1. Data Controller
This text has been prepared to inform you about the processing of your personal data in accordance with the Personal Data Protection Law No. 6698 ("KVKK").
Data Controller: DBM Software (dbm-soft.com)
E-posta: bilgi@dbm-soft.com
Web: https://dbm-soft.com
2. Purpose of Processing Personal Data
Your personal data is processed for the following purposes:
- Providing, executing and improving our products and services
- Customer relationship management and communication activities
- Fulfillment of contractual obligations
- Compliance with legal obligations
- Taking and maintaining security measures
- Improving and analyzing business processes
- Conducting marketing and promotional activities (with your consent)
3. Types of Personal Data Processed
Within the scope of using our services, the following personal data may be processed:
| Data Type |
Examples |
Collection Method |
| Identity Data |
First name, last name |
Contact form |
| Contact Data |
Email address, phone number |
Contact form |
| Feedback Data |
Contact message content |
Contact form |
| Technical Data |
IP address, browser type, device info |
Automatic collection (cookies) |
| Usage Data |
Pages visited, click data |
Analytics tools |
4. Legal Grounds for Processing Personal Data
Your personal data is processed based on the following legal grounds set forth in Article 5 of the KVKK:
- Explicit Consent: For marketing and promotional activities
- Performance of Contract: For providing the services offered
- Legal Obligation: For compliance with legal regulations
- Legitimate Interest: For security and service quality
5. Transfer of Personal Data
Your personal data may be transferred to third parties in the following cases:
- To authorized public institutions and organizations for compliance with legal obligations
- To our business partners and sub-processors for providing services
- To suppliers for fulfillment of contractual obligations
Your data is not sold to third parties for commercial purposes without your explicit consent.
6. Retention Period of Personal Data
Your personal data is retained for the duration required by the purpose of processing or for the duration required by legal retention obligations:
- Contact form data: 3 years from the date of response to your request
- Technical data: Maximum 2 years (log records)
- Cookie data: Duration in accordance with cookie policy
7. Your Rights Under KVKK
In accordance with Article 11 of the KVKK, you have the following rights:
- To learn whether your personal data is being processed
- To request information if your personal data is being processed
- To learn the purpose of processing your personal data and whether they are used in accordance with the purpose
- To know the third parties to whom personal data is transferred within or outside the country
- To request the correction of personal data that has been processed incompletely or incorrectly
- To request the deletion or destruction of personal data when the reasons requiring processing no longer exist
- To object to a result that is detrimental to you as a result of analysis exclusively through automated systems
- To request compensation if you suffer damage due to the unlawful processing of your personal data
8. Method to Exercise Your Rights
You can apply through the following channels to exercise your rights under KVKK:
Email: bilgi@dbm-soft.com
Subject: "KVKK Application - [Your Full Name]"
Web Form: Using the form on our contact page
Your application will be concluded free of charge within 30 days at the latest, depending on the nature of your request.
9. Cookie Policy
Cookies are used on our website to improve user experience. The types of cookies we use:
- Strictly Necessary Cookies: Required for the proper functioning of the website.
- Analytics Cookies: Used to collect visitor statistics.
- Functional Cookies: Used to remember your preferences such as language choice.
You can manage or block cookies through your browser settings.
10. Security Measures
The following measures have been taken for the security of your personal data:
- Only necessary data is collected in accordance with the data minimization principle
- Data is transmitted using encrypted transfer protocols (HTTPS)
- Access authorizations are carried out on a role-based basis
- Regular security audits are conducted
11. Changes to This Text
Changes to this disclosure text will take effect on the date they are published on our website. Changes should be monitored regularly.
Last Updated: 26.07.2026