Controller and scope
The controller is MONÓ TRO d.o., Kidričeva cesta 6b, 4000 Kranj, Slovenia, registration number 1970429000, VAT ID SI35556021. Contact info@monotro.si for privacy questions or rights requests. This policy covers our website, enquiries, bookings, course delivery, business communications and invoicing.
Data we collect
Depending on your interaction, we collect contact details, message and topic, organisation and billing data, participant details, role, chosen topics, proposed dates and participant count. We also record the selected programme, language, submission time and a technical submission ID. Hosting and security systems may process IP address, request time, URL, response code and device or browser information. Data comes from you or an authorised applicant registering participants.
Purposes and legal bases
- enquiries and offers: pre-contractual steps or legitimate interests;
- booking and delivery: contract performance and legitimate interests;
- accounts and legal records: legal obligations;
- security and claims: legitimate interests;
- direct marketing: consent where required or a lawful customer exception.
Required information
Mandatory fields are needed to answer, quote or perform the booking. Other data is voluntary. Do not enter sensitive data in free-text fields unless necessary and a secure method has been agreed with us.
Retention
- standalone enquiries: normally up to two years;
- bookings, attendance and contract communications: normally five years;
- invoices and accounting records: statutory periods, generally ten years;
- marketing data: until opt-out, objection or consent withdrawal;
- security logs: normally up to 90 days unless an incident requires longer.
Recipients and international transfers
Authorised staff and necessary service providers may receive data, including hosting and IT support, email, accounting, banking and e-invoicing providers, online delivery platforms such as Zoom, trainers, delivery partners and public authorities where legally required. We do not sell personal data. Transfers outside the EEA use an adequacy decision, standard contractual clauses or another valid safeguard.
Cookies and local storage
We use a 12-hour necessary cookie to remember dismissal of the announcement bar. Local storage remembers privacy choices for six months, registration drafts for up to seven days (deleted on successful submission), and an anonymous random display rating until browser data is cleared. No analytics or marketing tracker is currently loaded.
Change choices at any time using “Your privacy matters” in the footer.
External links
Social and map links do not load third-party content automatically. When opened, the third party receives ordinary visit data and applies its own privacy policy.
Your rights
Subject to legal conditions, you may request access, correction, erasure, restriction, portability, object to legitimate-interest processing and direct marketing, and withdraw consent prospectively. Email info@monotro.si. We normally respond within one month and may reasonably verify identity.
Complaint
You may complain to the Information Commissioner of the Republic of Slovenia, Dunajska cesta 22, 1000 Ljubljana, gp.ip@ip-rs.si, www.ip-rs.si.
Security and automated decisions
We use access controls, encrypted transfer, encrypted server-side booking storage, input validation and abuse prevention. We do not make solely automated decisions with legal or similarly significant effects and do not profile people for that purpose.
Updates
We update this policy when services, providers or law change. This version applies from 24 August 2026.
