobile/desktop, logged in/not logged in).

~ 2 days

Functional

Recommended

elementor

Saves the page display settings ( Elementor plugin). Used for tracking.

Permanent

Functional

⚠️ Required

 

COOKIE CONSENT MANAGEMENT

On your first visit to our website, which uses cookies that require consent, you will be informed via a dedicated banner. You can choose to:

  • Accept all cookies;
  • Reject non-essential cookies;
  • Customize your cookie preferences by selecting the categories you accept.

Strictly necessary cookies are enabled by default, as they are essential for the website to function. Withdrawing consent for optional cookies does not affect the lawfulness of previous processing.

You can also manage or delete cookies directly from your browser. Detailed instructions are available on the websites of the major browser manufacturers: Chrome, Firefox, Safari, Edge.

 

Contact Form

If you send us questions via the contact form, we will collect the data you enter, including your contact information, to answer your questions and any follow-up inquiries. We do not share this information without your permission. Therefore, we will process all data you enter in the contact form only with your consent [in accordance with the provisions of Art. 6(1)(a) of the GDPR]. You may revoke your consent at any time; an informal email to that effect is sufficient. Data processed prior to receiving your request may be processed lawfully.

We will retain the data you provide in the contact form until:

  • You request the deletion of the data.
  • you withdraw your consent to its storage, or
  • The purpose for storing it no longer applies.

Any mandatory legal provisions, particularly those regarding mandatory data retention periods, are not affected by the above.

 

Contacting us by email or phone

If you contact us via email or phone, your request, including all personal data you provide, will be stored and processed by us to resolve your inquiry, with your consent.

 

Therefore, we will process all data you provide in accordance with the following legal provisions of the GDPR, namely:

  • only with your consent—in accordance with the provisions of Article 6(1)(a) of the GDPR
  • for the performance of a contract or during the pre-contractual phase—in accordance with the provisions of Article 6(1)(b) of the GDPR
  • to fulfill the legitimate purpose and interest we pursue, namely the efficient processing of requests you submit—in accordance with Article 6(1)(f) of the GDPR.

We will retain the data you provide in this manner until:

  • you request the deletion of the data;
  • you withdraw your consent to its storage, or if
  • the purpose for storing it is no longer valid, except for mandatory data retention periods.

 

DATA CONTROLLER’S OBLIGATIONS

 

Hosting

 

Personal data recorded on this website is stored on a dedicated server of hosterion.ro.

The processing of the data provided and stored complies with the following legal provisions:

  • Art. 6(1)(a) GDPR – the processing of personal data is based on your consent, obtained following accurate and complete information;
  • Art. 6(1)(f) GDPR – data processing is carried out for the purposes of our legitimate interests.

Regardless of the purpose for which personal data is processed, the principles of lawfulness, fairness, and transparency are observed, as well as the principle that the personal data processed is adequate, relevant, and limited to what is necessary in relation to the purposes for which it is processed.

 

For more information about the processing of personal data, please visit our Privacy Policy or contact us at:office@cccluj.ro

 

Data Encryption

This site uses SSL encryption for security reasons and to protect the transmission of confidential information. You can recognize this encryption by the lock icon that appears in the browser bar and by the change in the browser address from http:// to https://.

 

Once this type of encryption is enabled, the data transmitted cannot be viewed by third parties.

 

In accordance with the GDPR, if a personal data breach is likely to result in a high risk to your rights and freedoms, the operator of this website will inform you, without undue delay, regarding this breach, unless the supplementary provisions of the same Regulation (Art. 34(3)) apply.

 

Data Protection Officer

Since the provisions of the GDPR (Article 37(1)—according to which the controller and the processor’s authorized representative

The controller shall designate a data protection officer whenever:

a. the processing is carried out by a public authority or body, with the exception of courts acting in the exercise of their judicial functions;

b. the core activities of the controller or the processor consist of processing operations which, by virtue of their nature, scope, and/or purposes, require regular and systematic monitoring of data subjects on a large scale; or

c. the core activities of the controller or the processor consist of the processing on a large scale of special categories of data pursuant to Article 9 or of personal data relating to criminal convictions and offenses, as referred to in Article 10) regarding the obligation to appoint a Data Protection Officer, For any information or clarification regarding the operation of this website, please contact us at the following details:

  • Phone: +40 372 773 603
  • Email address:office@cccluj.ro
  • Mailing address: 3 Fluierașului Street, Cluj-Napoca, Romania, postal code 400073

 

Records of processing activities

In accordance with the GDPR, the controller or the processor should maintain, for a reasonable period of time, records of the processing activities under its responsibility. Thus, these records shall include the following information:

  • the name and contact details of the controller;
  • the purposes of the processing;
  • a description of the categories of data subjects and the categories of personal data;
  • the categories of recipients to whom the personal data have been or will be disclosed;
  • if applicable/possible:
  • transfers of personal data
  • The expected time limits for the erasure of the various categories of data
  • a general description of the technical and organizational security measures

 

The obligation described above does not apply to an enterprise or organization with fewer than 250 employees, unless the processing they carry out is likely to result in a risk to the rights and freedoms of data subjects, the processing is not occasional, or the processing involves special categories of data or personal data relating to criminal convictions and offenses.

 

Appropriate technical and organizational measures

Taking into account the state of the art, the context and the purposes of the processing, as well as the risks to the rights and freedoms of natural persons, the controller shall implement appropriate technical and organizational measures to ensure that, by default, only personal data necessary for each specific purpose of the processing is processed.

 

Notification to the supervisory authority in the event of a personal data breach

 

Pursuant to Article 33(1) of the GDPR, in the event of a personal data breach, we will notify the National Supervisory Authority for Personal Data Processing without undue delay and, where feasible, no later than 72 hours after we become aware of it, unless it is unlikely to pose a risk to the rights and freedoms of natural persons.

 

Notifying the data subject of a personal data breach

 

In accordance with the provisions of Article 34 of the GDPR, if the personal data breach is likely to result in a high risk to the rights and freedoms of natural persons, we will inform the data subject without undue delay of this breach, except in situations where:

  • appropriate technical and organizational protection measures have been implemented, and these measures have been applied to the personal data affected by the personal data breach, in particular measures ensuring that the personal data becomes unintelligible to any person who is not authorized to access it, such as encryption;
  • Further measures have been taken to ensure that the high risk to the rights and freedoms of the data subjects mentioned above is no longer likely to materialize;
  • would require a disproportionate effort. In this situation, a public notice is issued, or a similar measure is taken to inform data subjects in an equally effective manner.

 

TOOLS & PLUG-INS

Newsletter

To receive a newsletter, you must provide a valid email address along with specific information that identifies the owner of that address. Your consent is also required to send the newsletter, and we therefore inform you that any other personal data will be collected and stored only with your consent. The data collected in this way is processed solely for the purpose of sending the newsletter and will not be shared with third parties.

Subscription to the newsletter is carried out exclusively via a two-step confirmation process (double opt-in): after entering your email address in the subscription form, you will receive an automatic confirmation email at the address provided. Your subscription becomes effective, and your data will be processed for marketing purposes only after you confirm your request by clicking the link in this confirmation email. This procedure is intended to prevent unauthorized registrations and to ensure that the processing of your data for marketing purposes is based on free, specific, informed, and unambiguous consent, in accordance with Article 6(1)(a) of the GDPR and the provisions of Article 12 of Law No. 506/2004 on the processing of personal data and the protection of privacy in the electronic communications sector. We record and store: the IP address from which the subscription was made, the date and time of the subscription, the date and time of confirmation, as well as the content of the completed form. This record serves as proof of consent and as a means of investigating any unauthorized use.

 

Therefore, we will process any data you enter in the contact form only with your consent, in accordance with the provisions of Article 6(1)(a) of the GDPR.

 

You may exercise your right to withdraw consent for the transmission of newsletters at any time by clicking the “unsubscribe” link within the newsletter. We will continue to store data collected prior to unsubscription; mandatory retention periods remain in effect and will be observed. Data we have stored for other purposes (e.g., email addresses for member registration) are not affected.

 

MailChimp

This site uses MailChimp to send newsletters, as It is a service for organizing and analyzing newsletter sends.

In terms of how it works, when you enter your data to subscribe to the newsletter, the information is stored on MailChimp’s servers in the United States. This service is provided by Rocket Science Group LLC, 675 Ponce De Leon Ave NE, Suite 5000, Atlanta, GA 30308, USA.

 

Furthermore, MailChimp can be used to analyze the performance of newsletter campaigns and generate statistical data on them, with the aim of adapting and optimizing them. Thus, if you open an email sent via MailChimp, a file embedded in the email (a so-called web beacon) connects to MailChimp’s servers in the United States. As a result, it can be determined whether or not a newsletter was opened and which link was subsequently clicked. Technical information is also recorded at that time (e.g., access time, IP address, browser type, and operating system).

 

In light of the Judgment of July 16, 2020 (rendered in Case C-311/18—Data Protection Commissioner v. Facebook Ireland Limited, Maximilian Schrems), the European Court of Justice ruled that the protection provided by the EU–US Privacy Shield is not adequate.

 

Consequently, the transfer of personal data to the US and other countries outside the European Economic Area (EEA) is based on the European Commission’s Standard Contractual Clauses (SCCs). The Commission has issued two sets of Standard Contractual Clauses for data transfers from data controllers in the EU to data controllers established outside the EU or the European Economic Area (EEA). It has also issued a set of contractual clauses for data transfers from data controllers in the EU to data processors established outside the EU or the EEA. For more information on these Clauses, we recommend visitinghttps://ec.europa.eu/info/law/law-topic/data-protection/international-dimension-data-protection/standard-contractual-clauses-scc_ro.

 

MailChimp uses Standard Contractual Clauses as an appropriate safeguard for data protection, in accordance with the GDPR’s level of protection. For more information, visit https://mailchimp.com/legal/data-processing-addendum/#Annex_C and view the full privacy policy available here: https://mailchimp.com/legal/data-processing-addendum/.

 

Google Web Fonts

This site uses Web Fonts provided by Google to ensure consistent font usage on this site.

When you access a page on this website, your browser will load the web fonts necessary for the correct display of text and fonts by establishing a connection with Google’s servers. Thus, the use of Google Web Fonts is based on Art. 6(1)(f) of the GDPR, as there is a legitimate interest in the uniform presentation of fonts on this website. If consent has been given in this regard, the data will be processed exclusively on the basis of Art. 6(1)(a) of the GDPR.

For more information on how Google Web Fonts handles user data, please refer to the Privacy Policy available at:https://policies.google.com/privacy?hl=en.

Further details regarding GDPR compliance through the use of Google Web Fonts can be found in Google’s Statement dated November 18, 2022.

CONCLUSION

This policy on the processing of personal data is drafted in accordance with the provisions of Regulation No. 679/2016 on the protection of natural persons with regard to the processing of personal data and on the free movement of such data, as well as with other applicable national legal provisions.

 

We reserve the right to update or amend this policy. We recommend reviewing it regularly to ensure you have the most current information regarding personal data processing.

 

For more details regarding this GDPR Policy, as well as to exercise any of

 

As mentioned above, a written notice may be sent to the contact details indicated above.

 

CONTACT AND COMPLAINTS

For any questions, requests, or complaints regarding the processing of personal data, you may contact us:

 

Cluj Cultural Center

3 Fluierașului Street, Cluj-Napoca, Romania, ZIP code: 400073 Email:office@cccluj.ro

Web: https://cccluj.ro/

Last updated: March 2026

Checkbox on contact form/newsletter subscription

  • I agree and have read the Privacy Policy, particularly regarding the consent given for the processing of my personal data.

 

Cookie pop-up Banner template:

Text:

Cookies strictly necessary for the technical functioning of the website are stored without prior consent, based on the legitimate interest of the controller (Art. 6(1)(f) GDPR and Art. 4(5) of Law No. 506/2004). All other categories of cookies are enabled only after the user has given explicit consent.

The preferences you set are saved and can be changed at any time by accessing the cookie settings section at the bottom of the website (Cookie Settings). You may withdraw your consent at any time without any negative consequences for you. More information here