Privacy Policy
Last updated: October 2026
The website digma.co.il (the “Website”) and the DigMa Hosting hosting service (the “Service”) are provided by 2 Code Solutions EOOD, UIC 207500451 (“we” or “us”). Use of the Website and the Service is subject to this Privacy Policy (the “Policy”).
This Policy describes what data we collect about Website visitors and clients and what we do with it. Data is collected and processed in accordance with the Israeli Protection of Privacy Law, 5741-1981 (as amended, including Amendment No. 13), the Protection of Privacy Regulations (Data Security), 5777-2017, and other applicable law. Since the company is registered in Bulgaria, we also comply with the EU General Data Protection Regulation (GDPR) where it imposes stricter requirements.
You are under no legal obligation to provide us with personal data. However, without certain data we will not be able to provide the Service — for example, without an email address we cannot send you your hosting access details.
The Website and the Service are intended for persons aged 18 and over. This Policy is published in Hebrew, Russian and English; in case of conflict, the Hebrew version prevails.
1. What data we collect
The table below lists the personal data we collect and how we use it.
| Type of data | What exactly | How we use it |
|---|---|---|
| Visiting the Website | IP address, browser and device type, date and time of access, and pages viewed. This is recorded by the server and by Cloudflare. | Operating and securing the Website, protecting against attacks, troubleshooting. |
| Contacting us by email, phone or WhatsApp | Name, contact details, the content of your message and anything else you choose to share. | Responding to you. We keep correspondence as business records. |
| Ordering hosting | Name or company name, email, domain, chosen plan, payment history, and control panel access details. | Setting up and managing the hosting, contacting you about it, and keeping records as required by law. |
| Payment through Paddle | You enter your card details in Paddle's window — they never reach us. From Paddle we receive the payment status, amount, country and the payer's email address. | Managing the subscription and refunds. |
| Client websites on our hosting | Files, databases and email of the client's website, including data about its visitors and buyers. | Hosting on our servers and backups only, on the client's instructions (see section 4). |
2. How we collect data
- Data you provide yourself — by email, by phone or when placing an order.
- Data collected automatically when you browse the Website — in server and Cloudflare logs.
- Data received from Paddle — payment status and details.
4. Client websites on our hosting
The client is the controller of the data on its website, including data about its visitors and buyers. We are a holder of that data: we store it on our servers and back it up solely on the client's instructions, and we do not use it for our own purposes.
Questions about data on a client's website should be addressed to the owner of that website. If you contact us, we will forward your request to the client.
6. Transfer of data outside Israel
The company is registered in Bulgaria, the servers are located in Germany, and some providers process data in the USA and other countries.
We transfer data abroad in accordance with the Protection of Privacy Regulations (Transfer of Data to Databases Abroad), 5761-2001: to countries whose level of protection is not lower than that in Israel, or on the basis of contractual undertakings by the recipient. Transfers from the EU are based on European Commission adequacy decisions (including the decision regarding Israel) or the EU standard contractual clauses.
7. Data security
We apply customary security measures: a secure connection (HTTPS), isolation of client websites from one another, restricted access permissions, backups, and a confidentiality undertaking by everyone with access to the data. However, no measures provide absolute security.
We will report a serious security incident to the Privacy Protection Authority and to the affected persons, as required by law.
8. Your rights
You may access the data we hold about you, request that it be corrected or deleted if it is inaccurate, incomplete or out of date, and demand in writing that data used for direct marketing be deleted.
If the GDPR applies to you, you also have the right to data portability, to restriction of processing, to object to processing, and the right to lodge a complaint with a supervisory authority in the EU.
Write to [email protected]. We may ask for details to verify your identity, and we will respond within 30 days. If you are not satisfied with our response, you may contact the Privacy Protection Authority at the Israeli Ministry of Justice or apply to the courts.
9. How long we keep data
| Type of data | Retention period |
|---|---|
| Correspondence | For as long as it is needed, but no longer than 3 years after the last contact |
| Client and payment data | For as long as the subscription is active, and thereafter for the periods required by tax and accounting law |
| Client websites and their backups | For as long as the subscription is active; after it ends — a further 30 days, after which they are deleted |
| Technical logs | Up to 12 months |
10. Changes to this Policy
We may update this Policy. The updated version takes effect upon publication on the Website; we will notify clients of material changes by email in advance.
11. Governing law
This Policy is governed by the laws of the State of Israel, and the competent courts in Israel have exclusive jurisdiction.