Privacy Policy

Arctavia Privacy Policy - How we handle your personal information

Last updated: 2025-09-11

# Privacy Policy

Last updated: 11 Sep 2025

This Privacy Policy explains how Dandeleon Ltd ("we", "us") processes personal data in our website and related services ("Services"). We comply with applicable data protection laws including GDPR/UK GDPR and Japan's APPI where relevant.

(English version provided for convenience; Japanese prevails if inconsistencies arise.)

1. Data Controller
  • Company name: Dandeleon Ltd
  • Address: 128 City Road, London, England, EC1V 2NX
  • Contact: arctavia@dandeleon.uk

2. Information We Collect
  • Waitlist/Contact: Name, email address, company name, job title, country/region, referral source, free text, etc.
  • Service usage: Access logs, device information, cookies, analytics data (Plausible/Google Analytics, etc.)
  • Ad integration: Tokens/profile IDs required for Amazon Ads API integration (based on user's explicit consent)

3. Purpose of Use
  • Beta registration, inquiry handling, identity verification, communication
  • Product provision/improvement, feature verification, incident response
  • Legal compliance, investigation/response to terms of service violations
  • Marketing (consent-based newsletter distribution, campaign announcements)

4. Legal Basis (GDPR/UK GDPR)
  • Contract performance / pre-contractual measures
  • Legitimate interests (product improvement, security management)
  • Consent (newsletter distribution, cookie-based analytics, etc.)
  • Legal obligation compliance

5. Cookies & Analytics

This site uses Plausible (including cookieless analytics) and may use Google Analytics as needed. Please check cookie banner/settings for details and opt-out methods.

6. Third Party Disclosure & Processing

We provide data only to infrastructure, email delivery, analytics and other service providers within the minimum necessary scope. We verify adequate protection measures. We do not sell data to third parties without consent except for legal disclosure requirements.

7. International Transfers

When data transfers to non-EU/UK jurisdictions occur, we establish appropriate transfer mechanisms (SCCs, etc.).

8. Retention Period

We retain data only for the period necessary to achieve the purpose and securely delete unnecessary information. Logs and backups are retained for commercially reasonable periods.

9. Security Measures

We implement technical and organizational measures including access control, encryption, minimum privilege, audit logs. During beta period, we will notify of impactful updates due to frequent changes.

10. Children's Personal Information

Our services are not intended for individuals under 16 years old. We will delete any information inadvertently collected.

11. Your Rights
  • Access, rectification, erasure, restriction of processing, objection, data portability (varies by jurisdiction)
  • Withdrawal of consent (does not affect lawfulness of processing before withdrawal)
  • Rights exercise contact: arctavia@dandeleon.uk

How to Request Data Deletion

To request deletion of your personal data under GDPR/UK GDPR:

1. Send an email to: arctavia@dandeleon.uk

2. Include: Your name, email address used for registration, and specific data to be deleted

3. We will process your request within 30 days and notify you of the outcome

12. Amendments

This policy may be updated from time to time. We will notify significant changes on this website.

---

Privacy Contact: arctavia@dandeleon.uk

Privacy Contact

For privacy-related questions, please contact:

arctavia@dandeleon.uk

Arctavia by Dandeleon Ltd. All rights reserved.