This Privacy Policy explains how Cloudpeakify s.r.o., Jičínská 226/17,
130 00 Prague 3 (Žižkov), Czechia, Company ID (IČO) 21041342 (operating the
Coriventra product initiative) processes personal data in connection with
this website and the Coriventra partner sandbox.
Controller & Contact
Controller: Cloudpeakify s.r.o., Jičínská 226/17, 130 00 Prague 3 (Žižkov), Czechia,
Company ID (IČO) 21041342, registered in the Czech Commercial Register. Contact for privacy
matters: partners@coriventra.com. Security
reports: security@coriventra.com.
Scope
This policy covers the public website coriventra.com and the
Coriventra partner sandbox (business-to-business demo environment) that the
website links to. Coriventra is B2B technology only — no real-money gaming is offered, and no
consumer player accounts exist.
Data We Process & Legal Bases
Website visits — this website is a static site and sets
no cookies of its own and uses no analytics or marketing
trackers. Our hosting provider processes technical connection data (such as IP
address and browser type) in its network and security logs to deliver and protect the site.
Legal basis: Art. 6(1)(f) GDPR — our legitimate interest in the
security and availability of the website.
Email contact — if you write to us, we process your name, email address and
the content of your message to respond and follow up. Legal basis: Art. 6(1)(b) GDPR where
you ask us to take pre-contractual steps; otherwise Art. 6(1)(f) GDPR — our legitimate
interest in evaluating and conducting B2B business cooperation.
Sandbox access requests — the access form collects
company name, work email and your
testing purpose (an optional contact name may be provided). These three
fields are necessary to assess the request; without them the request cannot be
processed. The data are used solely to review the request and, if approved, issue
time-limited sandbox access. Legal basis: Art. 6(1)(b) GDPR where you request
pre-contractual steps; otherwise Art. 6(1)(f) GDPR — our legitimate interest in
evaluating B2B cooperation.
Audit logs — submissions, access decisions and significant sandbox actions
are recorded in an audit log. Legal basis: Art. 6(1)(f) GDPR — our legitimate interest in
the security of the platform, prevention of misuse and accountability.
Partner sandbox usage — signed partner sign-in uses essential,
HttpOnly session cookies (no tracking cookies). Sandbox gameplay uses demo credits and
synthetic session data only. Legal basis: Art. 6(1)(b)/(f) GDPR as above.
Cookies
coriventra.com sets no cookies. The partner sandbox uses only essential
session cookies required for authenticated partner access and demo game sessions; they are
HttpOnly, restricted to the sandbox and expire automatically. There are no analytics,
advertising or cross-site cookies.
Recipients & Transfers
Personal data may be processed by the following providers:
Cloudflare — website hosting and content delivery for coriventra.com.
Google Cloud — hosting of the Coriventra partner sandbox platform in the EU
region (europe-west3, Frankfurt); sandbox and access-request data are stored there.
Seznam.cz, a.s. — business email hosting for our contact mailboxes.
Sandbox platform data is stored in the EU. Where a provider processes personal data outside
the EU/EEA, the transfer relies on the safeguards applicable to that provider — an applicable
European Commission adequacy decision or Standard Contractual Clauses. You can request a copy
of the relevant safeguards via
partners@coriventra.com.
Retention
Sandbox and demo data: automatically deleted after
90 days by a scheduled retention job.
Access requests: access-request personal data are deleted after
90 days; associated security audit events may be retained in
de-identified form for accountability.
Technical connection/security logs: request logs of the sandbox platform
on Google Cloud (Cloud Logging) are retained for 30 days (the default
log-bucket retention, not extended by our configuration). Website delivery logs are
processed transiently by our hosting/CDN provider as a processor; we do not receive or
store them.
Business email correspondence: kept for 12 months from the end of
the last substantive business communication, unless a contract, a legal obligation
or the establishment, exercise or defence of legal claims requires longer retention.
Privacy requests: handled individually — contact
partners@coriventra.com. For sandbox player
data, a technical anonymization procedure exists that unlinks a player reference across
sessions and related records.
Your Rights
Where applicable, you have the right of access, rectification, erasure, restriction,
objection and data portability. We do not carry out profiling or automated
decision-making. You can lodge a complaint with the supervisory authority (in Czechia: Úřad
pro ochranu osobních údajů, uoou.gov.cz).