Privacy Policy

Last updated: March 17, 2026

Zamolxis Solutions SRL (“Company,” “we,” “us,” or “our”) operates the Simulated Security platform available at https://simulatedsecurity.com/ (the “Platform” or “Service”).

This Privacy Policy explains how we collect, use, disclose, and protect personal data when you use our Platform.

By accessing or using the Platform, you acknowledge that you have read and understood this Privacy Policy.


1. Who We Are

Controller: Zamolxis Solutions SRL
Project / Platform Name: Simulated Security
Website: https://simulatedsecurity.com/
Contact email: [email protected]


2. Scope

This Privacy Policy applies to personal data collected through:

  • Our website
  • Our web application / SaaS platform
  • Account registration and authentication
  • Payment-related flows
  • Communications and notifications related to the Service
  • Security, fraud-prevention, and operational monitoring

3. Personal Data We Collect

Depending on how you use the Platform, we may collect the following categories of personal data:

3.1 Information you provide directly

  • Full name
  • Email address
  • Phone number
  • Company name
  • Billing and invoicing details
  • Account credentials
  • Messages, requests, or other content you submit to us
  • Any files, documents, or data you upload or submit through the Platform

3.2 Account and authentication data

  • Registration details
  • Hashed password and authentication-related metadata
  • Password reset requests and related logs
  • Google sign-in related account information, where you choose to sign in with Google

3.3 Technical and usage data

  • IP address
  • Browser type and version
  • Device and operating system information
  • User agent
  • Timestamps of access and activity
  • Log files
  • Security event data
  • Platform interaction data necessary to operate, secure, and improve the Service

3.4 Payment-related data

Where payments are made through Stripe, we may receive limited billing-related information such as:

  • Customer name
  • Billing email
  • Subscription or transaction status
  • Partial payment metadata necessary for order, subscription, fraud prevention, bookkeeping, and support purposes

We do not store full payment card details on our own systems if payments are processed by Stripe.

3.5 Security and anti-abuse data

To protect the Platform, we may process data related to:

  • Bot-detection checks
  • Abuse-prevention signals
  • Suspicious login or activity patterns
  • reCAPTCHA verification data
  • Infrastructure and network security events

4. How We Collect Personal Data

We collect personal data:

  • Directly from you when you create an account, log in, contact us, subscribe, or use the Platform
  • Automatically when you browse or interact with the Platform
  • From authentication providers such as Google, if you choose that login option
  • From payment service providers such as Stripe
  • From infrastructure and security providers used to operate the Platform

5. Why We Use Personal Data

We use personal data for the following purposes:

  • To create and manage user accounts
  • To authenticate users and provide access to the Platform
  • To process password resets and account recovery
  • To deliver the Service and its features
  • To send service-related emails, alerts, and notifications
  • To provide customer support
  • To process subscriptions and payments
  • To maintain platform security, detect abuse, and prevent fraud
  • To monitor performance, troubleshoot incidents, and improve the Platform
  • To comply with legal, accounting, tax, and regulatory obligations
  • To establish, exercise, or defend legal claims

6. Legal Bases for Processing

Where the GDPR applies, we process personal data under one or more of the following legal bases:

  • Performance of a contract: when processing is necessary to provide the Service to you
  • Legal obligation: when we must comply with applicable law
  • Legitimate interests: such as platform security, fraud prevention, service administration, internal analytics, and improving our services
  • Consent: where consent is required by law

7. Authentication and Google Sign-In

If you choose to sign in with Google, we may receive certain account information associated with your Google profile, such as your name and email address, depending on the permissions granted and the configuration of the sign-in flow.

We use this information solely to authenticate your account, facilitate access to the Platform, and maintain account security.


8. Payments

Payments and subscription transactions may be processed by Stripe. Stripe acts as an independent service provider and may collect, use, and store personal data in accordance with its own legal terms and privacy documentation.

We use Stripe to:

  • Process payments
  • Manage subscriptions
  • Confirm transaction status
  • Support billing and fraud prevention

You should review Stripe’s own privacy information before making a payment.


9. Security Technologies and Third-Party Services

We use selected third-party providers to operate and secure the Platform, including:

  • Stripe for payments and subscription management
  • Cloudflare for infrastructure, performance, and security
  • Google reCAPTCHA for spam and abuse prevention

These providers may process certain technical data as necessary for their services.


10. Cookies and Similar Technologies

We do not use optional marketing cookies based on the information currently provided to us.

However, the Platform may use strictly necessary cookies or similar technologies required for:

  • Platform security
  • Session integrity
  • Bot and abuse prevention
  • Payment and checkout functionality
  • Infrastructure protection and load balancing

For more details, please see our Cookie Policy.


11. Data Sharing

We do not sell personal data.

We may share personal data only where necessary with:

  • Payment processors
  • Cloud, hosting, and infrastructure providers
  • Security and anti-abuse providers
  • Email delivery or notification providers
  • Legal, regulatory, tax, or law enforcement authorities where required by law
  • Professional advisers where necessary for legitimate business purposes

We share only the data reasonably necessary for the relevant purpose.


12. International Transfers

Personal data is intended to be stored in the European Union.

However, some service providers may process certain data outside the EEA or may allow remote access from outside the EEA. In such cases, we will take appropriate safeguards as required by applicable data protection law, such as adequacy decisions, contractual safeguards, or other lawful transfer mechanisms.


13. Data Retention

We retain personal data only for as long as necessary for the purposes described in this Privacy Policy, including:

  • For as long as your account remains active
  • As needed to provide the Service
  • As needed for legal, tax, accounting, security, dispute-resolution, and compliance purposes
  • For a reasonable period after account deletion where required or justified by law or legitimate interests

When data is no longer needed, we will delete it, anonymize it, or securely isolate it, unless retention is required by law.


14. Account Deletion

Users may request deletion of their account and associated personal data by contacting us at [email protected] or by using any deletion functionality made available inside the Platform.

Please note that we may retain certain information where necessary to:

  • Comply with legal obligations
  • Complete transactions
  • Resolve disputes
  • Enforce our agreements
  • Maintain security logs and evidentiary records where justified

15. Your Rights

Subject to applicable law, you may have the right to:

  • Access your personal data
  • Rectify inaccurate or incomplete personal data
  • Request erasure of your personal data
  • Restrict processing
  • Object to certain processing
  • Receive a copy of your data in a portable format
  • Withdraw consent where processing is based on consent
  • Lodge a complaint with a competent data protection authority

To exercise your rights, contact us at [email protected].


16. Security Measures

We implement appropriate technical and organizational measures designed to protect personal data against unauthorized access, disclosure, alteration, and destruction.

However, no method of transmission or storage is completely secure, and we cannot guarantee absolute security.


17. Children’s Privacy

The Platform is intended for a general or professional audience and is not directed to children. We do not knowingly collect personal data from children in violation of applicable law.

If you believe a child has provided personal data through the Platform, please contact us so we can take appropriate action.


18. Third-Party Links and Services

The Platform may contain links to third-party websites, services, or integrations. We are not responsible for the privacy practices of those third parties. You should review their privacy notices separately.


19. Changes to This Privacy Policy

We may update this Privacy Policy from time to time. The updated version will be posted on this page with a revised “Last updated” date. Where required by law, we will provide additional notice.


20. Contact Us

If you have questions about this Privacy Policy or our data practices, contact:

Zamolxis Solutions SRL
Email: [email protected]
Website: https://simulatedsecurity.com/