Document Privacy
Version dated · bebeshin.ru
Personal data processing policy
This document explains which personal data Manufactory Bebeshina processes, why it is needed and how a person may exercise control over their data.
General provisions
This Policy applies to personal data received by individual entrepreneur M. D. Pavlova through bebeshin.ru, the notification form and the contact details published on the website.
The Policy has been prepared in accordance with Federal Law No. 152-FZ of 27 July 2006 “On Personal Data” and applies to all personal-data operations carried out by the Controller in connection with the website.
Who is responsible for the data
- Controller
- Individual entrepreneur M. D. Pavlova
- TIN
- 470509284343
- OGRNIP
- 326470400111700
- Contact
- info@bebeshin.ru · +7 (812) 642-38-42
Which data is processed
When submitting the form, a user provides one contact method: a phone number or an email address. The record also contains an internal identifier, the form source, and the date and time when consent and the request were created. A service copy of each new request is emailed to the Controller so it can be handled without directly viewing the database.
During an ordinary website request, the technical infrastructure may process an IP address, browser and device information, the requested page address, and the request date and time. This information is needed to deliver pages, diagnose problems and protect the website; it is not added to the notification-list record.
When a person contacts the Controller by email or phone, the Controller also receives the contact details and message content provided voluntarily. The website does not request passport, payment or biometric data, or special categories of personal data.
Why the data is needed
- to accept a request and provide news about the Local Time collection, the Arzamas release and related Manufactory updates;
- to answer an enquiry, a request concerning personal-data processing or a withdrawal of consent;
- to operate, secure and diagnose the website.
The data is not used for decisions that produce legal consequences solely through automated processing.
On what basis the data is processed
The principal basis for processing a contact detail is the user’s consent. It is given through a separate action: the person selects the consent field and submits the form. A request is not stored without consent.
Technical data is processed to the extent needed for safe website operation. User enquiries are processed in order to answer them, comply with legal requirements and protect the lawful rights of both the Controller and the user.
How processing takes place
The Controller may collect, record, organise, accumulate, store, update, retrieve, use, block, delete and destroy personal data. Processing is carried out using automated means and, where necessary, without them.
The Controller does not publish contact details, supply contact lists to others for their own advertising or combine form data with advertising profiles. Messages may be sent only for the stated purposes and while the user’s consent remains in force.
How long processing continues
A contact is stored until the processing purpose is achieved, the relevant notifications end or consent is withdrawn, whichever comes first. A specific period may be extended only where another lawful basis applies.
After consent is withdrawn, the Controller stops processing and, where the data is no longer needed on another lawful basis, deletes it within 30 days of receiving the withdrawal. Technical information is kept only for the periods required to operate and protect the infrastructure or as required by law.
How the data is protected
The Controller takes the necessary legal, organisational and technical measures to protect data against unlawful or accidental access, alteration, disclosure, blocking, copying, provision, distribution, deletion and other unlawful actions.
The measures reflect the nature of the data, processing method, current threats and legal requirements. The form validates the contact format and request origin, limits request size, and keeps submitted contact details out of technical error messages. Access is limited to people who need it for the stated purposes.
How to exercise control over your data
A user may obtain information about the processing of their data, request correction, blocking or deletion, withdraw consent, opt out of notifications, and challenge the Controller’s actions before Roskomnadzor or a court.
A request or withdrawal may be sent to info@bebeshin.ru. State the phone number or email address provided in the form and explain the request. The Controller may ask for enough information to confirm the person’s identity and connection to the relevant record; do not send unnecessary documents or data.
When this Policy applies
The Policy takes effect when it is published on the website. The Controller reviews it when processing methods or legal requirements change. A new version applies from the publication date shown at the beginning of the document.
The current version is always available at bebeshin.ru/en/privacy.