Privacy Policy
Last updated: August 2, 2026
1. General Information
This privacy policy describes how SIA "MD Systems" (hereinafter – the Company) processes personal data obtained while operating the website and providing construction services, including house foundation construction.
2. Data Controller
The controller of personal data is SIA "MD Systems", registration number: 40203662617, address: Jūrkalnes iela 15, Rīga, LV-1046, email: [email protected].
3. What Personal Data We Process
We process only the personal data that you provide directly or that arises during communication or service provision, including:
- Name and contact information (phone, email)
- Information about the construction project or requested service
- Communication content (emails, contact form submissions)
- Payment information if a service contract is concluded
4. Necessity of Providing Data
Some of the requested personal data (such as contact details and information about the construction project) are necessary to prepare a quote and to enter into or perform a service contract. If this data is not provided, we may be unable to prepare a quote or provide the requested service. Providing other data (such as consent to analytics cookies) is voluntary and does not affect your ability to use the website's core functions.
5. Purposes of Personal Data Processing
Personal data is processed for the following purposes:
- Processing service requests and inquiries
- Preparing service offers
- Providing construction services
- Communicating with clients and handling inquiries
- Complying with legal obligations such as accounting
- Improving website functionality and usage analytics (with consent)
- Preventing fraud, automated abuse and spam in contact form submissions
6. Legal Basis for Processing (GDPR Article 6)
- Contract conclusion and performance – for providing services (GDPR Article 6(1)(b))
- Legitimate interests – for client communication and support (GDPR Article 6(1)(f))
- Legitimate interests – for website and contact form security, abuse prevention and request rate limiting (GDPR Article 6(1)(f))
- Consent – for analytics and marketing cookies (GDPR Article 6(1)(a))
7. Cookies, Google Analytics, Meta Pixel and Microsoft Clarity
The website uses essential cookies that ensure the basic functionality of the website.
To protect the contact form against abuse and spam submissions, the website uses the Cloudflare Turnstile security tool, which may process technical information about your device and browser. This tool is necessary for website security and does not require separate consent.
With the user's consent, the website may also use analytics and marketing cookies, such as Google Analytics 4 (GA4), deployed via Google Tag Manager, to collect aggregated statistics about website visits and improve website performance; Meta (Facebook) Pixel, to analyze user interactions and provide personalized advertising on Meta platforms such as Facebook and Instagram; and Microsoft Clarity, to record session replays and heatmaps for the purpose of improving the user experience on the website.
| Name | Provider | Purpose | Type | Retention period | Category |
|---|---|---|---|---|---|
| gdpr_consent_v2 | This website | Stores your cookie consent choice | Local storage entry (not an HTTP cookie) | Until the choice is changed or deleted | Necessary |
| _ga | Google Analytics 4 | Distinguishes unique website visitors | HTTP cookie | 13 months | Analytics |
| _ga_<container ID> | Google Analytics 4 | Persists session state and visit data | HTTP cookie | 13 months | Analytics |
| _clck | Microsoft Clarity | Persists a user identifier across sessions | HTTP cookie | 1 year | Marketing |
| _clsk | Microsoft Clarity | Connects multiple page views into a single session | HTTP cookie | 1 day | Marketing |
| MUID | Microsoft Advertising (deployed via Microsoft Clarity) | Third-party identifier Microsoft uses to recognize users across its own domains | Third-party HTTP cookie | 13 months | Marketing |
| ANONCHK | Microsoft Advertising (deployed via Microsoft Clarity) | Checks whether the MUID cookie may be used | Third-party HTTP cookie | up to 10 minutes | Marketing |
| MR | Microsoft Advertising (deployed via Microsoft Clarity) | Determines whether the MUID cookie needs to be refreshed | Third-party HTTP cookie | 7 days | Marketing |
| SM | Microsoft Advertising (deployed via Microsoft Clarity) | Synchronizes the session across Microsoft domains | Third-party HTTP cookie | Session | Marketing |
| SRM_B | Microsoft Advertising (deployed via Microsoft Clarity) | Stores and tracks a device identifier for ad measurement | Third-party HTTP cookie | 13 months | Marketing |
| _fbp | Meta Pixel | Identifies browsers for ad delivery and measurement | HTTP cookie | 3 months | Marketing |
| _fbc | Meta Pixel | Stores the click identifier from Meta ads | HTTP cookie | 3 months | Marketing |
The exact list of cookie names and their retention periods may change as the respective service providers update their tools.
These tools may process information about visited pages, user interactions on the website, as well as device and browser technical information. This information may be shared with service providers such as Google LLC, Meta Platforms Inc. and Microsoft Corporation.
More information about their privacy practices can be found at: https://policies.google.com/privacy, https://www.facebook.com/privacy/policy and https://privacy.microsoft.com/privacystatement.
Analytics and marketing cookies are used only after the user has given consent through the website cookie notice.
Users may withdraw or change their consent at any time through the website cookie settings, as well as by deleting cookies in their browser.
8. Server Logs
The website server may automatically log technical information such as IP address, browser type, request time and visited pages. This information is used only for website security and technical maintenance.
To protect the contact form against bots and abuse, we use Cloudflare Turnstile and temporarily process technical data such as IP address, browser information, security check result and request frequency information.
9. Data Recipients
Personal data may be shared with third parties only when necessary for providing services or complying with legal requirements, such as IT service providers, accounting services, Cloudflare (for website hosting, security and Turnstile verification), Resend (for delivering contact form messages and attachments by email), and analytics or marketing service providers only after user consent.
10. Transfers of Data Outside the EU/EEA
Some of the service providers named above (Google LLC, Meta Platforms Inc., Microsoft Corporation, Cloudflare, Inc., Resend (Plus Five Five, Inc.)) also process data outside the European Union and the European Economic Area, including in the United States.
Such transfers take place on the basis of the European Commission's adequacy decision on the EU-U.S. Data Privacy Framework, where the relevant service provider is certified under it, or, where certification does not apply, using the European Commission's approved Standard Contractual Clauses (GDPR Article 46).
Further information about a specific service provider's data transfer mechanism is available in its privacy policy or by contacting us at [email protected].
11. Data Retention
- Service requests and communication data – for as long as necessary to provide services and resolve potential disputes
- Accounting data – according to legally required retention periods
- Analytics data – according to the configuration of the analytics tools and only with consent
- Security and rate-limiting data – temporarily and only for as long as necessary to protect the contact form against abuse
12. Data Security
We implement appropriate technical and organizational measures to protect personal data against unauthorized access, disclosure, alteration or destruction.
13. Your Rights
Under the GDPR you have the right to access your personal data, request correction or deletion, restrict processing, object to processing, request data portability, and withdraw your consent at any time without affecting the lawfulness of processing carried out before the withdrawal.
14. Complaints
If you believe your personal data is processed in violation of GDPR, you have the right to file a complaint with the national data protection authority.
15. Contact Information
If you have questions about personal data processing, please contact us at [email protected].
