Privacy Policy
Last updated: 26 July 2026
Short version: this is a brochure website. We do not run analytics, advertising trackers or profiling, we have no sign-up form, and we do not sell or share your personal data. The little data that does get processed is described in full below.
1. Who is responsible for your data?
The controller of personal data processed through this website is:
| Company | Bing Chilling! Oy |
|---|---|
| Business ID (Y-tunnus) | [Business ID / Y-tunnus] |
| VAT number | [VAT number / ALV-numero] |
| Registered address | [Registered street address, postal code, Helsinki] |
| Registered office | Helsinki, Finland |
| hello@bingchilling.fi |
For any question about this policy or your personal data, email hello@bingchilling.fi.
We have not appointed a Data Protection Officer, as our processing does not meet the thresholds in Article 37 of the GDPR.
2. What data we process, why, and on what legal basis
| Data | Purpose | Legal basis (GDPR Art. 6) | Retention |
|---|---|---|---|
| Server log data (IP address, browser/user-agent, requested page, timestamp) | Delivering the website, security, diagnosing faults, preventing abuse | Legitimate interest, Art. 6(1)(f) — operating a secure website | Kept by our hosting provider for a short period (typically ~30 days) |
| A logo-click count for a hidden interactive feature (see the Cookie Policy) | Unlocking a hidden interactive feature you triggered yourself | Held in the page's memory only; never written to your device and never transmitted to us | Discarded when you reload or leave the page |
| Your email address and message content | Replying to you, if you choose to email us | Legitimate interest, Art. 6(1)(f) — responding to enquiries; or steps prior to a contract, Art. 6(1)(b) | As long as needed to handle the matter, then deleted |
We do not use analytics, advertising cookies, pixels, fingerprinting or any automated decision-making or profiling within the meaning of Article 22 of the GDPR.
3. Providing your data is voluntary
You do not have to give us any personal data to browse this website. Emailing us is entirely your choice.
4. Recipients and processors
We do not sell, rent or trade personal data. Data may be processed on our behalf by the service providers we rely on to run the site:
- Cloudflare, Inc. — website hosting and content delivery. Processes server log data, including IP addresses, in order to serve the site.
- Our email provider — if you email us, your message is processed by the provider hosting our mailbox.
We may also disclose data where we are legally required to do so, for example to a competent authority acting within its powers.
5. International transfers
Some of the providers above are established outside the European Economic Area or form part of a group with US-based entities. Where personal data is transferred outside the EEA, the transfer is covered by an appropriate safeguard under Chapter V of the GDPR — in practice the European Commission's Standard Contractual Clauses and/or the EU–US Data Privacy Framework. You may request more information about these safeguards by emailing us.
6. Your rights
Under the GDPR you have the right to:
- access the personal data we hold about you (Art. 15);
- have inaccurate data corrected (Art. 16);
- have your data erased (Art. 17);
- restrict processing (Art. 18);
- receive your data in a portable format (Art. 20);
- object to processing based on legitimate interest (Art. 21);
- withdraw consent at any time, where processing is based on consent (Art. 7(3)), without affecting the lawfulness of processing before withdrawal.
To exercise any of these rights, email hello@bingchilling.fi. We will respond within one month, as required by Article 12(3). We may need to verify your identity first.
7. Right to lodge a complaint
If you believe we have handled your personal data unlawfully, you have the right to lodge a complaint with a supervisory authority. In Finland this is the Office of the Data Protection Ombudsman (Tietosuojavaltuutetun toimisto), tietosuoja.fi. You may also complain to the authority in your country of residence or workplace.
8. Security
The site is served over an encrypted HTTPS connection. We apply appropriate technical and organisational measures under Article 32 of the GDPR. No method of transmission over the internet is completely secure, so we cannot guarantee absolute security.
9. Children
This website is not directed at children, and we do not knowingly collect personal data from children. If you believe a child has provided us with personal data, please contact us and we will delete it.
10. Changes to this policy
We may update this policy as our services develop or the law changes. The current version is always published on this page with its date of last update.