II. Easy TMS Privacy Policy

Version 1.0 · Effective date: 30 July 2026

1. Who we are and contact

The controller for the data described in this Policy is ZENITH CORP S.R.L., VAT RO32772890, Trade Register J1/87/11.02.2014, registered at 166 1 Mai Street, Petrești, Sebeș Municipality, Alba County, 517875, Romania.

Privacy questions: support@easy-tms.eu. Billing: billing@easy-tms.eu.

2. Scope and our roles

This Policy applies to website visitors, Customer representatives and users, support requesters, billing contacts and others whose data is processed in connection with Easy TMS.

Zenith is controller for account administration, billing, security, support, communications and compliance. For data uploaded by a Customer for its own purposes, Zenith generally acts as processor and the Customer determines the essential purposes and means.

3. Data we process

We may process names, job titles, company, professional email, authentication data, roles and permissions; legal name, address, registration number, tax/VAT ID and VIES validation status; plan, subscription, invoice and payment information; IP address, device, browser, sessions, security and audit logs; support requests and communications; language preference; and Customer Content entered into the Service.

We do not collect or store full card numbers. Payment data is submitted directly to Stripe.

4. Sources

Data comes directly from the individual, from the Customer creating the user account, through use of the Service, from payment and tax-validation providers, from public registers or authorities where necessary and lawful.

5. Purposes and legal bases

We process data to enter into and perform the agreement, create and manage accounts, provide features, invoice, verify B2B and VAT eligibility, provide support and operational communications — contract or pre-contractual steps.

We process data for accounting, tax, RO e-Invoice, fraud prevention, authority requests and other duties — legal obligation.

We process data for security, abuse prevention, logging, Service improvement, legal claims and administrative communications — legitimate interests after balancing rights.

Optional marketing or non-essential cookies will rely on consent where required.

6. Automated eligibility and VAT checks

Easy TMS uses automated rules to check business eligibility, accepted country and official EU VAT validation. Checks may block subscription completion.

The decision uses company data, country and official validation status; correct format alone is insufficient. Clarification or manual review may be requested at support@easy-tms.eu.

7. Recipients

We may disclose necessary data to infrastructure, hosting, authentication, storage, security, email, payment and billing providers, including Supabase, Stripe, Resend, Cloudflare, Lovable and CyberFolks; to the accountant, SAGA or other providers used for accounting and RO e-Invoice; to professional advisers; and to authorities or courts where required.

Providers receive only data necessary for their role and are subject to applicable contractual and legal duties.

8. International transfers

Some providers may process data outside the EEA. We use appropriate legal safeguards such as adequacy decisions, Standard Contractual Clauses and supplementary measures where relevant.

9. Retention

Account and usage data is kept while the account or commercial relationship is active and afterwards as needed for export, reactivation, disputes, security and legal claims.

Accounting records and supporting documents are retained for the statutory period, ordinarily 5 years calculated from 1 July of the year following the relevant financial year, or longer where special law, audit or litigation requires.

Security logs, support communications and backups are retained under internal periods proportionate to purpose. Data is then deleted, anonymised or isolated unless legal retention applies.

10. Security

We use encrypted connections, access controls, roles, tenant isolation, logging, secret management, backups and incident monitoring. No method is absolutely secure, and the Customer must protect its credentials and devices.

11. Your rights

Subject to GDPR conditions, you may request access, rectification, erasure, restriction, portability, objection and information about automated decisions. Where processing relies on consent, you may withdraw it for the future.

Requests may be sent to support@easy-tms.eu. We may verify identity and normally respond within one month. Rights may be limited by legal duties, others’ rights or legal claims.

12. Complaints

You may complain to the Romanian National Supervisory Authority for Personal Data Processing, 28-30 Gheorghe Magheru Blvd., Sector 1, 010336 Bucharest, anspdcp@dataprotection.ro, www.dataprotection.ro, or to the competent authority where you live or work.

13. Cookies

Easy TMS uses strictly necessary cookies and similar technologies for authentication, security, preferences and operation. Non-essential analytics or marketing cookies will not be used without notice and, where required, prior consent.

14. Children

The Service is B2B and is not directed to minors. We do not knowingly collect data directly from children for subscription creation.

15. Changes

We may update this Policy for legal, technical or operational changes. The revision date will be displayed and material changes may be communicated through the Service or email.

In case of differences between translations, the Romanian version prevails, unless the law requires otherwise.

Supplier

Easy TMS is a software service supplied and invoiced by Zenith Corp SRL.

Zenith Corp SRL
Str. 1 Mai, Nr. 166
RO-517875 Petresti / Sebes
Jud. Alba
Romania

VAT identifier: RO32772890

Billing email: billing@easy-tms.eu

Support email: support@easy-tms.eu

Back to home