~/veonio/legal/privacy-policy.mdin effect

The small print, made big*

What we collect, why we collect it and what you can do about it. Every section boots with a plain-English summary. The full legal text sits right underneath.

  • updated 2026-09-25
  • read 8 min
  • tl;dr 1 min
  • law EE

* and 100% legal (pinky promise). No magnifying glass required.

Privacy0x0F Terms0x10

This policy explains how VEONIO OÜ handles personal data when you visit veonio.com, contact or apply to us, use the Digital Readiness Scorecard or sign up for our emails. It follows the EU General Data Protection Regulation (GDPR) and Estonian data protection law.

0x01

Who is responsible

In plain English: We are VEONIO OÜ, a company in Tallinn, Estonia. We decide what happens to your data, so we are the ones responsible for it.

0x02

Visiting the website

In plain English: Our host Cloudflare sees the technical data every website visit sends, like your IP address. We count visits without cookies and without identifying you.

0x03

Cookies and browser storage

In plain English: None. Our website sets no cookies and stores nothing in your browser, so there is no cookie banner to click away.

0x04

Contact, application and careers forms

In plain English: When you fill in a form, we use what you type to answer you. Nothing more.

0x05

Digital Readiness Scorecard

In plain English: Your answers create your personal report, which we also email to you. We use them to prepare a conversation if you’d like one.

0x06

Emails you asked for

In plain English: Our monthly brief and the scorecard playbooks only arrive if you say yes. One click unsubscribes you.

0x07

Spam protection

In plain English: Our forms are guarded by Cloudflare Turnstile instead of annoying CAPTCHAs. It checks you’re human, usually invisibly.

0x08

Booking a call

In plain English: If you book a strategy session, our scheduling tool Motion handles the booking and puts it in our calendar.

0x09

Who we share it with

In plain English: Only with the few services that help us run the site and our emails. We never sell your data. Ever.

0x0A

Links to social networks

In plain English: We link to LinkedIn and Facebook. Nothing is sent to them unless you click.

0x0B

How long we keep it

In plain English: Only as long as we need it: server logs for days, enquiries for up to two years, emails until you unsubscribe, accounting records for 7 years because the law says so.

0x0C

Your rights

In plain English: It’s your data, so you’re the boss. Pick a right below and copy a ready-made email to use it. We reply within one month.

0x0D

How we protect it

In plain English: Encryption, access controls and two-factor authentication. Only people who need your data can see it.

0x0E

Changes to this policy

In plain English: If we change something important, the date at the top changes too. Subscribers hear about significant changes by email.

0x0F

Contact and complaints

In plain English: Questions? Email us. Still unhappy? You can complain to the Estonian Data Protection Inspectorate or your local authority.

0 resultsgrep found nothing. Try “cookies”, “delete” or “invoice”.

// EOF. You made it to the end. Respect.

>ok