This Privacy Policy constitutes part of this Terms and is binding to you. Please carefully read this privacy policy before using the Service.
Algoritmik respects your privacy and thoroughly protects your personal data
This Personal Data Protection Policy (hereinafter referred to as the Policy) sets out how we collect your personal data, the purposes for which we collect it, the security measures we take to protect it, the persons with whom we share it, and your rights regarding the protection of your personal data.
This Policy applies to:
Algoritmik acts as a contractual processor in relation to users of the services it offers. In these cases, Algoritmik processes personal data on behalf of and for the account of the controller and in accordance with the provisions of the Personal Data Processing Contract, which is attached as Appendix 1 to this Policy and constitutes a contractual agreement in accordance with the third paragraph of Article 28 of the GDPR. For all questions regarding the protection of personal data, service users should contact their employer (the personal data controller) who is responsible for the processing of their personal data.
This Policy applies to all personal data collected and stored about you by Algoritmik d.o.o. Hajdrihova ulica 28c, 1000 Ljubljana (hereinafter referred to as “Algoritmik,” “we,” “us”).
As the personal data controller, Algoritmik is responsible for processing and storing your personal data.
Should you have any questions regarding the use of this Policy or the exercise of your rights under this Policy, please contact us at any of the contacts below:
+386 1 810 03 98,
Here you will find explanations of the basic terms used in our Policy.
Each term defined below has a purpose within this Policy as defined in this section.
Personal data refers to any information from which an individual can be identified (e.g. first name, last name, email address, telephone number, etc.).
Controller refers to the legal person who determines the purposes and means of the processing of your personal data.
Processor refers to the legal or natural person who processes personal data on behalf of the controller.
Processing refers to the collection, storage, access and any other use of personal data.
EEA stands for the European Economic Area, which includes all the Member States of the European Union, Iceland, Norway and Liechtenstein.
Algoritmik processes your personal data solely on the basis of clearly stated purposes, securely and transparently.
We collect your personal data when you provide it to us (e.g., through the use of our website, ordering our services, registering for our events or webinars, through inquiries by email, phone, or in writing to our address, or in any other way in which you provide us with your personal data).
We also obtain your personal data from publicly accessible data records (such as AJPES), to which we have legal access and which we use in accordance with their purpose.
We also obtain your personal data through the use of cookies on our website. You can read more about our use of cookies in Section 7 of this Policy.
4.1 Types of personal data we collect
Algoritmik may collect the following information or types of information about you:
At Algoritmik, we carefully protect the principle of data minimization as provided for by law and therefore only collect data that is relevant, adequate and limited to what is necessary for the purposes for which it is processed. The purposes for which we collect personal data are set out in section 4.3 of this Policy.
4.2. Legal basis for personal data collection and processing
In accordance with the legislation governing the protection of personal data, we may process your personal data on the following legal bases:
The only mandatory provision of personal data is that which we collect as required by law.
The provision of personal data that we need to fulfill the agreement is voluntary. Please note that if you do not provide us with all the personal data we need to perform the service we offer (e.g., concluding an agreement, registering for a webinar, etc.), we will not be able to provide such services.
The provision of consent is always voluntary and without any negative consequences. Please note, however, that we will not be able to provide certain services (such as e-notifications and tailoring advertising to your needs) without your consent or after you have withdrawn your consent.
4.3 Purposes of processing
Algoritmik will only process your data for specified, explicit and legitimate purposes. We undertake not to process your personal data in a way that is incompatible with the purposes set out in this Policy.
The purposes for which we may use your personal data are set out below. Algoritmik may use your personal data for one or more of the specified purposes.
The purposes for which we will use your personal data are as follows:
We will only disclose your personal data in the manner and under the conditions set out by law.
You have the right to withdraw any processing of your personal data based on your consent at any time. You can withdraw your consent by contacting us at any of the contact points set out in Section 2 of this Policy.
4.4 How long we keep your personal data
We store your personal data in accordance with applicable law and (i) only for as long as is necessary to achieve the purposes for which we process the data, or (ii) for the period prescribed by law (e.g., 10 years for the storage of issued invoices), or (iii) for the period necessary to fulfill the contract, which includes warranty periods and periods during which it is possible to assert any claims based on the concluded contract (e.g., 5 years from the fulfillment of contractual obligations).
We retain personal data collected on the basis of your consent permanently or until you withdraw your consent (please see Section 9 of this Policy for more information on how to withdraw your consent). We will delete data collected on the basis of consent prior to your withdrawal in the event that the purpose for which the data was collected has been achieved.
Personal data for which the retention period has expired (e.g. because the purpose for which it was collected has been fulfilled, because the statutory time limit has expired, etc.) will be erased, destroyed or anonymized in such a way that reconstruction of the personal data is no longer possible.
If you require any further information regarding the retention period of your personal data, please contact us using any of the contact details set out in Section 2 of this Policy.
To protect your personal data, Algoritmik has implemented appropriate technical and organizational measures, including in particular:
Algoritmik protects your personal data from unlawful or unauthorized processing and/or access, as well as from accidental loss, destruction, or damage. We implement all measures taking into account our technological capabilities (including the costs of implementing certain measures) and an assessment of the impact on your privacy.
In the event of a personal data breach, Algoritmik will notify the competent supervisory authority of each such breach without delay. The competent supervisory authority in the Republic of Slovenia is the Information Commissioner.
In the event of suspected criminal activity, Algoritmik will also report violations to the police and the competent state prosecutor’s office.
In the event of a data breach that could pose a high risk to the rights and freedoms of individuals, Algoritmik will notify you of such an event without delay.
We may disclose, allow access to, or permit access to your personal data to certain third parties specified below, solely for the purpose of collection. Any user with whom we share personal data may only process the data for the purposes for which it was collected. All users are also obliged to comply with applicable legislation and the provisions of the personal data protection policy.
We may transfer your personal data to:
In exceptional cases, we may transfer your personal data to third parties (as defined above) outside the European Economic Area (EEA), where we or the third party may process that data. For each transfer outside the European Economic Area, we will take specific additional measures to ensure the adequate security of your personal data.
Such measures primarily include agreements with third parties on the establishment of binding rules in the field of personal data protection, verifying whether there are approved certification mechanisms that meet our personal data protection standards, and concluding appropriate contractual obligations governing personal data protection.
What are cookies?
Cookies are small text files that most websites store on the devices that users use to access the internet, in order to identify the individual devices that users have used to access the internet. Their storage is under the complete control of the user’s browser – which can restrict or disable the storage of cookies if desired. Cookies are not harmful and are always time-limited.
We use cookies to provide user-friendly online services, improve user experience and monitor visit statistics. Cookies make the interaction between the web user and the website faster and easier. They help the website to remember the individual’s preferences and experience, saving time and making browsing more efficient and user-friendly. Cookies are not harmful and are time-limited.
Why are they used?
They are fundamental for providing user-friendly online services. Cookies make the interaction between the web user and the website faster and easier. They help the website to remember the individual’s preferences and experience, saving time and making browsing more efficient and user-friendly.
Some concrete examples of how cookies are used:
Cookie list:
These cookies enable the use of essential components for the proper functioning of the website. Without these cookies, the services you wish to use on this website would not function properly.
These cookies collect information about how users behave on the website in order to improve the user experience (e.g., which content on our website you visit most often). These cookies do not collect information that could identify the user. However, they ensure that the use of the website is a pleasant experience.
These cookies allow the website to remember some of your preferences and choices (e.g., language, region,) and provide advanced, personalized features. These types of cookies may allow us to track your actions on the website.
These cookies are most commonly used by advertising and social networks (third parties) to show you more targeted ads, limit ad repetition or measure the effectiveness of advertising campaigns. These types of cookies may allow us to track your actions online.
Cookie control
The choice whether to use cookies is yours. You can always remove cookies to remove your visibility online. You can also set most browsers not to store cookies.
For information on the options for each browser, we suggest you check your settings.
We use cookies on our website to help us improve and optimize our website and provide you with a better user experience.
Cookies are simple text files that some websites store on your computer via your browser and store certain non-personal data.
The use of cookies allows us to tailor individual web content to make it more appealing to the individual. In addition, we also perform website usage analyses, which enable us to improve and edit our website to make it more user-friendly.
Some cookies are essential, as without them the website cannot function properly, but you can refuse all other cookies. We provide strictly necessary cookies to store statistical data on the use of our website and to store information necessary to complete the contact forms offered on our website.
In addition to the strictly necessary cookies, we also use other cookies on our website that enable us to better understand our users and provide you with customized advertising based on the data collected. Refusing to use cookies may result in certain content or functions of the website not being available (this mainly includes customizing the website to make it more interesting and attractive to the user).
An overview of all cookies can be found in the table at the end of this section.
On our website, in addition to our own cookies, we also use the following cookies from cookie providers (third-party cookies): Google Analytics, Google Ads (all the listed cookies are managed by Google Inc., 1600 Amphitheatre Parkway, Mountain View, CA 94043, USA), Microsoft Clarity (1 Microsoft Way, Redmond, WA 98052-7329, USA), Facebook Custom Audience, Facebook remarketing (cookies managed by Facebook Inc., 1 Hacker Way, Menlo Park, CA 94025, USA), and Pipedrive (530 Fifth Avenue, 8th Floor, Suite 802, New York, NY 10036, USA).
All of the above-listed third-party cookies can be refused or deleted at any time in your browser.
Users are advised that the above providers may collect certain personal data that is not related to the collection of data by Algoritmik. Any such separate collection of personal data is not covered by this Policy but is defined in the privacy policies of each cookie provider.
For more information on the personal data protection of third-party cookies, please refer to the privacy policies of each third-party cookie provider:
COOKIES TABLE:
Cookie Key | Domain | Type | Expiration | Description |
__cf_bm | .pipedrive.com | Third-party | 30 minutes | Used by Cloudflare to distinguish between humans and bots to ensure site security. |
__cf_bm | .pipedriveassets.com | Third-party | 30 minutes | Used to distinguish between humans and bots for valid reporting and security. |
2. Experience cookies:
Cookie Key | Domain | Type | Expiration | Description |
_clsk | .typless.com | First-party | 1 day | Microsoft Clarity: Stays active for a session to combine multiple page views into a single user session. |
_clck | .typless.com | First-party | 1 year | Microsoft Clarity: Tracks user interactions to improve website functionality and experience. |
_ga | .typless.com | First-party | 1.1 years | Google Analytics: Distinguishes unique users by assigning a randomly generated client ID. |
_ga_XXXX | .typless.com | First-party | 1.1 years | Google Analytics: Used to persist session state (includes IDs: MXP1ZGQZ76, BRY8QK9SW6, 2D9BK0ZM3R). |
3. Functional cookies:
Cookie Key | Domain | Type | Expiration | Description |
pll_language | typless.com | First-party | 1 year | Used to store and remember your selected language settings for future visits. |
4. Advertising or targeted cookies:
Cookie Key | Domain | Type | Expiration | Description |
_gcl_au | .typless.com | First-party | 3 months | Google AdSense: Used for experimenting with advertisement efficiency across websites. |
Our website uses a YouTube plugin (operated by YouTube LLC, 901 Cherry Ave., San Bruno, CA 94066, USA), which is operated by Google. If you visit content on our website that contains a YouTube plugin, a connection to YouTube’s servers is established, which means that YouTube is aware of your visit to our website.
You can find out more about how YouTube handles user data on their website.
Algoritmik also uses social media such as Facebook, Instagram, and LinkedIn in its operations. Each social media platform operates in accordance with its own terms of use and policies governing the handling of its users’ personal data. We would like to remind users that they are responsible for any posts on social media and that each user is obliged to address any questions or claims to the individual social media network.
Algoritmik assumes no responsibility for the activities of third parties on social media.
You have the following rights regarding the processing of your personal data, which are described below:
9.1 Access to personal data: You can request information from Algoritmik about whether it processes personal data about you and, if it does, you can request access to the personal data and information about the processing (what data is processed and where the data originates from).
9.2 Correction of personal data: You may request Algoritmik to correct or amend incomplete or inaccurate data that we process about you.
9.3 Limitation of processing of personal data: You may request Algoritmik to restrict the processing of your personal data (e.g. when your personal data is
being checked for accuracy or completeness).
9.4 Deletion of personal data: You can request Algoritmik to delete your personal data (we cannot delete personal data that we hold because of a legal requirement or a contractual relationship).
9.5 Personal Data Extract: You may request Algoritmik to provide you with the personal data you have provided to us in a structured, commonly used and machine-readable format.
9.6. Withdrawal of consent: You have the right to withdraw your consent at any time with respect to the use of your personal data that we collect and process on the basis of your consent. Consent may be withdrawn in any of the ways set out in Section 2 of this Policy. Withdrawal of consent does not have any negative consequences; however, it is possible that Algoritmik may no longer be able to provide certain services to you as a result of the withdrawal.
9.7 Objection to the processing of personal data: You have the right to object to the processing of your personal data when it is processed for direct marketing purposes or for the transfer of your personal data to third parties for direct marketing purposes. You may also object to the processing when we use your data for direct marketing purposes using customized or individual offers (“profiling”). You may submit your objection in any manner specified in Section 2 of this Policy.
9.8 Right to data transferability: You have the right to request a copy of the personal data you have provided to us. We will provide you with the data in a structured, commonly used, and machine-readable format. You are entitled to transfer this data to another controller of your choice. Where technically feasible, you may request that your personal data be transferred directly to another controller.
You may exercise all rights by contacting us through any of the channels set out in Section 2 of this Policy. These contacts are also available in case you need any further information regarding your rights.
If you believe that your rights to personal data protection have been violated, you have the right to file a complaint against us with the Information Commissioner, which is the competent supervisory authority for personal data protection.
Algoritmik ensures that the personal data we process is up to date and complete. Please notify us of any changes to your personal data as soon as possible at info@typless.com or by phone at +386 1 810 03 98. We will correct or supplement your personal data as soon as possible.
Algoritmik reserves the right to request certain personal data from you (such as your first name, last name, and email address) for the purpose of identifying you if you exercise any of the rights set forth in this section.
Algoritmik may amend this Policy. In the event of any changes, we will notify you in advance. You are deemed to have agreed to the new version of this Policy if, after the new version of this Policy comes into effect, you continue to use our website and other services defined by this Policy.
Article 1
PURPOSE AND LEGAL BASIS
This Contract for the Processing of Personal Data (hereinafter: “Contract“) is concluded in accordance with Regulation (EU) 2016/679 of the European Parliament and of the Council of 27 April 2016 on the protection of individuals with regard to the processing of personal data and on the free movement of such data (hereinafter: “GDPR“) and the Personal Data Protection Act (ZVOP-2, Official Gazette of the Republic of Slovenia, No. 163/22, 40/25 – ZInfV-1).
The Contract regulates the relationship between:
The mutual relations between the Contracting Parties are defined in the contracts concluded between the Controller and the Processor and in the general and special terms of the Processor, available at Processor’s website, all of which together form the Subscription Agreement (hereinafter: “Subscription Agreement“).
This Contract is concluded in accordance with the third paragraph of Article 28 of the GDPR for the purpose of defining the conditions and rules for the processing of personal data, measures for their protection, and the rights and obligations of the contracting parties in relation to the processing of personal data of individuals, which the processor performs on behalf of the controller within the framework of the Subscription Agreement.
The provisions of this Contract shall apply in conjunction with the provisions of the contracts and the aforementioned terms governing the Subscription Agreement and shall be interpreted in conjunction with each other.
Article 2
RIGHTS AND OBLIGATIONS OF THE CONTROLLER AND PROCESSOR
a) Legal basis of the Controller
The Controller shall ensure that it has a permissible legal basis for the processing of all personal data that will be processed on the basis of this Contract.
b) Ensuring Processor compliance
The Processor guarantees that it is registered to perform the activities specified in Article 1 of this Contract, and guarantees to the Controller that, during the processing of personal data under this Contract, it will implement appropriate technical and organizational measures to ensure the security of personal data and the full compliance of the tasks undertaken with the applicable law.
c) Access to personal data
The Processor shall only grant access to personal data processed on behalf of and for the account of the Controller to persons under its control who have undertaken confidentiality obligations or are subject to appropriate legal obligations of confidentiality and only to the extent necessary for the performance of their tasks.
d) Reporting breaches
In the event of a personal data breach, the Processor shall, without undue delay, after becoming aware of the breach, formally notify the Controller of the personal data breach in accordance with Article 33 of the GDPR.
e) Shared responsibility for ensuring safety
The Controller and Processor shall ensure appropriate procedures and measures for the security of personal data as set out in Article 32 of the GDPR.
f) Fulfilment of legal obligations
Under this Contract, both Contracting Parties shall be responsible for fulfilling their obligations as controllers or processors in accordance with the legislation applicable in the field of personal data protection.
Article 3
VALIDITY OF THE CONTRACT AND STORAGE OF PERSONAL DATA
This Contract shall be concluded for the duration of the Subscription Agreement between the Contracting Parties.
In the event of termination or cancellation of business cooperation, regardless of the reason, the Processor must:
Article 4
NATURE AND PURPOSE OF PERSONAL DATA PROCESSING
The Processor processes personal data exclusively for the purpose of performing services within the framework of the Subscription Agreement between the Processor and the Controller. This includes, for example:
The list is not exhaustive and may be supplemented with other services that are necessary for the performance of obligations under the Subscription Agreement, in accordance with the Controller’s instructions.
In the context of processing personal data, the Processor performs the following processing operations, which include but are not limited to:
The Processor shall process personal data referred to in this Article exclusively on the basis of the Controller’s instructions, in accordance with applicable personal data protection legislation.
Article 5
TYPES OF PERSONAL DATA
The Processor processes only those personal data to which it gains access when performing services based on a Subscription Agreement.
Categories of personal data may include, for example:
Article 6
CATEGORIES OF INDIVIDUALS
The Individuals to whom the personal data refer are natural persons whose data are entered and managed by the Controller in the Typless software solution. The Processor processes this personal data exclusively on behalf of and on the instructions of the Controller and solely for the purpose of performing services within the framework of the Subscription Agreement.
Article 7
TRANSFER OF PERSONAL DATA TO THIRD COUNTRIES AND INTERNATIONAL ORGANIZATIONS
Any transfer of personal data to third countries (i.e., countries outside the European Economic Area) or international organizations by the Processor will be carried out exclusively on the basis of documented instructions from the Controller and will always comply with the provisions of Section 5 of the GDPR.
In the event of transfers of personal data to third countries or international organizations where the Processor has not received instructions from the Controller to do so, and required by European Union or Member State law to which the Processor is subject, the Processor shall inform the Controller of that legal requirement before processing the personal data, unless that law prohibits such information on important grounds of public interest.
Without documented instructions from the Controller (e.g., the Controller’s approval or specific requirements under European Union or Member State law applicable to the Processor), the Processor shall not:
Article 8
TECHNICAL AND ORGANIZATIONAL MEASURES
The Processor has taken all necessary and appropriate technical and organizational measures to ensure an appropriate level of security of personal data in view of the existing risks. These measures include, in particular:
Article 9
SUB-PROCESSORS
In cases where the Provider acts as a personal data processor and the Client as a controller, the Controller gives written consent by entering into a Subscription Agreement (within the meaning of the provisions of the second paragraph of Article 28 of the GDPR) that the Processor may process personal data arising from this Subscription Agreement itself or entrust it in whole or in part to subcontractors acting as sub-processors. The sub-processors with whom the Processor cooperates are:
To obtain an accurate and up-to-date list of all sub-processors, the Controller may contact the email address specified in Article 13 of this Contract. In the event of a subsequent intention to replace or include a new sub-processor in the aforementioned list, the processor shall notify the Controller in writing at least 15 days prior to the intended granting of access to personal data to such sub-processor. The Controller shall be entitled to raise a reasoned objection to the change within this period.
The Processor shall conclude a contract or other legally binding act with each sub-processor, which shall ensure the same obligations and standards of personal data protection as agreed in the Subscription Agreement between the Processor and the Controller. For each processing of personal data, the sub-processor shall ensure procedures and measures for the protection of personal data that are as strict or stricter than those implemented by the personal data processor in accordance with this Contract.
An individual sub-processor may perform individual tasks related to the processing of personal data within the scope of the contractual processor’s authorizations and may not process personal data for any other purpose.
Article 10
ASSISTANCE TO THE CONTROLLER
The Processor shall provide the following services to the Controller upon its written request:
– Providing information upon written request by the Controller that is necessary to demonstrate compliance with the Controller’s obligations regarding the contractual processing of personal data.
– Providing information, upon written request by the Controller, that is necessary or useful for the Client to respond to requests for the exercise of individuals’ rights to
whom the personal data relate, in relation to which the Processor does not provide the Controller with any technical and organizational measures.
– Providing information upon written request from the Controller regarding the processing of personal data that the Controller needs to perform a data protection impact assessment and for the prior consultation procedure pursuant to Articles 35 and 36 of the GDPR.
– Services enabling the inspection and audit of personal data processing. The Processor shall enable the Controller to carry out an inspection or audit upon the Controller’s written request, which must be submitted at least 8 days prior to the planned inspection or audit. The request must contain at least the desired date of the inspection or audit, the name of the contractor, and the subject of the inspection or audit. As a rule, the inspection or audit shall be carried out during the Processor’s regular working hours and shall be carried out in a manner that interferes as little as possible with the processor’s work process.
Article 11
LIABILITY FOR BREACHES
The liability of the contracting parties for any breaches shall be determined exclusively in accordance with the provisions of the Contract or the terms of use governing the subscription relationship.
Article 12
CONTACT
All notices, requests, inquiries, and other documentation related to personal data protection shall be addressed to info@typless.com.
Article 13
FINAL PROVISIONS
This Contract is an integral part of the Subsciption Agreement between the Controller and the Processor. The contract shall enter into force and shall be deemed concluded on the date of conclusion of the contracts / acceptance of the terms by the Controller, which constitute the Subscription Agreement.
The parties may agree at any time to additionally sign this Contract in physical or electronic form, with both copies having equal validity.
This Contract shall be governed exclusively by applicable Slovenian law and applicable European Union law. In the event of a dispute, the parties to the Contract shall attempt to resolve the dispute amicably. If that is not possible, the court in Ljubljana shall have jurisdiction to resolve the dispute.
Personal data controller: Personal data processor:
Algoritmik d.o.o.
Last updated: 3 March 2026
Kontakt podpora:
+386 1 810 03 98
Kontakt prodaja:
+386 1 810 03 99
Automaticaly procees all invoices and integrate with your ERP software
Build a custom IDP solution for your needs and automate complex proesses
Samodejno obravna vse račune in se integrira z vašim računovodskim programom.
Zgradite rešitev IDP po meri za svoje potrebe in avtomatizirajte kompleksne proese.