Legal
What we collect when you use this site, why we collect it, and what you can ask us to do about it. Written to be read, not to be survived.
Last updated 19.08.26 · Version 1.0 · Draft for legal review
Aria Labs is a company registered in Romania and based in Bucharest. We are the data controller for the personal data described in this notice.
For anything in this notice, including our full company registration details, write to hello@ariaops.com. We'll send them to anyone who asks. We have not appointed a data protection officer, because we are not required to.
This notice covers arialabs.eu only. Our ambassador programs run on separate subdomains and have their own notices — see the KBK Fest 2026 program for that one.
When you send us a message
Your name, your email address and what you wrote. Nothing else, and nothing we didn't ask for.
When you just visit
Our hosting provider records standard server logs: IP address, the page requested, timestamp, browser and operating system. These are generated automatically by the web server, not by anything we added.
Cookies
We don't set any. There is no advertising, no tracking pixel, no session cookie, no cross-site identifier. That's also why you don't see a cookie banner — we don't need your permission for something we don't do.
Messages you send us
To reply to you, and to work out whether what we do is useful to you.
Legitimate interests, GDPR 6(1)(f) — answering someone who contacted us. Ask us to delete the thread and we will.
Server logs
Keeping the site up and defending it against abuse.
Legitimate interests, GDPR 6(1)(f) — running a secure website.
Material you share for work
Only ever under a signed non-disclosure and data use agreement, and only for your own question.
Contract, GDPR 6(1)(b). It stays yours, it never informs anyone else's answer, and it is not pooled with another client's material.
We don't make automated decisions about you and we don't profile you. What we do professionally is read markets, not people — and that applies to visitors to this site as much as to anyone's audience.
Only the providers we need to operate. Each one is a processor acting on our instructions under a data processing agreement.
Ask us and we'll name the specific provider behind any of those, and tell you which country it processes data in.
We don't sell your data. We don't share it with advertisers. We never use it to inform work for anyone else.
We prefer EU-hosted providers. Where a provider processes data outside the European Economic Area, that transfer relies on the European Commission's Standard Contractual Clauses or an adequacy decision. Ask us and we'll tell you exactly which providers those are and which mechanism applies.
Under the GDPR you have the right to:
Email hello@ariaops.com. We'll respond within one month. There's no charge unless a request is clearly excessive, and we'll say so before doing anything.
If you think we've handled your data badly, tell us first — we'd rather fix it. You also have the right to complain to the Romanian supervisory authority, the Autoritatea Naţională de Supraveghere a Prelucrării Datelor cu Caracter Personal (ANSPDCP), at dataprotection.ro, or to the authority in your own EU country.
The site is served over HTTPS. Access to messages is limited to the people at Aria Labs who need it. We're a small company — that's a small number of people, which is its own kind of control, but it also means we don't pretend to have security certifications we haven't earned.
This site is aimed at people working professionally in music. It isn't directed at children and we don't knowingly collect data from anyone under 16. If you think we have, write to us and we'll delete it.
If we change this notice we'll update the date at the top. If a change materially affects people who've already contacted us, we'll email them rather than quietly editing the page.