Personal Data Protection Law (KVKK)

This page explains how RizeDC processes, protects and manages personal data in accordance with personal data protection principles, including the Turkish Personal Data Protection Law, known as KVKK.

RizeDC respects the privacy and security of its users, customers and visitors. We process personal data only for legitimate business purposes, service delivery, legal compliance and security requirements.

Data Controller

Within the scope of personal data protection regulations, RizeDC acts as the data controller for personal data collected through its website, customer panel, support channels and service processes.

RizeDC is responsible for determining the purposes and methods of processing personal data and for taking necessary measures to protect such data.

Personal Data We Process

RizeDC may process the following categories of personal data:

  • Identity information such as name, surname, company title and tax details

  • Contact information such as email address, phone number and billing address

  • Customer account information

  • Payment, invoice and transaction records

  • IP address and access logs

  • Service usage information

  • Domain registration details

  • Support ticket messages and communication records

  • Security and system activity logs

Only the data necessary for service delivery, account management, billing, technical support and legal compliance is processed.

Purposes of Processing Personal Data

Personal data may be processed for the following purposes:

  • Creating and managing customer accounts

  • Providing hosting, server, domain, license and technical services

  • Activating, renewing and managing purchased services

  • Processing payments and invoices

  • Providing customer support

  • Maintaining service security

  • Preventing fraud, abuse and unauthorized access

  • Fulfilling legal and regulatory obligations

  • Managing customer communication

  • Improving service quality and user experience

RizeDC does not process personal data for purposes unrelated to its services or legal obligations.

Legal Basis for Processing

Personal data may be processed based on one or more of the following legal grounds:

  • Performance of a contract

  • Compliance with legal obligations

  • Legitimate interests of RizeDC

  • Establishment, exercise or protection of legal rights

  • Explicit consent where required by law

For services such as domain registration, billing, support and server management, certain personal data must be processed in order to provide the requested service.

Transfer of Personal Data

RizeDC may transfer personal data to third parties only when necessary and legally permitted. These parties may include:

  • Payment service providers

  • Domain registrars

  • Data center and infrastructure partners

  • Technical service providers

  • Accounting and legal service providers

  • Authorized public institutions and legal authorities

Data transfer is limited to the information required for the relevant service, transaction or legal obligation.

Data Security

RizeDC takes technical and administrative measures to protect personal data against unauthorized access, loss, misuse, alteration, disclosure or destruction.

These measures may include access controls, encrypted connections, secure systems, authorization procedures, logging, monitoring and internal security policies.

Access to personal data is limited to authorized personnel who need such access for service operation, support, billing or legal compliance.

Data Retention

Personal data is retained only for as long as required for the purposes for which it was collected, or for the period required by applicable laws and regulations.

Some records, such as invoices, payment information, service logs and legal documents, may be stored for legally required retention periods.

When the retention period expires, personal data may be deleted, destroyed or anonymized in accordance with applicable rules.

Rights of Data Subjects

Users and customers may have the following rights regarding their personal data:

  • To learn whether personal data is being processed

  • To request information about processed personal data

  • To learn the purpose of processing and whether data is used accordingly

  • To request correction of incomplete or inaccurate data

  • To request deletion or destruction of personal data where legally possible

  • To object to unlawful or excessive processing

  • To request information about third parties to whom data has been transferred

  • To claim rights available under applicable personal data protection laws

Requests regarding personal data can be submitted through RizeDC’s official communication channels.

Cookies and Online Data

RizeDC may use cookies, session data, analytics tools and similar technologies to improve website functionality, security and user experience.

Cookie usage is explained separately in the Cookie Policy.

Changes to This Notice

RizeDC may update this Personal Data Protection notice when necessary. Updated versions will be published on the website and become effective from the publication date.

Contact

For questions, requests or applications regarding personal data protection, users may contact RizeDC through official support and communication channels.