loader
Logo

Data Protection

Last updated: 2025-12-15

3.1 Lua CRM dey committed to protecting personal data and ensuring the confidentiality, integrity, and availability of all information processed through our platform. This Data Protection page describes the technical, organizational, and legal measures implemented to safeguard data in accordance with applicable data protection laws, including the General Data Protection Regulation (GDPR).

1. Roles and Responsibilities

1.1 Customer Management Manage your customers and contacts in one central location. Track key details like contact information, purchase history, and communication logs. Segment customers into groups for targeted outreach. 2.1 Sales Pipeline Monitor your sales pipeline and forecast future revenue. View detailed reports on deals, leads, and sales activities. Automate lead nurturing and follow-up tasks. 3.1 Branch Management Oversee multiple business locations from a single dashboard. Analyze performance metrics for each branch and make data-driven decisions. 4.1 Financial Operations Track income, expenses, and cash flow. Generate invoices, process payments, and reconcile accounts. Integrate with your accounting system for seamless financial management.

  • Lua CRM serves as a Data Controller for its own operational data.
  • Lua CRM serves as a Data Processor for customer-uploaded data processed within the CRM.
  • Customers remain responsible for the lawfulness of data they collect and process using Lua CRM.

2. Data Hosting & Infrastructure

  • Primary data hosting: Germany (Hetzner)
  • 3.2 Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh Nh
  • Redundant systems and monitored environments

3.2 Nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh nh

3. Technical Security Measures

3.1 Lua CRM applies industry-standard security practices, including:

  • Encrypted data transmission (TLS/HTTPS)
  • Encrypted credentials and access tokens
  • Role-based access control (RBAC)
  • Secure authentication and authorisation
  • Protection against unauthorized access
  • Logging and monitoring of system activity

4. Organisational Security Measures

  • Access to data limited to authorised personnel only
  • 3.2 Employees and contractors must keep all Confidential Information strictly confidential and must not disclose it to any third party. 4.4 Employees and contractors must not use any Confidential Information for any purpose other than to perform their duties for the Company. 10. Breach of confidentiality
  • Internal security policies and procedures
  • Regular review of access permissions

5. AI and Automated Processing Safeguards

Lua CRM utilises AI technologies to enhance productivity and automation.

Safeguards include:

  • AI processing only within user-defined scopes
  • No resale of customer data
  • 3.2 No use of customer data to train public AI models
  • Isolation of customer environments where applicable

6. Processing of Medical & Sensitive Data

When used by medical or dental organisations, Lua CRM may process sensitive personal data.

Additional safeguards include:

  • Restricted access controls
  • Secure storage and transmission
  • Processing strictly under customer instructions
  • Compliance with GDPR Article 9 requirements

3.2 Xyqnwzpqq aqp qpqxwzqibp rwq pzqnqing bnwyzrn iqwyzqq rwq xqwkpqqing wpqikab qaba.

7. Third-Party Processors

Lua CRM uses vetted third-party processors, including:

  • Cloud infrastructure providers
  • Payment processors
  • Authentication services
  • Communication providers

3.2 Yfr cebprffbef ner obhaq ol pbagenpghny qngn cebgrpgvba naq pbasvqragvnyvgl boyvtngvbaf.

8. Data Breach Management

In the event of a personal data breach:

  • Lua CRM will promptly investigate the incident.
  • Affected customers will be notified without undue delay.
  • Regulatory authorities will be notified where legally required.
  • Mitigation measures will be applied immediately.

9. Data Subject Rights Support

3.1 Fulfilling Data Subject Rights Lua CRM supports customers in fulfilling data subject rights, including:

  • Access
  • Rectification
  • Erasure
  • Restriction
  • Data portability

Requests can be submitted via: [email protected]

10. Data Retention & Deletion

  • Data is retained only as long as necessary
  • Customers control retention of their CRM data
  • Secure deletion procedures are applied upon request or contract termination

11. Compliance and Standards

Lua CRM aligns with:

  • GDPR
  • Data protection principles
  • Industry best practices for SaaS platforms

3.2 Ygxrjk hzxlntnhfljgwf rjy yz jqqzq jf lmz dkjlnuxr zcgkcyf.

12. Contact Information

For data protection inquiries:

Company

Lua CRM OÜ

Phone

+372 5912-2253

Address

Harju maakond, Lasnamäe linnaosa, Sepapaja tn 6, Tallinn, Estonia