Last updated: 28 August 2026

This Privacy Policy (the “Privacy Policy”) explains how the personal data submitted by users through the customer registration form on this website is processed.

The Privacy Policy has been prepared with regard to the applicable data protection legislation, including, where applicable, Regulation (EU) 2016/679 of the European Parliament and of the Council of 27 April 2016 (the General Data Protection Regulation, GDPR).

1. Data controller

The controller of personal data is:

3CX Cloud LT – Tenesys

Hereinafter in this Privacy Policy referred to as the Controller.

For any question about the processing of personal data, the user may contact the Controller using the contact details provided on this website.

2. What personal data is collected?

When the customer registration form is used, the personal data submitted by the user may be collected, including:

  • first name and surname;
  • email address;
  • telephone number;
  • company or organisation name;
  • other information provided by the user in the registration form.

The specific scope of the data collected depends on the fields presented in the registration form.

The Controller recommends that users do not provide excessive information in the registration form, or information unrelated to the purpose of registration.

3. Purposes of processing personal data

Personal data submitted by users is processed for the following purposes:

  • to receive and administer customer registration information;
  • to process registration enquiries;
  • to contact the person who submitted the registration;
  • to provide information related to the registration or to the services provided;
  • to answer questions and enquiries submitted by the user;
  • to administer relations with existing or potential customers;
  • to ensure the proper operation of the website and of the registration functionality.

Personal data is not processed for purposes unrelated to those set out above, except where such processing is permitted or required by applicable law.

4. Legal basis for processing personal data

Where the GDPR applies, personal data may be processed on one or more of the following legal bases:

  • on the basis of consent, where the user has given consent to the processing of their personal data for a specific purpose;
  • on the basis of a contract or of steps taken prior to entering into a contract, where the processing is necessary in order to fulfil the user’s request;
  • on the basis of a legal obligation, where the processing is necessary in order to comply with a legal obligation applicable to the Controller;
  • on the basis of legitimate interest, where the processing is necessary for the legitimate interests of the Controller, provided that these are not overridden by the rights and freedoms of the user.

In other jurisdictions, personal data is processed in accordance with the data protection legislation applicable there.

Where data is processed on the basis of consent, the user has the right to withdraw that consent at any time. The withdrawal of consent does not affect the lawfulness of processing carried out before it was withdrawn.

5. Retention of personal data

Personal data is retained only for as long as is necessary to achieve the purposes set out in this Privacy Policy, or for as long as its retention is required by applicable law.

Once it is established that the retention of personal data is no longer necessary, the data is securely deleted, destroyed or properly anonymised, except where the law provides for its retention in another way.

6. Protection of personal data

The Controller applies appropriate technical and organisational measures designed to protect personal data against accidental or unlawful destruction, loss, alteration, unauthorised disclosure of, access to, or other unlawful processing.

Notwithstanding the security measures applied, no electronic system for transmitting or storing information can be regarded as entirely secure. The Controller seeks to ensure an appropriate level of personal data protection in accordance with applicable law and the technologies used.

7. Provision and processing of personal data

Personal data submitted by users is used for the purposes of customer registration, the administration of enquiries and the related activities of the Controller.

Personal data may be processed to the extent necessary to achieve the purposes set out in this Privacy Policy, and also where such processing is necessary in order to meet the requirements of applicable law or to protect the legitimate interests of the Controller.

8. Rights of the data subject

Subject to the applicable data protection legislation, the user may have the right:

  • to receive information about the processing of their personal data;
  • to access their personal data;
  • to request the rectification of inaccurate or incomplete personal data;
  • to request the erasure of their personal data, where there is a legal basis for doing so;
  • to request the restriction of the processing of personal data, where there is a legal basis for doing so;
  • to object to certain processing of personal data;
  • in certain cases, to request the portability of their personal data;
  • where data is processed on the basis of consent, to withdraw that consent at any time;
  • to exercise other rights conferred by the applicable data protection legislation.

To exercise their rights, the user may contact the Controller using the contact details provided on this website.

9. Right to lodge a complaint

If the user considers that their personal data is being processed in breach of the applicable data protection legislation, they have the right to lodge a complaint with the competent data protection supervisory authority in their jurisdiction.

10. Personal data of minors

This website is not specifically directed at children.

The Controller does not knowingly collect the personal data of minors where there is no appropriate legal basis for collecting it.

Should it become apparent that personal data has been obtained without an appropriate legal basis, the Controller will take reasonable steps to remove such data, where applicable law permits and requires this.

11. Changes to the Privacy Policy

The Controller may update or amend this Privacy Policy from time to time in order to ensure that it remains consistent with applicable law, the technologies used and the activities carried out.

The updated version of the Privacy Policy is published on this website.

Changes to the Privacy Policy take effect from the day they are published on the website, unless the updated version states otherwise.

12. Contact

For questions relating to the processing of personal data, this Privacy Policy or the exercise of data subject rights, you may contact:

3CX Cloud LT – Tenesys

The contact details are provided on this website.