1. Introduction
The protection of your personal data is a priority for CHKEY OÜ, which operates the odinkey.com website under the Odin Key brand. We process your data lawfully, fairly and transparently, in accordance with the General Data Protection Regulation (GDPR).
2. Data controller
The data controller is CHKEY OÜ (Estonia). For any question relating to your data: info@odinkey.com.
3. Data collected and purposes
We collect the following data solely for the purpose of processing your licence orders:
- Identity: first name, surname.
- Contact: email address (to send the activation keys and the invoice) and country.
- Payment: transaction information passed to our payment provider (we do not have access to your full banking details).
4. Recipients and processors
Your data is passed on to third parties only as part of the performance of the contract or to ensure the operation of the website:
- Hosting: Infomaniak Network SA (Switzerland, a country recognised by the European Commission as providing an adequate level of protection).
- Payment: our bank card payment provider.
- Security: Wordfence (United States, with appropriate safeguards).
We never sell or rent your data for advertising purposes.
5. Retention period
We retain your data for as long as necessary to fulfil our contractual and legal obligations, in particular the retention of accounting records for the period provided for under Estonian law.
6. Your rights
You have the right of access, rectification, erasure, restriction, portability and objection. You can exercise these rights by contacting us at info@odinkey.com.
7. Cookies
Our website uses only cookies that are essential for the operation of the shopping cart, the security of your session and your preferences: the country and display currency you choose (the odinkey_region and odinkey_cur cookies, kept for 12 months). No third-party advertising cookies are set.
8. Legal basis for processing
We process your data on the following bases: performance of the contract (processing and delivery of your orders), compliance with our legal obligations (in particular accounting and tax obligations), and our legitimate interest in ensuring the security and proper operation of the website.
9. Data security
We implement appropriate technical and organisational measures to protect your data against loss, unauthorised access or misuse: encrypted connection (HTTPS/SSL), application firewall and restricted access to data.
10. Data transfers outside the European Union
Your data is hosted in Switzerland. Certain providers may be located in other third countries (for example Wordfence, in the United States); in that case, we ensure that appropriate safeguards govern the transfer, in accordance with the GDPR.
11. Right to lodge a complaint
If you consider that the processing of your data does not comply with the law, you may lodge a complaint with the Estonian data protection authority (Andmekaitse Inspektsioon) or with the supervisory authority of your country of residence.
12. Cookie management
You can configure or delete cookies at any time via your browser settings. Blocking certain cookies may, however, affect the operation of the shop.
13. Updates to this statement
We may amend this statement to reflect changes in our practices or in legislation. The version in force is the one published on this page. Last updated: October 2026. If you have any questions, write to us at info@odinkey.com.