Legal
Privacy policy
Last updated: 6 September 2026
This policy describes how HummingByte OÜ (registry code 17591873, Narva mnt 5, Tallinn 10117, Estonia; "HummingByte", "we") processes personal data in connection with the website hummingbyte.io. We designed this site to know as little about you as possible.
What we collect — and what we don't
- Nothing automatic. This website sets no tracking cookies, runs no advertising pixels, and uses no third-party analytics that profile you. See the cookie policy.
- What you send us. If you contact us — through the inquiry form or by email to will@hummingbyte.io — we receive the details you choose to share: typically your name, email address, company, and the description of your project.
- Hosting logs. Our hosting provider processes technical data (such as IP addresses) in standard server logs for security and delivery of the site.
Why we process it (legal bases)
- Responding to your inquiry — processing is based on your consent and on taking steps at your request prior to entering into a contract (GDPR art. 6(1)(a) and 6(1)(b)).
- Running the website securely — legitimate interest in operating and protecting our infrastructure (GDPR art. 6(1)(f)).
What we do with it
We read your message, reply to it, and keep the correspondence for as long as a business relationship is live or reasonably possible. We do not sell personal data, add you to marketing lists without asking, or share your details with third parties except the service providers needed to operate email and hosting.
Retention
Inquiry correspondence is kept while we work together or while a conversation remains relevant, then deleted. If nothing comes of an inquiry, we delete it within 24 months. Accounting-relevant records are retained as Estonian law requires.
Your rights
Under the GDPR you may request access to, correction of, or deletion of your personal data; restriction of or objection to processing; and data portability. Write to will@hummingbyte.io and we'll act on it without drama. You may also lodge a complaint with a supervisory authority — in Estonia, the Data Protection Inspectorate (Andmekaitse Inspektsioon, aki.ee).
International visitors
We are an EU (Estonian) company and treat GDPR standards as our default for all visitors, wherever you are.
Changes
If this policy changes, the new version appears here with an updated date. We won't quietly weaken it.