Privacy Policy
Last updated: 11 October 2025
This Privacy Policy explains how personal data is collected and processed through the website challenge.relativity.ro (the “Site”).
The Site is operated by the Relativity Team – the robotics team of Liceul Teoretic de Informatică „Alexandru Marghiloman” Buzău (the “Organiser”),
with technical hosting and web development provided by EssenByte Solutions.
The Policy complies with Regulation (EU) 2016/679 (General Data Protection Regulation – “GDPR”) and Law 190/2018.
Article 1 – Identity of the Controller
-
The controller responsible for processing personal data is the Relativity Team of
Liceul Teoretic de Informatică „Alexandru Marghiloman” Buzău.
The Organiser determines the purposes and means of data processing related to the competition.
-
EssenByte Solutions acts exclusively as technical service provider, offering secure hosting and infrastructure maintenance.
EssenByte Solutions does not access, use, or distribute participants’ data except as strictly necessary for hosting and system operation.
-
Contact for data protection matters: privacy@essenbyte.com.
Educational and participation-related inquiries should be addressed to the Organiser through the official contact channels provided on the Site.
Article 2 – Categories of Personal Data
Depending on participation and use of the Site, the following categories of personal data may be processed:
- Account data: name, email address, password (stored securely), and team information.
- Competition data: project descriptions, technical files, uploaded documentation, photos, and videos submitted for judging or publication.
- Communication data: emails or messages exchanged via contact forms or competition support channels.
- Technical data: IP address, browser type, operating system, and server logs used to ensure security and prevent abuse.
- Consent records: confirmations for image rights, parental permissions, and cookie preferences.
Article 3 – Purposes of Processing
- Competition administration: to manage registrations, validate eligibility, communicate competition rules, and publish results.
- Account management: to create, maintain, and secure participant accounts and teams.
- Communication: to respond to questions, send official notices, and share event updates. Marketing communications are not performed.
- Security and analytics: to maintain system integrity, detect technical issues, and generate anonymised usage statistics.
- Legal compliance: to meet obligations under applicable education, data protection, or court regulations.
Article 4 – Legal Basis for Processing
- Contractual necessity: for account and participation management.
- Consent: for use of images, videos, and optional data disclosures. Consent may be withdrawn anytime.
- Legitimate interest: for site protection and performance improvement.
- Legal obligation: for compliance with regulatory or judicial requirements.
Article 5 – Data Recipients and Transfers
-
Technical provider: EssenByte Solutions (Romania) – responsible for server hosting, backups, and platform security.
Bound by confidentiality and processing-only agreements.
- Public authorities: data may be disclosed when legally required or requested by educational or judicial bodies.
- International transfers: none are foreseen; all data is stored within the European Union.
Article 6 – Data Retention
- Account data is stored for the duration of participation and up to three years after closure for legal documentation.
- Competition submissions may be archived for up to five years for educational and historical record purposes.
- Server logs and analytics data are stored for up to one year.
- After expiry, data is securely deleted or anonymised.
Article 7 – Rights of the Data Subject
Under Articles 12–22 of the GDPR and Law 190/2018, you have the right to:
- Access your personal data and obtain a copy.
- Request correction of inaccurate or incomplete information.
- Request deletion of data where processing is no longer justified.
- Restrict or object to processing in certain cases.
- Receive your data in a portable format.
- Withdraw consent at any time.
- Lodge a complaint with the Romanian Data Protection Authority (ANSPDCP).
All requests will be handled within one month, in accordance with Article 12 GDPR.
Article 8 – Security Measures
- The Site uses encryption (HTTPS/TLS), server isolation, access logging, and routine vulnerability testing.
- Any personal data breach will be reported to ANSPDCP within 72 hours, and to affected users when required.
- Hosting infrastructure is regularly updated and monitored by EssenByte Solutions under strict data-handling limitations.
Article 9 – Cookies and Tracking Technologies
- The Site uses only essential and analytical cookies. No marketing or profiling cookies are deployed.
- Non-essential cookies are stored only with the user’s explicit consent, in accordance with Law 506/2004.
- Details about specific cookies and management options are provided in the Cookie Policy.
Article 10 – Children’s Data
- Accounts for individuals under 16 years require verified parental consent in compliance with Article 8 GDPR.
- If consent is not provided or validated, the related account will be removed without delay.
Article 11 – Contact and Complaints
- For privacy matters: privacy@essenbyte.com (Data Protection Contact).
- For competition or educational matters: use the contact section of this Site.
- Supervisory authority: Autoritatea Națională de Supraveghere a Prelucrării Datelor cu Caracter Personal (ANSPDCP),
B-d Gheorghe Magheru 28–30, Sector 1, 010336, Bucharest, Romania.
Article 12 – Changes to this Policy
- Any updates will be published here with a revised “Last updated” date.
- Significant changes affecting participants’ rights will be notified through the Site or via email.