
Privacy Notice
Information about personal-data processing on Praetorian Digital Agents. Effective 25 September 2026.
Praetorian Digital OÜ · Tallinn, Estonia
Controller
Praetorian Digital OÜ, Tornimäe tn 5, 10145 Tallinn, Estonia. Registration number 17393771. Email: joram@praetorian-digital.com. Represented by Joram Höfs, member of the management board.
No data protection officer has been appointed. You can use the email address above for privacy enquiries.
Data processed on this website
The server processes technically necessary access data when you open the website. If you submit an enquiry form, we process your contact details and the information you provide about the request. If you email us, we process the information in your message. The website uses no web analytics, advertising trackers or marketing cookies. The marketing opt-in that is disabled at launch is not collected.
Server logs
Access data may include IP address, time, requested address, HTTP status, transferred volume, referrer, browser and operating-system details. We need this data to deliver the site securely, diagnose errors and defend against attacks. The legal basis is Art. 6(1)(f) GDPR. Server logs are deleted or anonymised no later than 14 days after collection unless a specific security incident requires a longer, separately documented preservation period.
Enquiry forms
Depending on the request, we need your name, email address, language, the selected request route and confirmation that you have read this notice. Every request has a technical topic; if you make no selection, we use a neutral classification. Service requests also need a short description and a product or project reference. Company, website, technical environment and further context are optional. Do not submit passwords, credentials, confidential documents, health information or customer data.
For secure delivery, we also store a random submission ID, the server receipt time, the internal page path and a technical checksum. These details prevent duplicate submissions and help us investigate delivery errors. The forms do not collect referrer or UTM values.
We use this information to review, route and answer your enquiry. Art. 6(1)(b) GDPR applies to pre-contractual or contractual requests. Where a request is not directed at a contract, we rely on Art. 6(1)(f) GDPR. Our legitimate interest is to handle business enquiries deliberately addressed to us.
New enquiries are reviewed no later than twelve months after the last contact. If no continuing purpose remains, they are deleted or anonymised. Legal retention duties, the establishment or defence of claims and an ongoing contract may require longer retention.
Browser storage
The enquiry forms do not store drafts in cookies, localStorage or sessionStorage. Unsubmitted details remain only in the current form and are lost when you leave or reload the page.
Hosting and Notion
Laravel Holdings, Inc. (USA) runs the website server for us as our hosting processor through Laravel Forge. The server is provided by DigitalOcean, LLC (USA) in Frankfurt am Main as Laravel's subprocessor. Both process technical access data and the form submissions passing through the server. We store form submissions in Notion and assign them to the responsible handling roles there. Notion Labs, Inc. (USA) acts as our processor for this. We have data processing agreements under Art. 28 GDPR with Laravel and Notion; Laravel passes the obligations on to DigitalOcean.
Laravel, DigitalOcean and Notion are US companies. Notion may store form submissions in the USA. Laravel and DigitalOcean may access the server from the USA for operations and support. These transfers are covered by the EU Standard Contractual Clauses (Art. 46(2)(c) GDPR) in our data processing agreements with Laravel and Notion. Where one of these companies participates in the EU-U.S. Data Privacy Framework, we additionally rely on the European Commission's adequacy decision (Art. 45 GDPR). The framework is not legally settled. Should it fall away, the Standard Contractual Clauses remain the basis. You can request a copy of the safeguards at joram@praetorian-digital.com.
Access is restricted to people and technical accounts that need to handle requests or operate and control the systems. We do not use Notion's AI features on form submissions. ActiveCampaign receives no form data at launch.
We usually answer requests by email. For this, and for messages you send us directly, we process your email address, your name, the content of the message and the technical details of the email. The legal bases are the same as for the enquiry forms. The same retention review applies, no later than twelve months after the last contact.
Our email mailboxes run on Google Workspace (Google). Google processes the content and technical details of the emails and may also process this data in the USA. According to Google, such transfers are based on the EU Standard Contractual Clauses and, where the receiving Google entity participates, on the EU-U.S. Data Privacy Framework.
Your rights
Subject to the GDPR, you have rights of access, rectification, erasure, restriction, data portability and objection. The forms do not make automated decisions within the meaning of Art. 22 GDPR. To exercise your rights, email joram@praetorian-digital.com.
You may also lodge a complaint with a data protection authority. The Estonian Data Protection Inspectorate, Tatari 39, 10134 Tallinn, is one relevant authority for the controller. You may also contact the authority at your place of residence or work.
Changes
We update this notice when forms, recipients, retention periods or technical services change. Analytics, marketing automation or additional external services will not be activated without a corresponding update and review.