Privacy Policy.
A summary of the privacy principles we apply under the proyaengineering.com domain, our data collection channels, and relationships with third-party infrastructure. For details on personal data processing, see the <a href="kvkk.html">KVKK Privacy Notice</a>.
ProYA follows a minimum-data principle on its own website: it collects only the data required for the service relationship and technical infrastructure, and never transfers it to third parties for advertising or marketing purposes.
01 Scope
This Privacy Policy applies to the website offered under the
proyaengineering.com domain and the digital services
directly connected to this site. The legal framework for processing
personal data is defined separately in the KVKK Privacy Notice;
this page explains the privacy principles we apply across the site.
02 Data Collected
The site collects data through two separate channels:
- Direct sharing — form fields (name, email, phone, message) and email correspondence.
- Technical records — server access logs, session information, cookie identifiers, and browser / device metadata.
A detailed version of the list and the legal grounds are included in the KVKK Privacy Notice.
03 Purpose of Use
The collected data is used only for the following purposes: maintaining site functionality, evaluating requests, and ensuring service continuity. No direct marketing is conducted; newsletters or similar content are started only if you give explicit consent.
04 Third-Party Relations
The site uses the following core infrastructure services to display content; these services receive the user browser’s IP address and technical information shared with the standard request:
- Google Fonts CDN — for loading fonts.
- jsDelivr CDN — for the Lenis smooth-scroll module.
- OpenStreetMap — only for the map on the contact page.
Principle
No third-party scripts are run for advertising, behavioral tracking, or targeting purposes. If an analytics tool is added, only anonymized setups that apply IP-level masking will be preferred; the policy will be updated on this page.
05 Data Security
- All traffic is end-to-end encrypted over TLS 1.3.
- Server access is limited by role-based authentication; two-factor authentication is the default.
- In the event of a possible data breach, the Board is notified within 72 hours under the KVKK.
- Server logs are anonymized after 6 months under the rotation rule.
06 Children’s Privacy
The site does not knowingly collect data from users under the age of 18. Any record whose age cannot be determined or that is found to belong to an individual under 18 is deleted by ProYA ex officio or upon request.
07 Updates
This policy may be updated due to changes in services, infrastructure, or legislation. The effective date and version are shown in the top meta block of the page; for major changes, additional notice is provided on the site’s homepage.
08 Contact
For questions and requests about this policy, you can write to info@proyaengineering.com. For official applications under the KVKK, use the kvkk@proyaengineering.com channel.
