Privacy Policy
Last updated: 22 August 2026
1. Introduction
This Privacy Policy explains how personal information is handled when you visit miha.yt, use the contact form, or get in touch by email about the services offered under the Miha brand.
The policy describes only what this website actually does. The website is intentionally simple and collects very little information.
2. Who is responsible
Miha is the controller of personal information collected through miha.yt. Privacy enquiries can be sent at any time to contact@miha.yt.
3. Information you provide
The only personal information the website handles is information you choose to provide yourself, either through the contact form or by emailing directly.
There is no account system, no comment system, and no other place on the website where personal information is entered.
4. The contact form
The contact form asks for a name, an email address, an optional channel or company name, and project details.
The form does not send anything to a server. Submitting it opens your own email application with a prefilled message addressed to contact@miha.yt, containing the details you entered. Nothing is transmitted unless you choose to send that email yourself, and the message then travels as ordinary email between your email provider and the mailbox for contact@miha.yt.
5. Technical information
Like any website, miha.yt is served by a hosting provider whose infrastructure automatically processes technical data needed to deliver pages, such as your IP address, browser type, requested pages, and timestamps, typically in short-lived server logs used for delivery and security.
The website's fonts and other assets are served from the website itself, so viewing pages does not send requests to third-party font or script services.
6. Why information is used
Information you provide is used to respond to enquiries, prepare proposals, provide requested services, and manage communication during a project.
Technical data processed by the hosting infrastructure is used to operate the website and keep it secure. Where required, information such as invoices and project correspondence may also be kept to meet accounting or other legal obligations.
7. Legal bases
Where the General Data Protection Regulation applies, processing relies on the following legal bases: taking steps you request before entering into a contract, performance of a contract once a project is agreed, legitimate interests in operating and securing the website and in managing business communication, and compliance with legal obligations such as accounting rules.
Consent is relied on only where it is genuinely used. The website does not currently run any processing that depends on consent, such as analytics or marketing.
8. Who receives information
Information is shared only with the service providers needed to run this simple setup: the hosting provider that serves the website and processes technical delivery logs, and the email provider that operates the contact@miha.yt mailbox where your messages are received and answered.
When you send an enquiry, your own email provider also processes the message as part of normal email delivery. No form processors, marketing platforms, or data brokers are involved.
9. No sale of personal information
Personal information is never sold, rented, or traded to anyone.
10. International transfers
The hosting and email providers used to operate the website and mailbox may process data on infrastructure located outside the European Economic Area.
Where that happens, transfers rely on appropriate safeguards recognised under the GDPR, such as an adequacy decision or the EU standard contractual clauses implemented by the relevant provider.
11. How long information is kept
Enquiry emails are kept for as long as needed to handle the conversation and a reasonable period afterwards in case the discussion continues.
Information relating to an agreed project, such as briefs, correspondence, and invoices, is kept for as long as needed to deliver the project and afterwards for as long as accounting rules, potential disputes, or other legal obligations require. Technical server logs are retained only briefly by the hosting infrastructure.
12. Security
The website is served over an encrypted connection, the amount of information handled is deliberately kept minimal, and access to the contact mailbox is protected.
No method of transmission or storage is completely secure, so absolute security cannot be promised, but reasonable care is taken to protect the information described in this policy.
13. Your rights
Where the GDPR applies, you have the right to request access to your personal information, correction of inaccurate information, erasure, restriction of processing, a portable copy of information you provided, and to object to processing based on legitimate interests.
Where any processing is based on consent, you may withdraw that consent at any time without affecting earlier processing. To exercise any of these rights, contact contact@miha.yt.
14. Complaints
If you believe your information has been handled unlawfully, you have the right to lodge a complaint with the Croatian Personal Data Protection Agency (AZOP) at azop.hr, or with the supervisory authority in your own country of residence.
15. Cookies and analytics
The website does not use advertising cookies, behavioural tracking cookies, analytics tools, or tracking scripts, and it does not store anything in your browser's local storage for tracking purposes.
The hosting infrastructure that delivers the website may use strictly technical means necessary for serving pages and maintaining security. If analytics or other non-essential technologies are ever added, this policy will be updated first.
16. External links
The website links to external platforms such as X, Instagram, Discord, and YTJobs, and the portfolio references publicly available work. Those platforms operate independently and apply their own privacy practices, which are worth reviewing separately.
This policy does not cover what those services do with your information.
17. Children
The website and services are aimed at creators, teams, and organisations, not at children. Personal information is not knowingly collected from children, and if such information is discovered it will be deleted.
18. Changes to this policy
This policy may be updated to reflect changes to the website, the services, or applicable law. The latest version and its update date are published on this page.
19. Contact
Questions about privacy or this policy can be sent to contact@miha.yt.