Effective date: 26 May 2026
Data controller: BUDETO STUDIO s.r.o., Zahrebska 562/41, 120 00 Prague, Czechia (IC: 19265662)
Contact: hello@budeto.xyz
1. What data we collect
We collect only the data necessary to operate our services:
- Account data — name, email address, LinkedIn profile URL, and authentication credentials when you register on our platform.
- Usage data — pages visited, timestamps, browser type, device type, and IP address.
- Communication data — messages and files you share through our platform or via email.
- Application data — information you submit through founder application forms (experience, background, startup ideas).
2. How we use your data
We use your personal data to:
- Provide, maintain, and improve our services.
- Communicate with you about your account, applications, or inquiries.
- Send periodic newsletters (only with your explicit consent; you can unsubscribe at any time).
- Analyse usage patterns to improve user experience.
- Comply with legal obligations.
We do not sell your personal data to third parties.
3. Legal basis for processing
We process your data under the following legal bases (GDPR Article 6):
- Contractual necessity — to deliver services you requested.
- Legitimate interest — to improve our platform and prevent fraud.
- Consent — for marketing communications and optional data collection.
- Legal obligation — to comply with applicable laws.
4. Data sharing
We may share your data with:
- Service providers — hosting (Vercel), database (Neon), email (Beehiiv), analytics, and authentication providers that process data on our behalf.
- Portfolio companies — only with your explicit consent during the matching process.
- Legal authorities — when required by law.
All service providers are bound by data processing agreements.
5. International transfers
Your data may be transferred to and processed in countries outside the EEA. We ensure appropriate safeguards are in place, including Standard Contractual Clauses approved by the European Commission.
6. Data retention
We retain your data for as long as your account is active or as needed to provide services. After account deletion, we retain data for up to 3 years to comply with legal obligations, then permanently delete it.
7. Your rights
Under GDPR, you have the right to:
- Access your personal data.
- Rectify inaccurate data.
- Erase your data ("right to be forgotten").
- Restrict processing.
- Port your data to another service.
- Object to processing based on legitimate interest.
- Withdraw consent at any time.
To exercise any of these rights, email us at hello@budeto.xyz. We respond within 30 days.
8. Cookies
We use essential cookies required for the platform to function. We do not use advertising or tracking cookies. Analytics cookies are only set with your consent.
9. Security
We implement appropriate technical and organisational measures to protect your data, including encryption in transit (TLS), secure authentication, and access controls.
10. Children
Our services are not directed at individuals under 18. We do not knowingly collect data from minors.
11. Changes to this policy
We may update this policy from time to time. Material changes will be communicated via email or a notice on our platform. Continued use of our services after changes constitutes acceptance.
12. Complaints
If you believe your data protection rights have been violated, you have the right to lodge a complaint with the Office for Personal Data Protection of the Czech Republic (UOOU, uoou.gov.cz).