Privacy Policy

Effective Date: 28 May 2026 Last Updated: 28 May 2026


1. Who We Are

This Privacy Policy explains how Aether Media Publishing SRL ("we", "us", "our") collects, uses, and protects your personal data when you book an appointment or interact with our services.

Company details:

  • Legal name: Aether Media Publishing SRL

  • Registration number: J2022000275408

  • VAT / CUI: RO45446314

  • Registered address: Str. Dr. Niculae D. Staicovici 29, Cod 050556, Sector 5, Bucharest, Romania

  • Contact email: [email protected]

  • Website: aetherdigital.io

We are established in the European Union and operate in compliance with Regulation (EU) 2016/679 (GDPR). If you are located outside the EU, we still extend the same data protection standards to you.


2. What Data We Collect and Why

We only collect the data necessary to confirm your appointment and keep you informed.

Data Purpose Full name Identifying you in our system; personalising communications Email address Sending booking confirmations, reminders, and training materials Phone number Sending SMS and WhatsApp messages with reminders and appointment updates Technical data (IP address, browser, device, on-page behaviour) Analysing page performance and measuring the effectiveness of our advertising campaigns — collected via Facebook Pixel and Microsoft Clarity

We do not collect sensitive categories of data (health, financial, biometric, or political data), and we do not knowingly collect data from individuals under the age of 16.


3. Legal Basis for Processing

We process your personal data under the following legal bases as defined in Article 6 of the GDPR:

  • Contractual necessity (Art. 6(1)(b)) — processing your name, email, and phone number is required to manage your appointment and communicate with you about it.

  • Consent (Art. 6(1)(a)) — for sending marketing emails, SMS messages, WhatsApp messages, and training materials. You give this consent explicitly when submitting the booking form. You may withdraw it at any time, without consequence.

  • Legitimate interests (Art. 6(1)(f)) — for collecting technical data via cookies and tracking technologies, in order to improve our page and measure advertising performance.


4. How Long We Keep Your Data

Data type Retention period Reason Contact data (active contacts) [e.g. 24 months] from last interaction Maintaining the relationship and sending relevant communications Contact data after unsubscribe / consent withdrawal Up to 30 days for processing, then deleted Technical time to process the deletion request Technical data (cookies, Clarity sessions) Per third-party policies (Facebook: 180 days; Microsoft Clarity: 13 months) Analytics and campaign optimisation

When the retention period expires, your data is permanently deleted or irreversibly anonymised.


5. Who We Share Your Data With

We do not sell your data. We share it only with the service providers listed below, under contractual data protection agreements (DPAs), strictly to deliver our services.

GoHighLevel (GHL) Role: CRM & automation platform (data processor) GoHighLevel stores your contact data and manages email, SMS, and WhatsApp automations on our behalf. Data may be processed on servers in the United States under Standard Contractual Clauses (SCCs) approved by the European Commission. Privacy policy: https://www.gohighlevel.com/privacy-policy

Meta Platforms (Facebook / Instagram) Role: Advertising & analytics (joint controller for Pixel data) Via the Facebook Pixel, Meta collects anonymised behavioural data from visitors to our booking page (masked IP, on-page actions) to measure ad performance and build custom audiences. Data may be transferred to the US under SCCs. Privacy policy: https://www.facebook.com/privacy/policy

Microsoft Clarity Role: Behavioural analytics — heatmaps and session recordings (data processor) Microsoft Clarity records anonymised user sessions (mouse movements, clicks, scrolling) to help us understand how visitors interact with our page. Data may be transferred to the US under SCCs. Privacy policy: https://privacy.microsoft.com/en-us/privacystatement

SMS / WhatsApp delivery providers Role: Message delivery (data processor) Your phone number is passed to our integrated messaging provider (e.g. Twilio, via GHL) solely for the delivery of confirmation and reminder messages. It is not used for any other purpose.


6. International Data Transfers

Some of our partners (GoHighLevel, Meta, Microsoft) process data on servers located in the United States of America. These transfers are carried out with appropriate safeguards under Article 46 of the GDPR, primarily through Standard Contractual Clauses (SCCs) adopted by the European Commission.

If you would like further information about the transfer mechanisms in place, please contact us at the address below.


7. Cookies and Tracking Technologies

Our booking page uses cookies and tracking pixels. You will be informed and given the opportunity to accept or decline non-essential cookies on your first visit.

Cookie / Tracker Type Purpose Duration Session cookies Strictly necessary Core functionality of the booking form Session Facebook Pixel (_fbp, fbc) Marketing Conversion measurement from Facebook/Instagram ads; custom audiences 180 days Microsoft Clarity (clck, _clsk) Analytics Session recording, heatmaps, user behaviour analysis 13 months / session

You can manage your cookie preferences through your browser settings or the consent banner displayed when you land on our page. Declining marketing cookies does not affect your ability to make a booking.


8. Your Rights

Regardless of where you are located, you have the following rights over your personal data. We will respond to any request within 30 calendar days, free of charge.

Right of access — You can request a copy of the data we hold about you.

Right to rectification — You can ask us to correct inaccurate or incomplete data.

Right to erasure ("right to be forgotten") — You can request deletion of your data when there is no longer a legal basis for processing it.

Right to restriction — You can ask us to limit how we process your data in certain circumstances.

Right to data portability — You can receive your data in a structured, machine-readable format.

Right to object — You can object to processing based on legitimate interests, including direct marketing.

Right to withdraw consent — You can withdraw your consent for marketing at any time, without affecting the lawfulness of prior processing.

Right to lodge a complaint — You have the right to file a complaint with your local data protection authority. If you are based in Romania, this is the ANSPDCP (www.dataprotection.ro). If you are based in another EU/EEA country, please contact your national supervisory authority.

Quick unsubscribe: Every email we send includes an unsubscribe link. To stop SMS or WhatsApp messages, reply STOP to any message. Requests are processed within 48 hours.


9. Data Security

We implement appropriate technical and organisational measures to protect your data, including:

  • Encrypted data transmission (HTTPS / TLS)

  • Access to data platforms restricted and protected by two-factor authentication

  • Enterprise-grade security certifications maintained by our sub-processors (GHL, Meta, Microsoft)

In the event of a security incident affecting your data, we will notify you in accordance with our legal obligations under GDPR Articles 33–34.


10. Contact Us

For any questions, data rights requests, or complaints related to the processing of your personal data, please contact us:

Aether Media Publishing SRL Str. Dr. Niculae D. Staicovici 29, Cod 050556, Sector 5, Bucharest, Romania Email: [YOUR GDPR/CONTACT EMAIL] Website: [YOUR WEBSITE]

For residents of Romania, complaints may also be submitted to: ANSPDCP — Autoritatea Națională de Supraveghere a Prelucrării Datelor cu Caracter Personal B-dul G-ral. Gheorghe Magheru 28–30, Sector 1, Bucharest www.dataprotection.ro | [email protected]


This policy may be updated periodically. The effective date at the top of this document will always reflect the most recent version.