1. Controller
The controller responsible for personal data processed through this website is:
Yieldrock LTDGeorgiou Karaiskaki, 11-13, Carisa Salonica, Flat/Office 102, 7560 Larnaca, Cyprus
Email: hello@yieldrockconsulting.com
Privacy contact: hello@yieldrockconsulting.com
2. Data processed when you visit
The hosting infrastructure may process technical connection data such as IP address, date and time of access, requested page, referrer, browser or device information, and status codes. This data is used to deliver the website, maintain security, prevent misuse, and diagnose technical faults.
The legal basis is the controller's legitimate interest in providing a secure and reliable website (Article 6(1)(f) GDPR), where the GDPR applies. Netlify retains technical data in accordance with its service configuration and documented retention schedules. Any technical logs accessible to Yieldrock are retained only for as long as necessary for security, abuse prevention, and fault diagnosis.
3. Contact by email
This website does not submit a contact form. Selecting an email link opens your own email application. If you contact us, we process the information you provide to respond to your enquiry, prepare or perform a contract, and maintain necessary business records.
Depending on the enquiry, the legal basis may be steps taken at your request before entering into a contract (Article 6(1)(b) GDPR), our legitimate interests in business communication (Article 6(1)(f) GDPR), or compliance with legal obligations (Article 6(1)(c) GDPR). If no contract results, enquiry correspondence is normally deleted within 24 months after the last substantive contact. Where an enquiry leads to an engagement, relevant records may be retained for the term of the engagement and afterwards for applicable statutory record- keeping periods or the establishment, exercise, or defence of legal claims.
4. Appointment booking through Cal.com
Meeting buttons link to an external booking page provided by Cal.com, Inc. No booking form is embedded on this website. When you follow the link, your browser connects to Cal.com and transmits technical request data. If you book a meeting, Cal.com processes information such as your name, business email address, time zone, selected appointment, and any information you enter in the booking fields.
Yieldrock is the controller for booking data and Cal.com acts as a processor under its data processing agreement. The data is used to arrange, confirm, administer, reschedule, or cancel the meeting. The legal basis is taking steps at your request before entering into a contract (Article 6(1)(b) GDPR) and Yieldrock's legitimate interest in efficient business communication and scheduling (Article 6(1)(f) GDPR).
Cal.com is based in the United States and may use subprocessors in other countries. Cal.com states that restricted transfers are covered by Standard Contractual Clauses or an applicable adequacy mechanism, such as the EU-US Data Privacy Framework. Yieldrock normally deletes booking records within 24 months after the meeting or last related contact, unless they are needed longer for an engagement, a legal obligation, or legal claims. Please do not enter confidential or special-category personal data in booking fields.
Further information: Cal.com privacy policy and Cal.com security and data processing agreement.
5. Cookies and analytics
Yieldrock does not currently use advertising cookies, marketing trackers, or web analytics on this website. The hosting platform may use strictly necessary technical mechanisms for security and service delivery. If analytics, embedded media, an embedded appointment-booking tool, chat, or other third-party tools are added, this policy and any consent controls must be updated before activation.
6. Hosting and recipients
This website is hosted and delivered through Netlify, Inc., 512 2nd Street, Suite 200, San Francisco, CA 94107, United States. Netlify may process technical data for website delivery, security, abuse prevention, and troubleshooting as a processor on Yieldrock's behalf. Processing may take place in the United States and through Netlify's subprocessors. Netlify's data processing agreement uses the EU-US Data Privacy Framework where applicable and the EU Standard Contractual Clauses as a fallback transfer mechanism.
Further information: Netlify privacy policy and Netlify data processing agreement.
7. External links
This website may link to external services such as Cal.com and LinkedIn. Data is transferred to those providers only when you follow the relevant link. Their own privacy terms then apply.
8. Your rights
Subject to the applicable conditions, you may have rights to access, rectification, erasure, restriction, data portability, and objection. Where processing relies on consent, you may withdraw it for the future. You may also lodge a complaint with a competent supervisory authority.
Competent authority: Commissioner for Personal Data Protection, Cyprus.
9. Security
We use reasonable technical and organisational measures appropriate to the nature and risk of the processing. No internet transmission or storage method can be guaranteed to be completely secure.
10. Changes to this policy
We may update this policy when the website, our processing activities, or legal requirements change. The current version is published here.
Last updated: 1 September 2026.