Legal · 01

Privacy and cookies

LAST UPDATED: 2 OCTOBER 2026

This page explains how NEOXIS Corp. ("we", "us") collects, uses and protects personal data when you visit neoxis.ai or correspond with us, in line with the EU General Data Protection Regulation 2016/679 ("GDPR") and Bulgarian data protection law.

1. Data controller

COMPANY
NEOXIS Corp.
UIC 208772721 · VAT BG208772721
REGISTERED OFFICE
44 Hristo Botev Blvd.
6400 Dimitrovgrad, Bulgaria
PHONE · WHATSAPP

2. What we collect

This site is intentionally minimal. We do not run advertising pixels or social media trackers. The only third-party script is Google Analytics, and it loads only if you accept it in the cookie banner. Fonts are served from our own server, so your browser does not contact font providers when you visit.

3. Cookies and local storage

This site sets no cookies unless you accept analytics. Your choice in the cookie banner is saved in your browser's local storage under the key "neoxis-consent", so the banner does not appear on every page. This is strictly necessary and contains no personal data.

If you accept analytics, Google Analytics sets two first-party cookies: _ga, which distinguishes visitors, and _ga_E43KMEWQDQ, which keeps the state of your visit. Both expire after up to 2 years. You can change your choice at any time with "Cookie settings" at the bottom of every page. If you withdraw consent, we delete these cookies from your browser.

Our hosting provider (Hostinger) and our CDN (Cloudflare) may set minimal security cookies that are needed to deliver the site over HTTPS and to protect it from abuse. These are outside our control and strictly necessary for the site to work.

4. How we use the data

We do not sell, rent or transfer your data to third parties for marketing purposes, and we do not profile you. We do not transfer data outside the EU/EEA except where strictly necessary to deliver the site, for example through CDN edge nodes operated by Cloudflare under EU Standard Contractual Clauses. If you accept analytics, Google may also process the data in the United States; Google LLC is certified under the EU-US Data Privacy Framework.

5. Your rights under the GDPR

Where we hold personal data about you, you have the right to:

To exercise any of these rights, write to [email protected]. We will respond within 30 days.

6. Security

The site is served over HTTPS only. Access to the server is restricted and protected by our hosting provider's standard controls. We do not collect any data in your browser beyond what is described above.

7. Email open tracking

Business emails sent from @neoxis.ai addresses may include a small, transparent 1×1 pixel image hosted at neoxis.ai/track/pixel.php. When your email client downloads remote images, that request is logged on our server. We use this signal only to confirm that proposals, quotes and other business correspondence have reached you, and to time follow-ups appropriately.

What we record

What we do not do

Legal basis and retention

Processing is based on our legitimate interest (Art. 6(1)(f) GDPR) in managing business correspondence efficiently and avoiding unnecessary follow-ups. We have weighed this against your rights and consider the impact minimal: the data is technical and small in volume, and we never publish or transfer it. Events are kept for 12 months and then deleted.

How to opt out

8. Changes to this policy

We may update this policy to reflect operational, legal or regulatory changes. The date at the top of the page shows the latest revision.

Questions about this policy? Write to [email protected].